Pearson Jobs

sive culture here: <br><a href="https://pearson.jobs/pearson-life/#diversity" rel="noreferrer noopener" target="_blank">https://pearson.jobs/pearson-life/#diversity</a><br>Pearson is delighte

Job Information

Pearson IT Audit Manager in Remote, United Kingdom

IT Audit Manager - ( 2108478 )

Description

IT Internal Audit Manager (UK based)

At Pearson, we exist to help learners achieve their potential through learning at every stage of their lives, creating a better, more equitable world in the process. We have more than 20,000 employees that deliver our products and services in nearly 200 countries, all working towards a common purpose – to help everyone achieve their potential through learning. We do that by providing high quality, digital content and learning experiences, as well as assessments and qualifications that help people build their skills and grow with the world around them. We have a long history of making a positive social and environmental impact and ensuring we operate to the highest standards of ethics and governance.

As an IT Audit Manager, you will be responsible for leading the planning, execution and reporting of varied IT and cybersecurity audit projects to time and quality in a professional, engaged, and responsible manner. You will take the lead in communicating results to Senior Management and be key to the Internal Audit team building strong relationships with stakeholders across the business. You will report to one of the Audit Directors and support the Internal Audit Leadership team with audit planning, reporting, and improvement activities as needed.

Pearson’s Internal Audit team is collaborative and forward-looking. This role offers a good opportunity for someone who would relish being part of a supportive team, working in an international environment, auditing across a diverse and fast changing technology and digital environment, and developing relationships with Senior Management. The work will involve up to 20% international travel. The role is open to candidates in the UK. Working from home is an option, but candidates need to be willing and able to travel to London for team meetings and other events.

Main activities/responsibilities:

  • Leading the delivery of complex technology, cybersecurity, and integrated audits from designing an approach, planning, and scoping through proactive discussions with business and IT management, to report issue and file closure, including application, infrastructure, and security audits.

  • Completing project reviews across the project lifecycle including areas from inception, design, stage gates and reporting through to benefits tracking and post project evaluation.

  • Discussing audit findings with management and ensuring appropriate actions are agreed to mitigate risks identified.

  • Preparing clear and concise reports, with commercially relevant recommendations to improve the internal control system and address weaknesses and process inefficiencies identified.

  • Following up on the effective implementation of agreed actions, liaising closely with actions owners and business management.

  • Building and sustaining positive working relationships with colleagues in Internal Audit and stakeholders in technology and the wider business.

  • Supporting and coaching junior members of the team.

  • Completing ad-hoc projects and supporting investigations as required.

  • Being aware of developments in audit techniques and adapting and championing these to support continuous improvement in the way we work.

Qualifications required:

  • Degree or equivalent level (in Information Security, Computer Science, or similar)

  • Recognised IT audit or information security qualification (e.g. CISA, QICA, CISSP, CRISC, ISO27001 Lead Auditor, SSCP)

  • Four or more years practical experience of cybersecurity and IT auditing across IT processes, applications, infrastructure, IT security, cloud services and emerging technologies, able to understand processes and controls and identify potential risks to the business.

Desirable skills:

  • Good knowledge of IT risk management, security and control and a clear understanding of the relationship between technology and business risk.

  • Working knowledge of cybersecurity controls, network architecture, website platform development, secure coding, and virtual computing.

  • Able to grasp complex technology issues and develop practical solutions.

  • Good organisational skills, able to handle multiple assignments simultaneously, resolve problems, and deliver to deadlines.

  • Good communication, relationship building and influencing skills – both written and verbal – able to communicate technical issues and recommendations to both technical and non-technical audiences at different levels in the organization.

  • Collaborative approach to working within a team and with colleagues across the business.

  • Digital and commercial focus.

  • Flexible, innovative, self-motivated, critical thinker with the ability to leverage skills in new situations.

  • Comfortable working independently in a relatively unstructured environment without the need for constant direction.

Experience required:

  • Experience of auditing web applications and services, network, operating system, and database security.

  • Experience of using cybersecurity and industry frameworks and standards such as NIST CSF, ISO 27001/2, PCI DSS, COBIT, and ITIL.

  • Experience of auditing Agile software development methods.

  • Experience of data analysis tools (e.g. IDEA, Tableau, Alteryx) and ability to support complex data extraction and analysis requirements.

  • Exposure to major ERP systems, preferably Oracle.

Pearson is an equal opportunities employer. We do not discriminate against employees or job applicants and select the best person for each job based on relevant skills and experience.We are also committed to building an accurate picture of the make-up of the workforce and encouraging equality and diversity.The information you provide will stay confidential, and be stored securely. It will not be seen by those involved in making decisions as part of the recruitment process.

Qualifications

Qualifications required:

  • Degree or equivalent level (in Information Security, Computer Science, or similar)

  • Recognised IT audit or information security qualification (e.g. CISA, QICA, CISSP, CRISC, ISO27001 Lead Auditor, SSCP)

  • Four or more years practical experience of cybersecurity and IT auditing across IT processes, applications, infrastructure, IT security, cloud services and emerging technologies, able to understand processes and controls and identify potential risks to the business.

Additional Information

This role will be home based with travel to London when required.

Please apply directly on our website including your CV and a covering letter outlining your reasons for applying for the role.

Your Rewards & Benefits

We know you’ll do great work, so we give a lot back with some of the best benefits in the business. We know that one size doesn’t fit all, so our workplace programs meet the different needs of our diverse teams, and their families too. There is a range of options, but when you join our Pearson family these are some of the benefits that we offer that you can look forward to: -

25 Days annual leave, this increases by 1 day each year up to 30 days with the option to buy and sell up to 5 days per year on top of this. A fantastic Pension plan, where Pearson double what you contribute. Pearsons other benefits also include private dental care, private medical insurance, digital GP service, season ticket loan, eye tests, cycle to work scheme, volunteering days, employee wellbeing assistance discounted retail and leisure products and services from leading companies and much more.

At Pearson, we believe in the power of difference. Harnessing the unique skills, perspectives, and backgrounds of every employee helps us foster innovation and create the most effective solutions for learners around the world. That’s why we’re committed to ensuring that diversity and inclusion are embedded into everything we do. We foster a work environment that’s inclusive and diverse — and where our people can be themselves — so we can reflect the customers and learners we serve. You can learn more about our diverse and inclusive culture here:

https://pearson.jobs/pearson-life/#diversity

Pearson is delighted to be committed to the Race Charter, and to be confirmed by Stonewall in the Top 100 Employers LGBTQ employers in the UK. We are a Disability Confident committed employer and were recognised in the Best Employers for Diversity 2019 awards. We are featured on The Forbes list of Best D&I Employers and are a Working Mums Top Employer and Age Positive employer. Pearson is listed on both the London and New York Stock Exchanges (UK: PSON; NYSE: PSO). We are proud to offer an exceptional and supportive environment to develop your professional career!

Primary Location : GB-GB-Remote

Work Locations :

UK-Remote

Job : Finance

Organization : Finance

Employee Status : Regular Employee

Job Type : Standard

Job Level : Manager

Shift : Day Job

Job Posting : Jun 11, 2021

Job Unposting : Jun 25, 2021

Schedule: : Full-time Regular

Req ID: 2108478

DirectEmployers