At a Glance
- Tasks: Lead global IT audit initiatives and ensure compliance with SOX and ISA-315 standards.
- Company: Join Costa Coffee, a global brand reimagining coffee experiences in over 50 countries.
- Benefits: Enjoy perks like a share investment plan, smart pension, private medical cover, and generous discounts.
- Why this job: Make a real impact while growing your career in a diverse and inclusive environment.
- Qualifications: Experience in IT audit, knowledge of SOX and cybersecurity standards, and strong communication skills required.
- Other info: This role offers hybrid working options from Loudwater or London.
The predicted salary is between 43200 - 72000 £ per year.
At Costa Coffee, we are what we craft. We’re reimagining coffee experiences in over 50 countries and counting, as a key part of the Coca-Cola System. Whether you get your coffee in a store, from a machine, at home, or on the go – we’ve got you covered. Our teams make a difference. Whether that’s working on new tech for the perfect pour, helping our teams grow, creating award-winning campaigns, crunching the numbers, or developing the latest exciting menu item; together, we stir up success. We may be a global brand, but we haven’t forgotten our roots. That’s where the Costa Foundation and our fantastic community agenda come in. Whatever your role, you can help us change lives in coffee growing communities and help your local community too. We also want to help you grow in your career through amazing experiences, our apprenticeship scheme, and development programmes. At Costa, you can go beyond the day-to-day.
As a Senior Global IT Audit & Controls Manager, there’s never been a better time to join. So, why Costa? We didn’t become a global coffee brand by sitting back. When you work here, you join a community that values passion, progression and integrity, with some pretty brilliant perks to sweeten the deal:
- Own a piece of Costa’s success by becoming a share owner in Coca-Cola with our Share Investment Plan (SIP)
- A smart pension that saves you money on tax and national insurance, and matches your contributions up to 10%
- The Costa Financial Support Fund, supporting team members who find themselves in unexpected financial pressure
- 50% discount in all Costa-owned stores, and 25% off in other participating stores
- Private medical cover thanks to our Private Healthcare scheme
We’re passionate about being a great place to work, where you can bring your unique self into our mix. We firmly support diversity, equity and inclusion, and continue to work with our teams to shape the future of our culture and values: Disciplined to Deliver, Passion for Progress, Win with Warmth, Courage to Challenge and Trusted Team Players.
What you’ll do:
- Design and deliver a SOX / ISA-315 awareness and culture change programme that caters for differing cultural and language requirements across the global Costa Coffee business.
- Support the Principal Delivery Assurance & Portfolio Manager in the ongoing development of the Costa IT Audit & Controls team.
- Responsible for providing management and oversight of processes that ensure previously deployed IT general controls continue to operate as designed, that they evolve to meet changing requirements and that they remain effective.
- Responsible for management and oversight of the SOX, ISA315 and TCCC rotational scope annual audits including the planning of resource required, quality of evidence produced by the wider Costa business and management of the observations raised to ensure they are remediated in a timely manner resulting in a desirable audit outcome.
- Responsible for management and oversight of the SOX / ISA-315 3rd Party Vendor processes to ensure our suppliers appropriately handle Costa’s information.
- Provide guidance and oversight to projects / programmes and where a change in process is required or a new application / infrastructure is being implemented and falls in to the scope of SOX / ISA-315 ensuring all required IT General Controls are implemented and Costa’s IT systems are ‘secure by design’.
- Responsible for overseeing the annual Costa InfoSec Standards Exception review process and approving the reviewed exceptions. Ensuring that where applications or infrastructure cannot meet the requirement of the Costa Standard, mitigations, additional controls and management of the mitigations are implemented and monitored throughout their lifetime.
Who you are:
- Previous experience of working as an SME in a IT audit and / or controls environment e.g. SOX, ISO 27001, NIST etc.
- Knowledge of SOX, data privacy, Information security or Cyber security practices and standards (GDPR, ISO27000) and their applicability to a worldwide leading retailer.
- Previous experience of large scale audit management and co-ordination in multiple countries.
- Experience of managing supplier IT General Control 3rd party assurance processes and associated risks.
- Previous experience of designing and delivery of a programme of SOX / ISA-315, ITGC education, awareness and training.
- Strong written and verbal communication skills, negotiation skills and stakeholder management.
- Previous experience of developing and mentoring colleagues in SOX, ITGC’s and risk management.
- Previous experience of risk management processes ITIL/ISF/iRAM/COBIT frameworks and methodologies, CISSP, CISM.
- Self driven, able to work to tight deadlines and results orientated.
Location – Loudwater or London– Hybrid
Seniority level – Mid-Senior level
Employment type – Full-time
Job function – Accounting/Auditing and Information Technology
Industries – Retail and Technology, Information and Media
Senior Global IT Audit & Controls Manager employer: Costa Coffee
Contact Detail:
Costa Coffee Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Senior Global IT Audit & Controls Manager
✨Tip Number 1
Familiarise yourself with Costa Coffee's values and culture. Understanding their commitment to community and diversity will help you align your responses during interviews, showcasing how your personal values resonate with theirs.
✨Tip Number 2
Network with current or former employees of Costa Coffee on platforms like LinkedIn. Engaging in conversations about their experiences can provide valuable insights into the company’s work environment and expectations for the Senior Global IT Audit & Controls Manager role.
✨Tip Number 3
Stay updated on the latest trends and regulations in IT audit and controls, particularly SOX and ISO standards. Being knowledgeable about current practices will not only boost your confidence but also demonstrate your commitment to the field during discussions.
✨Tip Number 4
Prepare specific examples from your past experience that highlight your skills in managing audits and controls across multiple countries. Tailoring your anecdotes to reflect the global nature of Costa Coffee will show that you understand the complexities of the role.
We think you need these skills to ace Senior Global IT Audit & Controls Manager
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience in IT audit and controls, particularly focusing on SOX, ISO 27001, and NIST standards. Use specific examples that demonstrate your expertise in managing audits across multiple countries.
Craft a Compelling Cover Letter: In your cover letter, express your passion for the role and the company. Mention how your unique skills align with Costa Coffee's values and mission, especially regarding their commitment to community and diversity.
Showcase Communication Skills: Given the importance of stakeholder management in this role, emphasise your strong written and verbal communication skills. Provide examples of how you've successfully negotiated or managed stakeholders in previous roles.
Highlight Continuous Learning: Mention any relevant certifications or training you've completed, such as ITIL, CISSP, or CISM. This shows your commitment to professional development and staying updated with industry standards.
How to prepare for a job interview at Costa Coffee
✨Understand the Role and Responsibilities
Before the interview, make sure you thoroughly understand the job description. Familiarise yourself with the key responsibilities of a Senior Global IT Audit & Controls Manager, such as SOX compliance and IT general controls. This will help you articulate how your experience aligns with their needs.
✨Showcase Relevant Experience
Prepare to discuss your previous experience in IT audit and controls, particularly in relation to SOX, ISO 27001, and risk management. Use specific examples to demonstrate your expertise and how you've successfully managed audits or implemented controls in past roles.
✨Highlight Communication Skills
Given the importance of stakeholder management in this role, be ready to showcase your strong written and verbal communication skills. Prepare examples of how you've effectively communicated complex information to diverse audiences, especially in a global context.
✨Demonstrate Cultural Awareness
Costa Coffee operates in over 50 countries, so it's crucial to show that you understand and respect cultural differences. Discuss any experience you have working in international teams or managing projects across different cultures, and how you adapted your approach accordingly.