At a Glance
- Tasks: Lead IT control assurance and safeguard our tech landscape in a dynamic retail environment.
- Company: Join Ocado Retail, the world's largest online supermarket with a vibrant culture.
- Benefits: Enjoy private medical insurance, discounts, hybrid working, and generous holiday options.
- Why this job: Make a real impact in a fast-paced environment while growing your career.
- Qualifications: Experience in IT Audit or Risk Management, with strong communication skills.
- Other info: Embrace innovation and diverse opportunities in a supportive team.
The predicted salary is between 48000 - 72000 £ per year.
Contract type: Permanent
Location: Hatfield (Hybrid working - 3 days in the office)
Working hours per week: 40 hours
Level: Manager
Application Closing Date: 9th February 2026
About us
Our mission is to deliver joy in every shop, through unbeatable choice, unrivalled service, and reassuringly good value. We’re Ocado Retail, a market-leading joint venture between Ocado Group and M&S, and the world’s largest dedicated online supermarket. Not only is Ocado.com the only place to shop a full range of M&S food online, it’s also the home to the widest online supermarket range in the UK and champion of small, independent brands. We’re also the brains behind our same-day grocery delivery service.
About the team and the role
Ocado Retail has a modern IT estate, operating a cloud-first IT strategy with a preference for SaaS solutions, and operates a federated governance model across those SaaS solutions. As the IT Controls Assurance Manager, you will work directly with the Data & IT Governance Lead as a key figure in safeguarding Ocado Retail’s technology landscape. You will be responsible for executing and managing the IT control assurance program across all IT solutions, and for periodically reviewing and developing the IT Controls Framework. This role is critical in providing executive management and external auditors with confidence in the design and operating effectiveness of our IT control environment. The role will give the right applicant a huge level of visibility across our IT estate, and the opportunity to work with a diverse range of stakeholders across IT, information security and the wider business.
What you’ll do
- Lead the ongoing delivery of a robust, risk-based IT Controls Assurance Framework, aligned with key industry standards (e.g., ISO 27001, NIST, COBIT) and regulatory requirements (e.g., GDPR, UK Corporate Code of Governance).
- Orchestrate and support the self-assessment of IT controls by solution owners across IT and the wider business, and plan and execute periodic control testing and assurance reviews to evaluate design and operational effectiveness.
- Manage the tracking and timely remediation of control deficiencies, working closely with control owners and solution owners to ensure sustainable and effective fixes.
- Maintain the central repository of control documentation, testing evidence, and risk profiles.
- Develop and present clear, concise, and actionable reports on the status of the IT control environment to senior leadership and relevant governance committees.
- Act as a key point of contact for external auditors and internal audit teams regarding IT controls.
Who you are
- Proven experience in an IT Audit, IT Risk Management, or IT Controls Assurance role, ideally within a large, complex, and fast-paced retail or financial services environment.
- Deep knowledge of IT control frameworks, including hands-on experience in testing the design and operating effectiveness of IT Controls (e.g., Identity and Access Management, Change Management, Logical Access, Backup and Recovery).
- Excellent written and verbal communication skills, with the ability to translate technical control issues into business-relevant language for executive audiences.
- Strong understanding of current and emerging technologies and their associated risks, including cloud environments (e.g., Google, Azure, AWS), SaaS, and AI.
- Relevant industry certification (e.g., CISA, CISSP, CRISC) and experience using GRC tooling (e.g., OneTrust) would be beneficial.
At Ocado Retail we’re passionate about building careers and skills by giving people access to new and diverse opportunities. If you don’t tick all the boxes above but have a solid IT background, a curious mindset, a passion for learning and adaptable skills to bring to the role, we still want to hear from you!
What’s in it for you
By joining Ocado Retail, you’ll have the chance to experience life at the world’s largest online retailer, work with an amazing bunch of people who challenge what’s possible each day, and grow your skills and career in online retail. If that’s not enough to tempt you, you’ll also get access to loads of great benefits to sweeten the deal.
