IT Risk & Control Manager

Audit & Risk Recruitment
Bolton, UK
7 days ago
Apply on www.collegerecruiter.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
4 years minimum
Working hours
Regular working hours

Tech stack

Control Objectives for Information and Related Technology (COBIT) IT General Controls (ITGC)

Job description

The Audit & Risk Recruitment company is working with a rapidly growing retail business to help them find a IT Risk and Control Manager. They are looking for an analytical and motivated individual to work closely with UK and Global colleagues to develop an IT Risk and Control capability.

This role will involve working very closely with our IT colleagues, Control Owners, and Operators to deliver new IT controls, assess technology risks and continually assess and enhance processes, policies, standards. This is a great time to join us at a period of significant growth, change and opportunity.

What you’ll be doing:

  • Perform IT Control implementation in line with EG’s IT Control framework and the ICFR Programme (Internal Controls over Financial Reporting).
  • Support and manage the design and implementation of new IT controls, including those with a reliance on 3rd party suppliers.
  • Work with the existing IT Programme Assurance team and IT stakeholders to perform deep dive assessments, plan and drive through remediation to completion.
  • Proactively look for opportunities to centralise and automate controls and processes to drive efficiency using existing tools and technologies.
  • Support the Head of IT Risk in collation and delivery of information for Audit, Risk and Board meetings.
  • Support rollout of new Cyber Initiatives
  • Build relationships globally to become a trusted advisor to our colleagues in IT/cyber
  • Ensure that risks and issues identified are reported and escalated in line with the governance framework.

What we’re looking for:

  • Qualified to degree level with CISA, CRISC or similar professional qualifications / QBE
  • 4 years minimum experience of working within IT Risk and Control
  • Confident in designing and documenting new and/or existing IT General Controls from across access, change, and operations domains drawing on experience to do so independently and/or with minimal support.
  • Working knowledge of COBIT/ITIL Frameworks

Requirements

  • Qualified to degree level with CISA, CRISC or similar professional qualifications / QBE
  • 4 years minimum experience of working within IT Risk and Control
  • Confident in designing and documenting new and/or existing IT General Controls from across access, change, and operations domains drawing on experience to do so independently and/or with minimal support.
  • Working knowledge of COBIT/ITIL Frameworks

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.collegerecruiter.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:17 min

Governing enterprise IT as a global automotive CIO

Katrin Lehmann Katrin Lehmann +1 · Coffee With Developers

1:26 min

Bridging the sim-to-real gap with multi-control networks

Alexander Schwarz Alexander Schwarz · World Congress 2025

2:49 min

Verifying dependency metadata accuracy through controlled package installations

Uwe Korn Uwe Korn · World Congress 2026 Europe

1:44 min

Background and career journey in regulated software systems

Martin Hynie · Coffee With Developers

1:43 min

Reviewing deterministic security controls and compliance frameworks

Carey Liu Carey Liu · World Congress 2026 Europe

Videos

See all

Related articles

See all