
IT Domain GRC Specialist – Back-Office
AVEVA
full-time
Posted on:
Location Type: Hybrid
Location: London • United Kingdom
Visit company websiteExplore more
Tech Stack
About the role
- Define, implement, and ensure the effective operation of IT controls within the Back Office domain
- Collaborate with Finance, HR, Business Owners, and multiple GRC stakeholders
- Document control designs for Back Office processes
- Coordinate and support Control Operators in maintaining structured, accurate evidence for control effectiveness
- Project‑manage dependencies across teams
- Strengthen RBAC structures by reviewing roles, permissions, and access levels
- Define cybersecurity and data-protection requirements for Back Office systems
- Support readiness and response efforts for cybersecurity incidents
- Identify, mitigate, and monitor cybersecurity risks related to Back Office activities
- Guide teams on Secure Development Lifecycle (SDL) practices
- Measure compliance with IT policies, set KPIs, identify gaps, and lead corrective initiatives
- Prepare documentation for internal and external audits
- Ensure SOx compliance through timely evidence collection
Requirements
- ISACA (or equivalent) qualification such as CISA, CISM, or CGEIT
- Minimum 2 years’ experience in IT control design, assurance, or auditing
- Experience documenting and presenting control recommendations to management
- Experience estimating remediation costs and distinguishing between one-off vs recurring expenses
- Experience collaborating with external and internal auditors, with solid understanding of SOx compliance and Crown Jewel asset protection
- Hands-on experience with Oracle ERP SaaS, including implementing controls for financial and operational processes
- Strong proficiency in documenting risk and control mappings for audit review
- Ability to map business processes, system workflows, and RBAC structures
- Strong MS Office skills, especially Excel, PowerPoint, Outlook, and SharePoint
Benefits
- Flexible benefits fund
- Emergency leave days
- Adoption leave
- 28 days annual leave (plus bank holidays)
- Pension
- Life cover
- Private medical insurance
- Parental leave
- Education assistance program
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
IT control designcybersecuritydata protectionSecure Development Lifecycle (SDL)risk and control mappingSOx complianceaudit documentationremediation cost estimationRBAC structurescontrol effectiveness
Soft Skills
collaborationproject managementcommunicationdocumentationpresentationproblem-solvingleadershiporganizational skillsanalytical skillsattention to detail
Certifications
CISACISMCGEITISACA qualification