Our client, a leading financial institution, is looking for a hands-on technology assurance leader to strengthen its independent oversight of technology and cyber risk. This role sits at the intersection of controls testing, risk advisory, and team leadership, giving independent assurance that technology controls are designed well and actually working as intended across the environment.
What You'll Do
Own the end-to-end delivery of technology assurance and controls testing engagements, spanning IT general controls, cyber security, cloud, infrastructure, and application environments
Design test scripts and testing methodologies that evaluate both control design adequacy and operating effectiveness, adjusting scope as new technology risks emerge
Build and prioritise an assurance testing calendar that reflects the organisation's risk appetite, regulatory obligations, and shifting threat landscape
Lead, coach, and upskill a team of assurance and controls testing specialists, reviewing their work for quality and technical rigour
Act as a trusted advisor to technology, security, and risk stakeholders, delivering independent, evidence-based challenge without losing objectivity
Translate testing outcomes into clear, actionable findings, and present these to senior leadership and risk governance committees
Champion the use of analytics and automated testing tools to modernise how assurance work gets done, moving toward more continuous, real-time coverage
Cultivate a collaborative, high-performing team culture built on technical depth and continuous learning
What You'll Bring
Extensive experience in technology assurance, IT audit, controls testing, or technology risk, ideally gained in banking, financial services, or a professional services environment
A track record of leading testing or audit engagements and managing a team through complex, high-volume technology environments
Solid grounding in control frameworks, cyber security fundamentals, and the regulatory landscape governing technology risk in financial services
Working knowledge across cloud, network security, identity and access management, infrastructure, and application security domains
Confidence engaging senior stakeholders and holding an independent line even under pressure
Strong analytical and report-writing skills, with the ability to distil technical findings for non-technical audiences
Exposure to data analytics or automated testing tools is a plus
A self-starter comfortable operating in a fast-moving, matrixed organisation