At a Glance
- Tasks: Lead cyber and information security audits, exceeding client expectations and managing staff development.
- Company: Grant Thornton, a forward-thinking firm focused on growth and positive change.
- Benefits: Flexible working options, work-life balance, and opportunities for professional growth.
- Other info: Join a diverse culture that values your unique contributions and encourages personal passions.
- Why this job: Make a real impact in technology risk management while developing your career in a supportive environment.
- Qualifications: Professional qualification in cybersecurity with experience in managing internal audit clients.
The predicted salary is between 43200 - 72000 £ per year.
At Grant Thornton we do things differently - looking to the future, driving ambitious growth and pioneering positive change in our industry. Providing audit, tax and advisory services, we empower clients through strategic insight, curiosity, and genuine partnership. And we empower our people with real opportunity, an inclusive culture and work life balance.
With over 5,000 people in the UK, and a presence in 150 global markets, we are on an ambitious journey, from great to exceptional, and we need the best people to help us achieve our potential.
Our Business Risk Services practice focuses on helping organisations manage risk, improve operational processes and realise strategic objectives. Our team brings together a range of skills and experience across sector specialisms.
Grant Thornton's Technology Risk Services team (TRS) provides the advice necessary to help clients manage risk associated with their use of technology. Our professionals can deliver objective, value-added solutions that will enable clients to strengthen internal controls and governance processes, implement sound organisational strategies, increase technological capabilities and improve their operational efficiency.
TRS is part of Grant Thornton's Business Risk Services (BRS) department, who provide internal audit and risk advisory services to the FTSE 250, large and complex Corporates, international and major charities and not-for-profit organisations, and central government departments.
We are happy to talk flexible working and consider reduced hours and job shares, we will support you to balance your work and life.
A look into the role
As a Technology Risk Services Manager, focusing on cyber and information security, within our Business Risk Services (BRS) team you will:
- Take ownership and lead on allocated assignments in a way that exceeds client expectations while taking responsibility for managing and developing staff.
- Be responsible for delivering a number of cyber and information security-focussed IT internal audit engagements, and manage wider relationships with clients.
- Lead on planning conversations with clients, and in the preparation of draft terms of reference/audit planning documents.
- Deliver fieldwork, ensuring all work is performed in accordance with Grant Thornton methodologies, that sufficient and appropriate testing has been performed, and evidence to support key decisions has been obtained.
- Hold close-out meetings with clients to ensure that they have a full understanding of issues identified and these are agreed, and write reports summarising the key observations from the work performed.
- Assist with the financial management of client relationships, including monitoring WIP, raising invoices, and drafting annual budgets.
Knowing you're right for us
Joining us as a Technology Risk Services Manager, the minimum criteria you'll need is a professional qualification (CISA, CISM, CISP, or similar) with post qualification experience, and to be confident managing a large portfolio of internal audit clients. It would be great if you had some of the following skills, but don't worry if you don't tick every box, we will help you develop along the way.
- Experience of scoping, delivering, and reporting on cyber and information security related internal audits, and performing related gap assessments/maturity assessments.
- Experience in assessing and testing technical security controls in areas such as firewalls, cloud configurations, network monitoring and antimalware solutions, and asset hardening arrangements.
- Familiar with reviewing cyber security testing and incident response processes, cyber and information security governance arrangements, and third-party assurance measures.
- Strong experience of undertaking interviews, written analysis, and writing reports for clients on cyber and information security.
- Solid understanding of cyber security controls, technology, and frameworks (such as NIST, CIS, Cyber Essentials, GDPR, etc.).
- Professional security certifications (such as CISSP or CISM) are desirable.
- Experience in assessing data protection processes and controls, including the GDPR and other related regulations.
- Extensive experience of using audit software and Microsoft packages.
- Experience of managing audits and able to build extensive and active internal networks which crosses geographical and client service boundaries.
Knowing we're right for you
Embracing uniqueness, the culture at Grant Thornton thrives on the contributions of all our people, we never settle for what is easy, we look beyond to deliver the right thing, for everyone. Building an inclusive culture, where we value difference and respect our colleagues helps our people to perform at the best of their ability and realise their potential.
Our open and accessible culture means you'll interact with leaders who are interested in you and everything you bring to our firm. The things that set you apart, we value them. That's why we give you the freedom to bring your whole self to work and pursue your passions inside and outside of work.
