At a Glance
- Tasks: Lead cyber and information security audits, exceeding client expectations and managing staff development.
- Company: Grant Thornton, a forward-thinking firm with a focus on growth and positive change.
- Benefits: Flexible working options, competitive salary, and opportunities for professional development.
- Other info: Inclusive culture that values uniqueness and encourages personal and professional growth.
- Why this job: Make a real impact in the tech industry while balancing work and life.
- Qualifications: Professional qualification in cyber security and experience in internal audits.
The predicted salary is between 60000 - 75000 £ per year.
At Grant Thornton we do things differently - looking to the future, driving ambitious growth and pioneering positive change in our industry. Providing audit, tax and advisory services, we empower clients through strategic insight, curiosity, and genuine partnership. And we empower our people with real opportunity, an inclusive culture and work life balance.
With over 5,000 people in the UK, and a presence in 150 global markets, we're on an ambitious journey, from great to exceptional, and we need the best people to help us achieve our potential.
Our Business Risk Services practice focuses on helping organisations manage risk, improve operational processes and realise strategic objectives. Our team brings together a range of skills and experience across sector specialisms.
Grant Thornton's Technology Risk Services team (TRS) provides the advice necessary to help clients manage risk associated with their use of technology. Our professionals can deliver objective, value-added solutions that will enable clients to strengthen internal controls and governance processes, implement sound organisational strategies, increase technological capabilities and improve their operational efficiency.
TRS is part of Grant Thornton's Business Risk Services (‘BRS’) department, who provide internal audit and risk advisory services to the FTSE 250, large and complex Corporates, international and major charities and not-for-profit organisations, and central government departments.
We’re happy to talk flexible working and consider reduced hours and job shares, we’ll support you to balance your work and life.
As a Technology Risk Services Manager, focusing on cyber and information security, within our Business Risk Services (BRS) team you will:
- Take ownership and lead on allocated assignments in a way that exceeds client expectations while taking responsibility for managing and developing staff.
- Be responsible for delivering a number of cyber and information security-focused IT internal audit engagements, and manage wider relationships with clients.
- Lead on planning conversations with clients, and in the preparation of draft terms of reference/audit planning documents.
- Deliver fieldwork, ensuring all work is performed in accordance with Grant Thornton methodologies, that sufficient and appropriate testing has been performed, and evidence to support key decisions has been obtained.
- Hold close-out meetings with clients to ensure that they have a full understanding of issues identified and these are agreed, and write reports summarising the key observations from the work performed.
- Assist with the financial management of client relationships, including monitoring WIP, raising invoices, and drafting annual budgets.
Joining us as a Technology Risk Services Manager, the minimum criteria you’ll need is a professional qualification (CISA, CISM, CISP, or similar) with post qualification experience, and to be confident managing a large portfolio of internal audit clients. It would be great if you had some of the following skills, but don’t worry if you don’t tick every box, we’ll help you develop along the way.
- Experience of scoping, delivering, and reporting on cyber and information security related internal audits, and performing related gap assessments/maturity assessments.
- Experience in assessing and testing technical security controls in areas such as firewalls, cloud configurations, network monitoring and antimalware solutions, and asset hardening arrangements.
- Familiar with reviewing cyber security testing and incident response processes, cyber and information security governance arrangements, and third-party assurance measures.
- Strong experience of undertaking interviews, written analysis, and writing reports for clients on cyber and information security.
- Solid understanding of cyber security controls, technology, and frameworks (such as NIST, CIS, Cyber Essentials, GDPR, etc.).
- Professional security certifications (such as CISSP or CISM) are desirable.
- Experience in assessing data protection processes and controls, including the GDPR and other related regulations.
- Extensive experience of using audit software and Microsoft packages.
- Experience of managing audits and able to build extensive and active internal networks which crosses geographical and client service boundaries.
Embracing uniqueness, the culture at Grant Thornton thrives on the contributions of all our people, we never settle for what is easy, we look beyond to deliver the right thing, for everyone. Building an inclusive culture, where we value difference and respect our colleagues helps our people to perform at the best of their ability and realise their potential.
