
Cyber Audit VP
Workday
full-time
Posted on:
Location Type: Office
Location: Knutsford • United Kingdom
Visit company websiteExplore more
Job Level
About the role
- Support the development of audits aligned to the bank’s standards and objectives.
- Work collaboratively with colleagues, providing accurate information and recommendations, and complying with policies and procedures.
- Audit development and delivery support, including financial statements, accounting practices, operational processes, IT systems and risk management.
- Identification of operational risks to support the delivery of the Barclays Internal Audit (BIA) Audit Plan through risk assessments.
- Assessment of internal control effectiveness and their capability to identify and mitigate risk aligned to regulatory requirements.
- Communication of key findings and recommendations to stakeholders, including the Audit Owner, senior managers and directors.
- Identification of regulatory news and industry trends/developments to provide timely insight and recommendations for best practice.
- Demonstrate leadership and accountability for managing risk and strengthening controls in relation to the work your team does.
Requirements
- Risk and control assessment experience (within an audit or control function responsible for testing driven assurance) covering Cyber Security.
- Experience in developing and executing assurance testing approaches in some of the following areas: data security (including cryptography), security configuration, network security, cyber incident response, vulnerability management, cyber threat management, information risk management, data leakage protection, identity & access management, cyber resilience.
- Knowledge of new and emerging technology, cyber security, and cyber resilience risks.
- Relevant professional qualifications (e.g. CISA, CISM, CISSP or other relevant technical qualification; and/or relevant graduate degree).
- Practical understanding of relevant regulatory environment.
- Working knowledge of cyber security frameworks or standards (e.g. NIST, CIS, ISO).
- Deep understanding of Cyber Kill Chain, MITRE ATT&CK framework, and threat modelling concepts.
- Expertise in major cloud platforms (AWS, Azure) misconfigurations, vulnerable serverless functions, container escapes (Kubernetes/Docker), cloud storage.
Benefits
- Health insurance
- Retirement plans
- Flexible work arrangements
- Professional development
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
risk assessmentcontrol assessmentassurance testingdata securitycyber securityvulnerability managementidentity & access managementcyber resiliencethreat modellingcloud security
Soft Skills
collaborationcommunicationleadershipaccountabilityrecommendationstakeholder engagementanalytical thinkingproblem-solvingattention to detailadaptability
Certifications
CISACISMCISSPrelevant graduate degree