Beyond the job
Life is more than work. The things you do, and the people you're with outside of work matter, that's why we're happy to look at flexible working options for all our roles, and we'll always do our best to keep your work and life in balance.
The impact you can make here will go far beyond your day job. From secondments, to fundraising for local charities, or investing in entrepreneurs in the developing world, you'll be giving back to society. It's that drive to do the right thing that runs through our every move, grounded in our CLEARR values – Collaboration, Leadership, Excellence, Agility, Respect and Responsibility.
We're looking for people who want to contribute, spark fresh ideas and go beyond expectations. People who want to be able to proudly do what's right, for the firm, our clients, our people and themselves. It's how it should be.
Technology Risk Manager in London employer: Grant Thornton UK
At Grant Thornton, we pride ourselves on fostering an inclusive culture that empowers our employees to thrive both professionally and personally. With a commitment to work-life balance, flexible working options, and opportunities for growth, we encourage our team members to bring their whole selves to work while making a meaningful impact in the technology risk landscape. Join us in London, where you can be part of a dynamic team dedicated to redefining the industry and driving positive change.
StudySmarter Expert Advice🤫
We think this is how you could land Technology Risk Manager in London
✨Join Compliance Communities
Get involved in compliance and risk communities — both online and offline. Look for forums, LinkedIn groups, or even local meetups where compliance pros hang out. You never know who might drop a job opportunity your way!
✨Attend Industry Conferences
Keep an eye out for compliance and risk management conferences and workshops in your area. These events are a goldmine for networking, and they often have job boards or recruiters on-site looking for new talent. Plus, it’s a chance to learn what's trending in the field.
✨Leverage Your University Career Services
If you’ve recently graduated or are still studying, head over to your university's career services. Many companies, including those in compliance, actively recruit fresh talent through these services, so make sure you tap into that resource.
✨Showcase Your Knowledge Online
Start writing articles or blog posts about compliance topics that interest you. Share them on platforms like LinkedIn to demonstrate your knowledge and passion. This not only builds your presence in the field but can also catch the attention of companies like Grant Thornton UK looking for candidates who are engaged and informed.
We think you need these skills to ace Technology Risk Manager in London
Some tips for your application 🫡
Show Your Understanding of Compliance:In the compliance-risk field, it's super important to showcase your understanding of regulations and risk management frameworks. Highlight any relevant coursework, certifications (like ICA or AML), or even projects that demonstrate your knowledge and commitment to this area. We want to see how you can navigate this complex landscape!
Quantify Your Achievements:When detailing your experience, try to quantify your achievements. For example, if you've previously worked on a project that improved compliance metrics or reduced risk exposure, give us the numbers! This data-driven approach really stands out to hiring managers in compliance-risk roles.
Tailor Your CV to Reflect Relevant Skills:Make sure your CV highlights skills that are particularly relevant to compliance, like attention to detail, analytical thinking, and report writing. Ensure these are easy to spot – consider using bullet points to break down your responsibilities and achievements for maximum impact!
Craft a Motivating Cover Letter:In your cover letter, let us know why you’re excited about the compliance-risk role at Grant Thornton UK. Share what motivates you about compliance, and how you believe you can contribute to our mission. This is your chance to showcase not only your skills but also your passion for this important field!
How to prepare for a job interview at Grant Thornton UK
✨Master the Regulations
Brush up on key compliance regulations relevant to the industry you're applying to. Familiarising yourself with specific laws and frameworks used in your field will give you an edge during technical questions. Show that you’re not just aware of them but can also apply them—think real-life scenarios!
✨Show Your Analytical Skills
Compliance roles really focus on analytical skills, so be prepared for case studies or situational questions during the interview. We've got to demonstrate how we approach risk assessments or compliance audits, possibly drawing on examples from past experiences or university projects. Bring some thoughtful case scenarios to discuss!
✨Know Your Tools
Get comfortable with commonly used compliance software and tools. Familiarity with platforms like RSA or MetricStream can really impress during your interview, as it shows you're ready to hit the ground running. If you’ve had any experience with them, make sure to highlight that!
✨Align with Company Culture
Since it's a full-time position, show your long-term commitment and interest in the company’s mission and values. Dive into how your ethics and professional philosophy align with Grant Thornton UK’s stance on compliance. A shared vision can really resonate with interviewers looking for fit as much as skill!