Director - Technology Risk

Director - Technology Risk

Full-Time 100000 - 120000 £ / year (est.) Home office (partial)
EY

At a Glance

  • Tasks: Lead technology risk audits and develop innovative strategies in a dynamic digital landscape.
  • Company: Join EY, a global leader in building a better working world.
  • Benefits: Competitive salary, flexible work options, and comprehensive health benefits.
  • Other info: Inclusive culture with opportunities for professional growth and international travel.
  • Why this job: Make a real impact on technology risk management while developing your leadership skills.
  • Qualifications: 15+ years in technology risk with strong leadership and audit experience.

The predicted salary is between 100000 - 120000 £ per year.

At EY, we’re all in to shape your future with confidence. We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world.

The opportunity

We are looking for an experienced Director to join our Global Internal Audit team, as an Audit Leader. This role offers the opportunity to operate at a global executive level while further developing your leadership skills in an inclusive and diverse environment. The scope of Global Internal Audit encompasses both global systems and processes and those across the regions. You will be at the forefront helping EY with managing the risks and challenges of a rapidly changing digital landscape, ensuring compliance with evolving regulations, and identifying opportunities for innovation and continuous improvement to deliver valuable outcomes. If you love Technology and Digital / Cyber Risk and would like to gain a different perspective of our own large and globally diverse EY organization and want to make an impact, come join our team. You will not be required to relocate, however you will need to be flexible to travel internationally and to accommodate international time zones.

Your Key Responsibilities

  • Support the Chief Audit Executive build a technology risk capability that will enable internal audit to provide confidence and assurance that EY’s strategic technology and core platforms are protected and operating effectively. This includes AI, digital platforms and core business technologies e.g. Mercury / SAP.
  • Lead the development of the technology-focused internal audit plan encompassing risk assessments and the strategic internal audit approach to emerging digital, cybersecurity, data, compliance and process risks. This also will include monitoring the technology environment, follow-up activities and future audit or advisory coverage.
  • Lead internal audits and advisory engagements across IT risk management, cybersecurity, digital compliance (including ISO, PCI, Privacy and other leading security and technology frameworks and regulations), program risk, resilience, data governance and responsible AI.
  • Assess key technology environments, applications, systems, interfaces, IT dependencies and IT general controls to support risk-based audit scoping and execution.
  • Oversee end-to-end audit delivery, including scoping, planning, budgeting, resourcing, execution, reporting and completion of required documentation in accordance with GIA methodology.
  • Promote innovation, data analytics, automation and leading practices to enhance audit effectiveness and insight generation.
  • Cultivate trusted relationships with senior management, Audit Sponsors, stakeholders, second line functions and subject matter resources to support effective audit engagement, alignment on key risks and transparent communication of audit progress and outcomes, while maintaining GIA’s independence, objectivity and professional scepticism.
  • Lead the development of high-quality audit reports and deliverables that clearly communicate key risks, findings and actionable insights, ensuring consistency with GIA reporting standards, required reviews and stakeholder expectations.
  • Develop and strengthen GIA’s technology audit capabilities by supporting recruitment, managing and coaching team members and subject matter resources, fostering knowledge sharing, technical upskilling and an inclusive, high-performing team environment.

Skills And Attributes For Success

The successful candidate will be an experienced Technology Risk Director with strong experience in cybersecurity, new technology (e.g. AI / automation and related tools), technology governance and risk management, risk management and internal audit. The primary capability is to bring broad experience across IT governance, cybersecurity, digital compliance, ERP, resilience, data governance, responsible AI and technology-enabled transformation. This technology experience needs to be combined with the ability to lead complex global projects and internal audits, building trust and engagement with senior stakeholders and deliver clear, risk-based insights that support effective governance, risk management and control improvement.

In addition, you are able to:

  • Foster an inclusive, innovative and high-performing team environment by actively coaching, mentoring and developing team members.
  • Deliver high-quality audit and advisory work within agreed timelines and budgets, while proactively managing risks, monitoring progress and keeping stakeholders informed of key outcomes and emerging matters.
  • Communicate clearly and effectively, providing actionable insights and practical recommendations on control issues, risk implications and opportunities to address identified gaps.
  • Stay current on business, technology and industry trends relevant to EY’s evolving risk landscape.

To qualify for the role you will ideally have:

Education

  • A bachelor’s degree or equivalent qualification in a related field, with approximately 15+ years of relevant experience in technology risk, internal audit, public accounting, risk management or a large global organization.
  • Certifications and / or accreditations in Information Security, Microsoft, SAP, AI or other relevant technologies.

Experience

  • At least 10 years of experience in a leadership role managing a team, and demonstrated experience in the following areas:
  • Technology-enabled Integrated Risk Management (IRM) or Governance, Risk and Compliance (GRC) programs
  • Portfolio, Program and Project risk management consulting and/or assurance services
  • Regulatory Compliance (e.g. Privacy, SoCI Act, SoX, Spam Act)
  • Resiliency – design, build, implementation of business and technology resilience programs
  • AI Governance, Responsible Use of AI (incl. Responsible AI strategy, AI Governance framework)
  • Governance, Risk and Compliance
  • Internal Controls and Internal Audit (incl. Controls optimisation, SoX)
  • Assurance – technology-focused internal audit (incl. IT General Controls, Cyber Security, and AI Governance)

Certification requirements: CISSP/CISM/CCSP/CISA certification desired; non-certified hires will be supported in acquiring relevant certifications.

This job posting relates to an existing vacancy within our organization.

