As an IT Audit Manager, your primary responsibility will be to provide independent, objective assurance as to the effectiveness of the organisation’s technology control framework. This will be primarily through the delivery of the annual audit plan to the business. As such, you will be responsible for working closely with the business to deliver that plan in order to remediate any issues arising.
You will be responsible for the execution of the audit fieldwork as part of the overall management of the audit lifecycle.
Key responsibilities:
-
Deliver the programme of IT audits as specified in the annual audit plan, including planning, fieldwork, reporting and follow-up. Audits will include:
-
Access and identity management
-
Information security, including GDPR and technical security
-
In-depth system reviews for integrity, accuracy, security and commercial effectiveness
-
Programmes and projects
-
Supplier management
-
Technology development and change management
-
Contribute IT testing and support to financial and commercial audits as part of a joint audit team.
-
Contribute to the identification and documentation of technology risk in the audit universe
-
Participate in multi-auditor engagements, sometimes working as lead auditor on a cross-disciplinary engagement and acting as manager for the audit
-
Ensure that all audit work is completed against agreed quality standards within the specified time frames and budget
-
Create high quality, value-adding commercially focused reports identifying areas of deficiency with clear and concise recommendations
-
Partner the business in remediating any issues identified, exploring possible solutions with the key stakeholders and following through to conclusion
-
Manage multiple projects concurrently and support other ad hoc projects as they arise
-
Deliver advisory services to business stakeholders when required, including giving technical controls advice or assisting in project governance
-
Develop a keen understanding of the business and how systems and operations function and interact with one another
-
Understand the IT estate of each business within the Group as a basis for supporting an effective IT risk management process
-
Develop long-term working relationships, building trust and integrity with key business stakeholders across the IT function and Digital businesses in particular and within the IA and other commercial functions