Our open and accessible culture means you’ll interact with leaders who are interested in you and everything you bring to our firm. The things that set you apart, we value them. That’s why we give you the freedom to bring your whole self to work and pursue your passions inside and outside of work.
Life is more than work. The things you do, and the people you’re with outside of work matter, that’s why we’re happy to look at flexible working options for all our roles, and we’ll always do our best to keep your work and life in balance.
The impact you can make here will go far beyond your day job. From secondments, to fundraising for local charities, or investing in entrepreneurs in the developing world, you’ll be giving back to society. It’s that drive to do the right thing that runs through our every move, grounded in our firm’s values – purposefully driven, actively curious and candid but kind.
We’re looking for people who want to contribute, spark fresh ideas and go beyond expectations. People who want to be able to proudly do what’s right, for the firm, our clients, our people and themselves.
Cyber & Technology Internal Audit Manager | Hybrid employer: Grant Thornton UK
At Grant Thornton, we pride ourselves on fostering an inclusive culture that empowers our employees to thrive both professionally and personally. With a commitment to work-life balance, flexible working options, and opportunities for growth, we encourage our team members to bring their whole selves to work while making a meaningful impact in the community. Join us in London as a Cyber & Technology Internal Audit Manager and be part of a forward-thinking firm that values curiosity, collaboration, and the drive to redefine our industry.
StudySmarter Expert Advice🤫
We think this is how you could land Cyber & Technology Internal Audit Manager | Hybrid
✨Tip Number 1
Network like a pro! Reach out to people in the industry, attend events, and connect on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Prepare for interviews by researching the company and its culture. Understand their values and how they align with yours. This will help you stand out and show that you're genuinely interested in being part of their team.
✨Tip Number 3
Practice your interview skills with friends or family. Get comfortable talking about your experiences and how they relate to the role. The more you practice, the more confident you'll feel when it’s time to shine!
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets noticed. Plus, we love seeing candidates who are proactive and take the initiative to connect with us directly.
We think you need these skills to ace Cyber & Technology Internal Audit Manager | Hybrid
Some tips for your application 🫡
Tailor Your CV:Make sure your CV is tailored to the role of Technology Internal Audit Manager. Highlight your experience in cyber and information security, and don’t forget to mention any relevant qualifications like CISA or CISM. We want to see how your skills align with what we’re looking for!
Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to tell us why you’re passionate about this role and how you can contribute to our team. Be genuine and let your personality come through – we love seeing the real you!
Showcase Your Achievements:When detailing your experience, focus on specific achievements rather than just listing duties. Use metrics where possible to demonstrate your impact, like improvements in audit processes or successful client relationships. We appreciate results-driven candidates!
Apply Through Our Website:We encourage you to apply directly through our website. It’s the best way to ensure your application gets into the right hands. Plus, you’ll find all the info you need about the role and our company culture there!
How to prepare for a job interview at Grant Thornton UK
✨Know Your Cyber Security Stuff
Make sure you brush up on your knowledge of cyber security frameworks like NIST and GDPR. Be ready to discuss your experience with technical security controls and how you've applied them in past roles. This will show that you're not just familiar with the concepts, but that you can also implement them effectively.
✨Prepare for Client Conversations
Since you'll be leading planning conversations with clients, practice articulating your thoughts clearly. Think about how you would explain complex audit findings in a way that's easy for clients to understand. This will demonstrate your ability to communicate effectively and build strong relationships.
✨Showcase Your Leadership Skills
As a Technology Risk Services Manager, you'll need to manage and develop staff. Be prepared to share examples of how you've successfully led teams in the past. Highlight any experiences where you've exceeded client expectations or improved processes, as this will resonate well with the interviewers.
✨Ask Insightful Questions
Interviews are a two-way street, so come armed with questions that show your curiosity about the role and the company. Ask about their approach to internal audits or how they foster an inclusive culture. This not only shows your interest but also helps you gauge if the company is the right fit for you.