Information Systems Auditor

Information Systems Auditor

Full-Time 67500 - 82500 £ / year (est.) Home office (partial)
National Grid

At a Glance

  • Tasks: Conduct audits on cyber security and technology risks while driving continuous improvement.
  • Company: Join National Grid, a leader in energy delivery and innovation.
  • Benefits: Competitive salary, performance bonuses, flexible benefits, and a supportive work environment.
  • Other info: Diverse and inclusive workplace with excellent career growth opportunities.
  • Why this job: Make a real impact in the tech world while developing your skills in a dynamic team.
  • Qualifications: Graduate degree in relevant field and experience in IT audit or cyber security.

The predicted salary is between 67500 - 82500 £ per year.

We're looking for a passionate Information Systems Business Auditor to join our Global Internal Audit Team! Delivering cyber security, Information Systems (IS), Artificial Intelligence (AI) and technology risk audits, you'll assess risks across the UK and US, including cyber security, cloud technologies, AI-enabled solutions, identity and access management, business-critical systems and Critical National Infrastructure environments. The successful candidate will be able to demonstrate experience in delivering a diverse range of internal IT audit engagements, with experience in cyber security related audits being particularly beneficial.

As a trusted advisor and influencer, you’ll develop strong working relationships across both the business and IS team, breaking down organisational silos and advocating for a more integrated audit approach. As a flexible pragmatist, you’ll synthesize and communicate complex audit topics whilst also providing recommendations to support the business and IT in driving continuous improvement of controls and processes to make them more efficient and effective.

This role is based out of our Warwick office, and we’d hope to see you at least two days per week but you’re welcome to be in the office more often if that would work best for you. We’re happy to discuss any additional flexibility in working patterns or requirements that you feel could help to make this job work for you!

What You'll Have

  • Deliver audits across a broad range of cyber security and technology risk domains including cloud technologies, identity and access management, artificial intelligence, technology resilience and third-party technology risks.
  • Execute internal audits, with a focus on agility and innovation for value adding and timely delivery.
  • Maintain high quality and timely audit documentation.
  • Produce Summary of Issues reports and Draft Audit Reports.
  • Track and update status of remediation actions undertaken by the business to address identified risks.
  • Support Internal Audit’s continued evolution in the use of data, automation, and AI-enabled ways of working to enhance audit quality, efficiency, and insight.
  • Deliver assigned program of audits in line with excellent quality and within allocated time, using professional judgement to set the scope and testing approach to ensure key risks are addressed.
  • Proactively look for areas of improvement during the audit process and provide value adding and insightful recommendations that address control and process opportunities/weaknesses.
  • Explore and apply data analytics, automation, and AI-enabled tools responsibly to support audit planning, testing, reporting, issue analysis, and continuous improvement.
  • Seamless communication with Senior Business Auditors to avoid surprises and ensure audit progression.
  • Produce Summary of issues (SOI) reports and Draft Audit Reports that are well written and effectively communicate the key finding and recommendations of an audit.
  • Own and manage a portfolio of audit actions being worked on by business and, on business completion, assess the effectiveness of activities undertaken to address the risks identified.
  • Develop and maintain strong and positive relationships with key stakeholders and maintain a thorough knowledge of the business and regulatory environment.

What You'll Have

  • A Graduate degree in a related field (e.g., Accounting, Finance, "STEM" Majors or Business Administration) is expected.
  • CISA qualified (or working towards qualification) with experience delivering IT audit, cyber security audit or technology risk engagements.
  • Experience in one or more of the following areas: cyber security, cloud technologies, identity and access management, AI governance, technology resilience, third-party technology risk, major business applications or Operational Technology (OT) environments.
  • You have hands-on experience with audit delivery and practices, internal control frameworks and risk management activities and applying internal auditing principles and practices.
  • Knowledge of technology governance, cyber security and risk management frameworks (e.g. NIST, ISO 27001, CIS Controls and COBIT) together with broader risk and controls frameworks would be advantageous.
  • You’re comfortable working in a fast-paced environment, are used to managing multiple priorities and have strong project management experience, including managing project teams.
  • Information system internal audit delivery and practices, internal control frameworks, risk management activities and skill in applying internal auditing principles and practices.
  • Comfortable exploring and using data analytics, automation, and AI-enabled tools responsibly to improve audit quality, efficiency, and insight.
  • Demonstrated track record of developing successful, long lasting, relationships across the business including ability to engage, challenge and influence senior managers, deal effectively with resistance to proposals and secure their buy-in and support.

Don’t meet every single requirement? Studies have shown that women and people of colour are less likely to apply for jobs unless they meet every single qualification. At National Grid, we are committed to building a diverse, inclusive, and authentic workplace for everyone. So, if you’re excited about this role but your experience or qualifications don’t match the job description exactly, we encourage you to apply anyway. You might just be the right person for our growing business in this role or another one.

What You'll Get

Up to 70,000 dependent on experience. As well as your base salary, you will receive a bonus based on personal and company performance with on target being 15% (with a maximum of 30%) and a competitive contributory pension scheme where we will double match your contribution to a maximum company contribution of 12%. You will also have access to several flexible benefits such as a share incentive plan, salary sacrifice car and technology schemes, support via employee assistance lines and matched charity giving to name a few.

Further Information

The closing date for this vacancy is Midnight 26 August 26, with interviews due to take place w/c 31 August 26 onwards. We encourage candidates to submit their applications as early as possible and not to wait until the published closing date. National Grid’s recruitment periods can and may vary. We reserve the right to remove this advert or close it to further applications at any point during the recruitment process.

About us

Every day we deliver safe and secure energy to homes, communities, and businesses. We are there when people need us the most. We connect people to the energy they need for the lives they live. The pace of change in society and our industry is accelerating, and our expertise and track record puts us in an unparalleled position to shape the sustainable future of our industry. To be successful we must anticipate the needs of our customers, reducing the cost of energy delivery today and pioneering the flexible energy systems of tomorrow. This requires us to deliver on our promises and always look for new opportunities to grow, both ourselves and our business.

At National Grid, we work towards the highest standards in everything we do, including how we support, value and develop our people. Our aim is to encourage and support employees to thrive and be the best they can be. We celebrate the difference people can bring into our organisation, and welcome and encourage applicants with diverse experiences and backgrounds, and offer flexible and tailored support, at home and in the office. Our goal is to drive, develop and operate our business in a way that results in a more inclusive culture. All employment is decided on the basis of qualifications, the innovation from diverse teams & perspectives and business need. We are committed to building a workforce so we can represent the communities we serve and have a working environment in which each individual feels valued, respected, fairly treated, and able to reach their full potential.

Information Systems Auditor employer: National Grid

Join a forward-thinking company that values innovation and collaboration in the telecoms sector. With a strong commitment to employee development, we offer a hybrid working model that promotes work-life balance while providing opportunities for professional growth within the dynamic environment of the South West and South Wales. Our supportive culture encourages teamwork and ensures that you play a vital role in delivering secure and resilient communication solutions for the high-voltage electricity network.

National Grid

Contact Details:

National Grid Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Information Systems Auditor

Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including National Grid, love seeing candidates who actively engage in these challenges.

Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

Apply Directly Through National Grid

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at National Grid. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace Information Systems Auditor

Cyber Security Auditing
Information Systems Audit
Technology Risk Assessment
Cloud Technologies
Identity and Access Management
Artificial Intelligence Governance
Data Analytics

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at National Grid insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to National Grid that you’re committed to staying ahead in the game.

How to prepare for a job interview at National Grid

Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

Prepare for Scenario-Based Questions

Expect the interviewers at National Grid to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at National Grid.

Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.