
Risk and Controls Analyst
Royal BAM Group
full-time
Posted on:
Location Type: Hybrid
Location: United Kingdom
Visit company websiteExplore more
Tech Stack
About the role
- Develop and implement the risk and control framework for the Division UK&I including S/4HANA, Payroll and Time Management System programmes.
- Partner with process leads, functional teams, and IT to embed controls within end-to-end process design.
- Ensure alignment with group internal controls, regulatory compliance, and audit requirements.
- Maintain a comprehensive programme risk register, coordinating mitigation activities and reporting on key exposures.
- Lead risk assessment workshops across functional workstreams (Order to Cash, Tender to Result, Source to Pay, Record to Report, Payroll etc.).
- Provide independent challenge on readiness, focusing on risk mitigations
- Support design and testing of control activities during system configuration, UAT, and cutover. Assess test plans for key controls (automated and manual)
- Monitor user role design for SoD conflicts and privileged access risks
- Collaborate with internal audit, external audit, and compliance teams to ensure design adequacy and operational effectiveness of controls.
- Produce periodic risk and control reports for the steering committee and governance forums.
- Provide training and awareness on risk management and control principles to programme teams.
- Support readiness assessments and assurance reviews ahead of go-live and post-implementation.
Requirements
- Proven experience in risk management, internal controls, or audit within large-scale ERP (preferably S/4HANA or SAP) programmes.
- Strong understanding of business process controls across Finance, Procurement, HR and Supply Chain.
- Experience developing and implementing control frameworks aligned with SOX or equivalent standards.
- Ability to interpret SAP configuration and process flows for risk and compliance impact.
- Strong analytical, problem-solving, and stakeholder management skills.
- Ability to work cross-functionally and influence at all levels of the organisation.
- Excellent communication and reporting skills, both written and verbal.
- Professional qualification (e.g., ACA, ACCA, CISA, CIA, CRISC) or equivalent experience.
- 5+ years experience in S/4HANA design, testing, or controls implementation.
- Experience in regulated industries or complex, multi-entity organisations.
Benefits
- electric car or car allowance
- contributory pension
- BUPA
- life assurance
- 26 days holiday (plus bank holidays)
- gym subsidy
- BAM social club membership
- many more exciting benefits
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
risk managementinternal controlsauditS/4HANAcontrol frameworksSOXSAP configurationprocess flowstestingcontrols implementation
Soft Skills
analytical skillsproblem-solvingstakeholder managementcross-functional collaborationinfluencecommunication skillsreporting skillstrainingawareness on risk managementindependent challenge
Certifications
ACAACCACISACIACRISC