record of delivering digital transformation programmes and managing remote IT operations In-depth knowledge of IT infrastructure, cloud platforms, cybersecurity, and enterprise architecture Experience with governance frameworks (e.g., ITIL, COBIT) and relevant certifications such as CISM, CISSP, TOGAF, Agile, or PRINCE2 Excellent leadership, strategic thinking, and communication skills Disclosure and Barring Service Check This post is subject to the Rehabilitation More ❯
data models and reporting frameworks. Ensure alignment of analytics and reporting outputs with enterprise risk management andcontrol frameworks. Strong knowledge of risk management frameworks (e.g., NIST, ISO 27001, COBIT) andcontrol environments. Deep understanding of IT general controls, cyber security principles, andtechnology risk domains. Proven experience in risk analytics, data visualization, and reporting (e.g., using Power BI, Tableau More ❯
Reading, Berkshire, United Kingdom Hybrid / WFH Options
Deloitte LLP
one end to end programme process including the use of ServiceNow Integrated Risk Management module to support integrated IT risk Management processes. An understanding of the principals around CMMI, COBIT, ITIL, PMI, Prince2, ISO27001, SOC2. Cybersecurity or IT Risk Management experience which should include either control testing or compliance assessment experience. A strong understanding of system development life cycles approaches More ❯
Guildford, Surrey, United Kingdom Hybrid / WFH Options
Deloitte LLP
one end to end programme process including the use of ServiceNow Integrated Risk Management module to support integrated IT risk Management processes. An understanding of the principals around CMMI, COBIT, ITIL, PMI, Prince2, ISO27001, SOC2. Cybersecurity or IT Risk Management experience which should include either control testing or compliance assessment experience. A strong understanding of system development life cycles approaches More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Oliver James
findings to relevant stakeholders What We're Looking For: Previous experience in IT audit, information security, or risk management (in-house or external) Knowledge of audit tools, frameworks (e.g. COBIT, NIST), and security standards Strong understanding of IT general controls (ITGCs), infrastructure, and networks Excellent analytical, problem-solving, and communication skills Experience working within data centres or critical infrastructure environments More ❯
management, including risk identification, assessment, and mitigation strategies. You will be responsible for reviewing and developing policies. You will have a strong understanding of security frameworks such as NIST, COBIT, or ISO/IEC standards. You will be responsible for ensuring that regulatory obligations are met, risks are proactively identified and m ana ged, and security polic ies and p More ❯
a recognised professional accounting qualification and a qualification in an I.T.-related discipline. Substantial experience in related areas would be considered in the absence of formal qualifications. * Experience in COBIT or ITIL best practices. * Experience in working within an Agile environment. More ❯
in a similar role, with the ability to adapt in a dynamic environment. Strong team player with a supportive attitude. Experience with best practice frameworks such as ITIL/COBIT, and industry or academic credentials in risk management. More ❯
background or large multinational experience . Experienced in audit (external and internal) and familiar with Internal Audit standards. Technology Risk/Technology Audit/Technology Controls Certifications: CISA, ITIL, COBIT (CISSP, CISM, CRISC, Prince2 ISO27001 desirable) Able to make a high impact on management, to manage stakeholders and to communicate clearly. Display a passion for working in teams and help … drive personal development. IT process knowledge e.g. as defined in standards like ITIL, Cobit, ISO, or British Standards Possess IT knowledge on IT networks, operating systems, databases, and applications, ideally including the Microsoft stack, Cloud technologies and SAP. Well-versed in assessing business andtechnology risks and controls, be able to articulate the risks, and recommend business-focused solutions. Able More ❯
background or large multinational experience . Experienced in audit (external and internal) and familiar with Internal Audit standards. Technology Risk/Technology Audit/Technology Controls Certifications: CISA, ITIL, COBIT (CISSP, CISM, CRISC, Prince2 ISO27001 desirable) Able to make a high impact on management, to manage stakeholders and to communicate clearly. Display a passion for working in teams and help … drive personal development. IT process knowledge e.g. as defined in standards like ITIL, Cobit, ISO, or British Standards Possess IT knowledge on IT networks, operating systems, databases, and applications, ideally including the Microsoft stack, Cloud technologies and SAP. Well-versed in assessing business andtechnology risks and controls, be able to articulate the risks, and recommend business-focused solutions. Able More ❯
background or large multinational experience . Experienced in audit (external and internal) and familiar with Internal Audit standards. Technology Risk/Technology Audit/Technology Controls Certifications: CISA, ITIL, COBIT (CISSP, CISM, CRISC, Prince2 ISO27001 desirable) Able to make a high impact on management, to manage stakeholders and to communicate clearly. Display a passion for working in teams and help … drive personal development. IT process knowledge e.g. as defined in standards like ITIL, Cobit, ISO, or British Standards Possess IT knowledge on IT networks, operating systems, databases, and applications, ideally including the Microsoft stack, Cloud technologies and SAP. Well-versed in assessing business andtechnology risks and controls, be able to articulate the risks, and recommend business-focused solutions. Able More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Costa Coffee
Lead IT Audit & Controls Manager – Permanent At Costa Coffee, we’re on a mission to reimagine coffee experiences across the globe. From bustling cities to local communities, we’re creating meaningful coffee moments, powered by innovation and driven by purpose. More ❯
demonstrating compliance against internal security requirements and external commitments including certification and regulatory requirements. Provide subject matter expertise in the application of established standards including NIST, PCI-DSS, GDPR, COBIT, ISO 27001 and Cyber Essential compliance to any new or existing programme of work. Prepare and support internal and/or external compliance audit activities. Manage remediation of any audit … Maintain up-to-date knowledge of legal & regulatory requirements impacting Technologyand Operations and its Partners. Apply comprehensive knowledge of legal, regulatory obligations, and industry best practices (e.g., NIST, COBIT, ISO27001, PAS 555) to ensure compliance with technology standards. Schedule and review risk and compliance audits; direct issues to appropriate resources for investigation and resolution. Our people make us who … deliver for our customers. LI-KS1 Possess one of the Risk or security certifications (CISSP, CRISC, CISM). Have good knowledge and practical experience of NIST, PCI-DSS, GDPR, COBIT, ISO 27001, or Cyber Essentials. Previous experience in a similar role, with the ability to work in a dynamic and changing environment. Excellent team player who can influence, help, andMore ❯
as NIST, PCI, GDPR, ISO Series, OWASP the IT Infrastructure Library (ITIL), the ISF Standards of Good Practice (SoGP) and ISACA's ControlObjectivesforInformationandrelatedTechnology (COBIT) frameworks. Actively represent the security organisation within business project initiatives, providing technical security leadership to ensure that security requirements and outcomes are defined and considered throughout the lifecycle of projects More ❯