Health & Wellbeing:
- Private medical insurance with option to add your family, Digital GP appointments, market-leading family policies, mental health support, discounted gym memberships, dental insurance, and more.
Spend & Save:
- Annual bonus scheme split between personal and business objectives, recognition with reward platform, up to 7% matched pension contributions, 15% Ocado discount, 20% M&S discount, free breakfast every day in the office, electric vehicle leasing scheme, and free shuttle bus from Hatfield station to the office.
Never miss the moments that matter:
- Hybrid working, 26 days holiday plus 8 flexible bank holidays, options to buy extra holiday, 2 weeks work from anywhere, and lifestyle break opportunities.
Our Hiring Process
Lucky for us, we receive a high volume of applications and genuinely appreciate the time and effort invested by every candidate. To ensure a fair and thorough process, every application is reviewed by a member of our team. If your skills and experience are a strong match, a Talent Partner will contact you to discuss the role and guide you through the next steps of our hiring process.
Your Application and AI
In the spirit of innovation, we welcome you to use AI tools in your application, just as we use them in our own business at Ocado Retail. However, as you leverage this technology, please don’t lose sight of the most important element: your unique self. Your experiences, passions, and personality are what truly set you apart. Ensure that your application still authentically conveys who you are and why you’re a great fit for us.
Everyone’s welcome
IT Controls Assurance Manager in Hatfield employer: Ocado Retail Ltd
Contact Detail:
Ocado Retail Ltd Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land IT Controls Assurance Manager in Hatfield
✨Tip Number 1
Network like a pro! Reach out to people in your industry on LinkedIn or at local meetups. A friendly chat can lead to opportunities that aren’t even advertised yet.
✨Tip Number 2
Prepare for interviews by researching Ocado Retail and its IT landscape. Knowing the ins and outs of their cloud-first strategy will show you’re genuinely interested and ready to contribute.
✨Tip Number 3
Practice your responses to common interview questions, especially those related to IT controls and risk management. Being articulate about your experience will help you stand out.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re keen on joining the Ocado Retail family.
We think you need these skills to ace IT Controls Assurance Manager in Hatfield
Some tips for your application 🫡
Be Yourself: When you're writing your application, let your personality shine through! We want to know who you are beyond your qualifications. Share your experiences and passions that make you a great fit for the IT Controls Assurance Manager role.
Tailor Your Application: Make sure to customise your application to match the job description. Highlight your relevant experience in IT Audit or Risk Management, and don’t forget to mention any industry certifications you have. This shows us you’re serious about the role!
Keep It Clear and Concise: We appreciate clarity! Use straightforward language and avoid jargon where possible. Make it easy for us to see how your skills align with what we’re looking for. A well-structured application can really make you stand out.
Apply Through Our Website: Don’t forget to submit your application through our website! It’s the best way for us to receive your details and ensures you’re considered for the role. Plus, it’s super easy to do!
How to prepare for a job interview at Ocado Retail Ltd
✨Know Your IT Controls Inside Out
Make sure you’re well-versed in IT control frameworks like ISO 27001 and NIST. Brush up on your knowledge of Identity and Access Management, Change Management, and other key areas. Being able to discuss these confidently will show that you’re the right fit for the role.
✨Prepare for Scenario-Based Questions
Expect questions that ask you to demonstrate how you would handle specific situations related to IT controls assurance. Think of examples from your past experience where you successfully managed risks or resolved control deficiencies. This will help you illustrate your problem-solving skills effectively.
✨Communicate Clearly and Concisely
Since you’ll be translating technical issues for executive audiences, practice explaining complex concepts in simple terms. Use clear language and avoid jargon when possible. This will showcase your communication skills and ability to engage with diverse stakeholders.
✨Show Your Passion for Continuous Learning
Ocado Retail values a curious mindset, so be ready to discuss how you keep up with emerging technologies and industry trends. Mention any relevant certifications or courses you’ve taken, and express your enthusiasm for ongoing professional development in the IT field.