At a Glance
- Tasks: Lead SOC 2 assessments and coordinate audits for global technology systems.
- Company: Join KPMG International, a global leader in professional services.
- Benefits: Flexible working arrangements, competitive salary, and a commitment to diversity.
- Why this job: Make an impact on global technology while developing your career in a supportive environment.
- Qualifications: Experience in information protection and project management skills required.
- Other info: Dynamic team culture with opportunities for personal and professional growth.
The predicted salary is between 36000 - 60000 £ per year.
About KPMG International
Together with more than 276,000 colleagues in 138 countries throughout our member firms, people at KPMG imagine big ideas and bring solutions to life for clients both big and small. A role with KPMG International will open a world of opportunity in your career. KPMG International helps set the strategy and protects the reputation of this global organization of independent professional services firms providing Audit, Tax and Advisory services. We deliver value to our member firms and drive positive change in the communities we serve. By joining us you will gain a unique understanding of how a global organization operates and work on projects that impact the whole organization.
About this Global Group
The core services provided by Global Technology & Knowledge are more crucial than ever to our future, as we enable KPMG’s digital transformation, provide trusted technology services, ensure security across the network and accelerate our Collective Strategy. Our ways of working are based on the principles of customer-centricity, communities of expertise, an optimized delivery model, flexibility, a culture of empowerment, and fulfilling careers. We are organized under five new ‘domains’: Technology Portfolio Delivery, Global Enterprise Technology, Technology Strategy & Blueprint, Global Information Security Group and Business Operations.
This is an exciting time for us as we continue to drive technology excellence at the heart of Collective Strategy v3.0, and our GT&K colleagues all play a pivotal role in making this a success. GT&K consists of multicultural global teams with strong information protection (security and privacy) experience.
About this team
Technology Assurance Management services focus on management of certification, attestation and independent testing audits of global technology systems and services on the cloud, and alignment of efforts and efficiencies. Efficient and effective information protection audits provide required assurance for and permission to operate key KPMG technology solutions supporting client service delivery.
Role summary
- Plan for and coordinate multiple Service and Organizations Controls (SOC) 2 readiness assessment and examination streams for several business and technology areas.
- Coordinate auditor and key stakeholder meetings, gather requested evidence, track and report on progress and provide updates to stakeholders.
- Work closely with technology and business stakeholders to clarify compliance requirements and drive implementation of process improvements.
- Prepare executive management reporting on SOC2 efforts status, support the management of project risks.
- Identify methods to leverage testing for several certification, internal audit and attestation purposes and efficiently coordinate relevant activities.
- Oversee activities to ensure that audits are planned in advance, considering scope overlaps, stakeholder outreach and resource limitations.
- Develop and implement PMO processes.
- Identify trends and propose robust solutions for challenges.
- Collaborate with other KPMGI/GT&K teams, advising on suitable approach for auditable information protection practices and audit success.
Key Accountabilities
- Plan for and coordinate Service and Organizations Controls (SOC) 2 readiness assessment and examination streams for in-scope business and technology areas.
- Prepare executive management reporting on SOC2 efforts status, support the management of project risks.
- Identify methods to leverage testing for several certification, internal audit and attestation purposes.
- Develop and implement PMO processes for audit management.
- Identify trends and propose robust solutions for challenges.
- Collaborate with other KPMGI/GT&K teams, advising on suitable approach for auditable information protection practices.
Experience / Knowledge / Qualifications:
- Proven experience in information protection, including leading and/or managing information protection controls assessments.
- Program and project management skills and experience.
- Proven track record of leading multiple projects or programs.
- Ability to multi-task, adapt strategy based on competing priorities and work independently within a global team.
- High quality results delivery with attention to detail.
- Experience of senior stakeholder management.
- Information security auditing experience and certifications a big plus, such as CISA or Certified ISO 27001 Lead Auditor.
- Strong cloud information protection audit experience.
- Excellent business writing, reporting, presentation and communication skills in English.
- Strong SOC2 and IT operations knowledge.
- Ability to manage but also be hands-on when required.
Agile/Flexible Working
At KPMG International, we are supportive of helping you to achieve a balance between your home and work demands. We are happy to discuss individual requirements and our range of flexible working arrangements could be of interest.
KPMG International's commitment to inclusion & diversity
At KPMG International, we recognise that we need inclusion and diversity to be successful. We want to attract, retain and develop diverse talent at all levels.
Applying with a disability
KPMG International is proud to be an inclusive place to work and we are committed to ensuring that you are treated fairly throughout our recruitment process.
Attestation Manager in Manchester employer: Career Choices Dewis Gyrfa Ltd
Contact Detail:
Career Choices Dewis Gyrfa Ltd Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Attestation Manager in Manchester
✨Tip Number 1
Network like a pro! Reach out to current or former KPMG employees on LinkedIn. Ask them about their experiences and any tips they might have for landing the Attestation Manager role. Personal connections can give you insights that job descriptions just can't.
✨Tip Number 2
Prepare for the interview by diving deep into KPMG's values and recent projects. Show us that you understand our mission and how your skills align with our goals. Tailor your responses to highlight your experience in information protection and project management.
✨Tip Number 3
Practice makes perfect! Conduct mock interviews with friends or use online platforms. Focus on articulating your experience with SOC2 assessments and your approach to managing multiple projects. The more comfortable you are, the better you'll perform.
✨Tip Number 4
Don't forget to follow up after your interview! A simple thank-you email reiterating your interest in the role and mentioning something specific from your conversation can leave a lasting impression. It shows us you're genuinely interested in joining the team.
We think you need these skills to ace Attestation Manager in Manchester
Some tips for your application 🫡
Tailor Your Application: Make sure to customise your CV and cover letter for the Attestation Manager role. Highlight your experience with information protection and project management, as these are key aspects of the job. We want to see how your skills align with what we're looking for!
Showcase Your Achievements: When detailing your past roles, focus on specific achievements that demonstrate your ability to manage multiple projects and lead teams. Use metrics where possible to quantify your success. This helps us understand the impact you've made in previous positions.
Be Clear and Concise: Keep your writing clear and to the point. Avoid jargon unless it's relevant to the role. We appreciate straightforward communication, so make it easy for us to see your qualifications and fit for the position.
Apply Through Our Website: Don’t forget to submit your application through our official website! This ensures that your application is processed correctly and gives you the best chance of being considered for the role. We can’t wait to see what you bring to the table!
How to prepare for a job interview at Career Choices Dewis Gyrfa Ltd
✨Know Your SOC2 Inside Out
Make sure you have a solid understanding of SOC2 requirements and how they apply to cloud platforms. Brush up on ISO27001 and ISO27017 standards, as these will likely come up in your interview. Being able to discuss specific examples of how you've managed or assessed these controls will impress the interviewers.
✨Showcase Your Project Management Skills
Prepare to talk about your experience in managing multiple projects simultaneously. Highlight any specific methodologies you've used, like Agile or PMO processes, and be ready to discuss how you prioritise tasks and manage stakeholder expectations. Real-life examples will help demonstrate your capabilities.
✨Communicate Clearly and Confidently
Since this role involves senior stakeholder management, practice articulating complex information in a clear and concise manner. Use the STAR method (Situation, Task, Action, Result) to structure your responses, especially when discussing challenges you've faced and how you overcame them.
✨Be Ready for Scenario-Based Questions
Expect questions that ask how you would handle specific situations related to information protection audits. Think through potential scenarios beforehand, such as dealing with compliance issues or coordinating with cross-discipline teams, and prepare your thought process on how you'd approach these challenges.