Overview
As Technology Risk Services Assistant Manager, you help clients strengthen internal controls and governance around technology usage within Grant Thornton’s Business Risk Services. You will lead fieldwork, draft audit planning documents, and support proposals while guiding clients through issues identified. This role sits at the intersection of risk, technology, and advisory services, contributing to a broader mission of delivering value with integrity. You’ll collaborate with cross-functional teams in a culture that values openness and balance and is committed to development and inclusion.
Pay / Benefits
- flexible working options
- work-life balance
- secondments
- fundraising for local charities
- investing in entrepreneurs in the developing world
- inclusive culture
Responsibilities
- Take ownership of allocated assignments
- Assist with audit planning documents and budget input for technology risk reviews
- Deliver fieldwork per GT methodologies with proper testing and evidence
- Support close-out meetings to ensure client understanding of issues
- Document internal audit reports with tailored recommendations
- Assist with client proposals, presentations and business development opportunities
Key requirements
- Relevant professional IT audit qualification (CISA, CISM, CISP or similar)
- Experience in tech risk UK internal auditing
- Experience scoping, delivering, and reporting on technology internal audits
- Experience testing technical security controls (firewalls, cloud configurations, network monitoring, anti-malware)
- Experience auditing cloud platforms (AWS, Azure, Google Cloud) and private clouds (VMware)
- Experience auditing ERP systems (SAP S/4HANA, Oracle Fusion)
- Experience with ITGCs and automated IT controls for SOX or IASE3402
- Experience auditing technology transformation programmes and system implementations
- Experience using audit software and Microsoft packages
- Familiarity with Cyber Essentials, NIST, GDPR etc
- Strong written and oral communication for IT internal audit reports
- Strong communication skills
- Collaborative approach
- Ability to write clear IT internal audit reports
- IT general controls (ITGCs)
- Automated IT controls
- IT risk assessment and testing
…
