Global IT Compliance Auditor

17918
Otterburn, UK
5 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours

Tech stack

Computer-Aided Audit Tools Information Systems Data Governance Software Engineering IT General Controls (ITGC) Information Technology RSA Archer Platform

Job description

The IT Compliance Auditor is a position within the Global IT controls compliance team. The Compliance Auditor, as part of a team, will conduct compliance and operational reviews of Information Systems policies, procedures, and control frameworks used by IT operational teams to validate the accuracy, effectiveness and relevance of Sage’s IT policies governing System Security, Data Governance, Operational Controls, and Change Control to ensure compliance with Sage internal controls framework and industry best practice. The Compliance Auditor will interact with IT Application development teams, IT Technology Infrastructure teams, and IT Operational support personnel across the company and will be exposed to all levels of Information Technology and Systems used in Sage’s business operations. This is a hybrid role - three days per week in our Newcastle office. In this role you’ll: - Develop audit plans for new audits and improve audit plans for existing audits. - Execute audits and provide high-level documentation for review and reliance by external auditors. - Assist with the ongoing development of audit systems and procedures (including the use of Global GRC) to standardise audit processes and create efficiencies in governance activities. - Ensures compliance with policies and controls by examining and analyzing records, reports, operating practices, and documentation recommending opportunities to strengthen the internal control structure. - Document and deliver audit reports and findings to executive management and external auditors. - Identify, and clearly define, audit issues and root causes, recommend improved internal controls and business processes, and ensure that corrective action plans are developed and implemented. - Provide guidance or consulting on the development of applicable procedures and policies, and the remediation of known issues. - Work directly with internal and external auditors to coordinate annual IT General Controls compliance audit testing

Requirements

and the review of findings. Key Skills Required: - Knowledge and experience of control frameworks, risk management, SOX, and ITGC compliance. - Familiarity with GRC platforms and audit tools. - Ability to influence, drive accountability and successful outcomes. - Ability to work collaboratively across teams and with auditors to ensure compliance. - Proven track record of successful delivery autonomously. - Strong ability to influence stakeholders and manage competing priorities with a hands-on, results-oriented approach. - Excellent written and verbal communication skills, with the ability to communicate complex risk and control details to non-technical stakeholders. - Strong analytical and problem-solving skills, with the ability to identify risks, propose solutions, and drive continuous improvement. - Demonstrated ability to work collaboratively across teams and with senior leadership. Skilled at building relationships and influencing others and driving accountability. Preferred Qualifications: - CISA - Certified Information Systems Auditor (or equivalent experience). TPBN1_UKTJ

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.apply4u.co.uk

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

59 sec

Proving regulatory compliance to auditors and chief officers

Mike Bursell Mike Bursell Ā· WWC Europe 2026

1:53 min

Reinventing data governance as a collaborative business foundation

Farooq Sheikh Farooq Sheikh +3 Ā· WWC 2025

1:43 min

Reviewing deterministic security controls and compliance frameworks

Carey Liu Carey Liu Ā· WWC Europe 2026

2:28 min

Preventing sensitive information disclosure in RAG systems

Deepu Deepu Ā· WWC 2025

4:07 min

Establishing data literacy and governance as prerequisites for adoption

Marin Niehues Marin Niehues Ā· LIVE

4:21 min

Navigating compliance and risk in highly regulated environments

Alexandra Wudel Alexandra Wudel +3 Ā· WWC 2025

Videos

See all

Related articles

See all