What We Offer You (Canada)

We offer a competitive compensation package where you’ll be rewarded based on your performance and recognized for the value you bring to our business. In addition, our Total Rewards package allows you to decide which benefits are right for you and which ones help you create a solid foundation for your future. Our Total Rewards package includes a discretionary bonus program, a comprehensive medical, prescription drug and dental coverage plan, a defined contribution pension plan, a great vacation policy plus firm paid days that allow you to enjoy longer long weekends throughout the year, statutory holidays and paid personal days (based on province of residence), and a range of exciting programs and benefits designed to support your physical, financial and social well-being.

Plus, we offer:

  • Support and coaching from some of the most engaging colleagues in the industry
  • Learning opportunities to develop new skills and progress your career
  • The freedom and flexibility to handle your role in a way that’s right for you

What We Offer You

The compensation ranges below are provided in order to comply with United States pay transparency laws. Other geographies will follow their local salary guidelines, which may not be a direct conversion of published US salary ranges. At EY, we’ll develop you with future-focused skills and equip you with world-class experiences. We’ll empower you and your extraordinary talents in a diverse and inclusive culture of globally connected teams. Learn more.

We offer a comprehensive compensation and benefits package where you’ll be rewarded based on your performance and recognized for the value you bring to the business. The base salary range for this job in all geographic locations in the US is $214,300 to $424,300. The base salary range for New York City Metro Area, Washington State and California (excluding Sacramento) is $257,100 to $482,100. Individual salaries within those ranges are determined through a wide variety of factors including but not limited to education, experience, knowledge, skills and geography. In addition, our Total Rewards package includes medical and dental coverage, pension and 401(k) plans, and a wide range of paid time off options.

Join us in our team-led and leader-enabled hybrid model. Our expectation is for most people in external, client serving roles to work together in person 40-60% of the time over the course of an engagement, project or year. Under our flexible vacation policy, you’ll decide how much vacation time you need based on your own personal circumstances. You’ll also be granted time off for designated EY Paid Holidays, Winter/Summer breaks, Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.

Are you ready to shape your future with confidence? EY accepts applications for this position on an on-going basis. EY focuses on high-ethical standards and integrity among its employees and expects all candidates to demonstrate these qualities.

Director - Technology Risk employer: EY

EY is an exceptional employer that fosters a collaborative and innovative work culture in Manchester, where you can thrive as an Industry Strategy & Growth Lead. With comprehensive benefits including medical coverage and flexible vacation policies, alongside a strong commitment to professional development, EY empowers its employees to grow and excel in their careers while making a meaningful impact in the consumer and health sectors.

EY

Contact Details:

EY Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Director - Technology Risk

Join Compliance Communities

Get involved in compliance and risk communities — both online and offline. Look for forums, LinkedIn groups, or even local meetups where compliance pros hang out. You never know who might drop a job opportunity your way!

Attend Industry Conferences

Keep an eye out for compliance and risk management conferences and workshops in your area. These events are a goldmine for networking, and they often have job boards or recruiters on-site looking for new talent. Plus, it’s a chance to learn what's trending in the field.

Leverage Your University Career Services

If you’ve recently graduated or are still studying, head over to your university's career services. Many companies, including those in compliance, actively recruit fresh talent through these services, so make sure you tap into that resource.

Showcase Your Knowledge Online

Start writing articles or blog posts about compliance topics that interest you. Share them on platforms like LinkedIn to demonstrate your knowledge and passion. This not only builds your presence in the field but can also catch the attention of companies like EY looking for candidates who are engaged and informed.

We think you need these skills to ace Director - Technology Risk

Technology Risk Management
Cybersecurity
Internal Audit
Digital Compliance
AI Governance
Risk Assessment
Data Governance

Some tips for your application 🫡

Show Your Understanding of Compliance:In the compliance-risk field, it's super important to showcase your understanding of regulations and risk management frameworks. Highlight any relevant coursework, certifications (like ICA or AML), or even projects that demonstrate your knowledge and commitment to this area. We want to see how you can navigate this complex landscape!

Quantify Your Achievements:When detailing your experience, try to quantify your achievements. For example, if you've previously worked on a project that improved compliance metrics or reduced risk exposure, give us the numbers! This data-driven approach really stands out to hiring managers in compliance-risk roles.

Tailor Your CV to Reflect Relevant Skills:Make sure your CV highlights skills that are particularly relevant to compliance, like attention to detail, analytical thinking, and report writing. Ensure these are easy to spot – consider using bullet points to break down your responsibilities and achievements for maximum impact!

Craft a Motivating Cover Letter:In your cover letter, let us know why you’re excited about the compliance-risk role at EY. Share what motivates you about compliance, and how you believe you can contribute to our mission. This is your chance to showcase not only your skills but also your passion for this important field!

How to prepare for a job interview at EY

Master the Regulations

Brush up on key compliance regulations relevant to the industry you're applying to. Familiarising yourself with specific laws and frameworks used in your field will give you an edge during technical questions. Show that you’re not just aware of them but can also apply them—think real-life scenarios!

Show Your Analytical Skills

Compliance roles really focus on analytical skills, so be prepared for case studies or situational questions during the interview. We've got to demonstrate how we approach risk assessments or compliance audits, possibly drawing on examples from past experiences or university projects. Bring some thoughtful case scenarios to discuss!

Know Your Tools

Get comfortable with commonly used compliance software and tools. Familiarity with platforms like RSA or MetricStream can really impress during your interview, as it shows you're ready to hit the ground running. If you’ve had any experience with them, make sure to highlight that!

Align with Company Culture

Since it's a full-time position, show your long-term commitment and interest in the company’s mission and values. Dive into how your ethics and professional philosophy align with EY’s stance on compliance. A shared vision can really resonate with interviewers looking for fit as much as skill!