Your search query
This document has been labelled as Confidential Internal
GROUP SENIOR IT INTERNAL AUDITOR
|
Job Title: |
Senior IT Auditor |
Brand/ Function: |
Group Internal Audit |
|
Job Holder |
Vacancy |
Reports to: |
Sally King IA and Risk Director |
|
JD Completed By: |
Kubashni Sannasy |
Direct reports |
- |
|
Date: |
01/07/2026 |
||
|
What is the main purpose of the job? |
To provide independent, objective assurance to the Audit Committee on the effectiveness of Whitbread’s system of Technology & Data risk management and internal control environment across all business units in the UK and internationally. The role supports Whitbread in accomplishing its objectives by bringing a systematic, disciplined approach to evaluating and improving the effectiveness of risk management, control and governance, while providing consulting advice that adds value and improves operations. It also acts as a trusted advisor and critical friend to business and IT stakeholders by translating complex technology, cyber and data risks into clear business impacts for senior stakeholders and governance forums. The role is integral in delivering the strategic objectives of the Internal Audit and Risk function. The role involves working with senior stakeholders across Whitbread and therefore requires excellent interpersonal skills, strong influencing and negotiation skills, and the ability to work effectively with diverse groups. Working in small teams across all Whitbread operations, this role requires a team player with strong planning and organisational skills to carry out efficient and effective IS audits. It will involve the use of data analytics tools such as Power BI, and AI tools such as Microsoft Copilot and Claude throughout the audit lifecycle. Strong data analysis, report writing, and communication skills are required. |
||
|
Who are the Job holder main customers? |
The role will support the IA & Risk Director, working with Technology and Business stakeholders across all business areas (up to Director level), external auditors, and any relevant third parties, including internal audit co-source providers. |
||
|
Main Tasks and Activities |
Measures
|
|
Audit Planning: - Assist and support the development of the annual internal audit plan for Whitbread, using risk, assurance and business change inputs, including risk assessments and engagement with key stakeholders, to shape a targeted IT audit plan aligned to the highest priority technology and data risks; - Plan and scope IT internal audit reviews, including meeting key stakeholders, drafting audit Terms of Reference. Audits may include programme assurance reviews as well.
Audit Fieldwork: - Develop RACM which includes designed and operating effectiveness testing procedures, as well as use of data analytics. - Meet with stakeholders to understand the design of key information system controls and carry out detailed testing to identify control gaps; - Manage relationships with key stakeholders, both business and IT, to ensure they are aware of the issues being identified through the audit; - Where required, manage co-source resource to deliver audit fieldwork, ensuring audit evidence, testing rationale and issue traceability are clearly documented to support quality assurance and audit defensibility.
Audit Reporting: - Draft high-quality, clear and concise audit reports which clearly distinguish between issues, root cause, risk impact, management actions and agreed ownership to support accountability and effective decision-making.
Audit Action Tracking: - Monitor implementation of control recommendations, and assist in reporting status to the Board and Audit Committee.
Data Analytics and AI Enablement: - Maintain and enhance existing data analytics use cases, models and dashboards, including Power BI outputs where relevant, while consistently identifying opportunities to apply data analytics and AI-enabled approaches responsibly, with appropriate data quality checks, validation and documented limitations, to improve audit planning, fieldwork, insight generation and reporting.
IT Risk Management: - Provide guidance to stakeholders to assess and manage IT risks, including emerging technology, cyber, data, resilience and third-party risks, and understand where processes could go wrong, where key controls are IT enabled and what improvements could be made.
Programme Assurance: - Work with the business to provide assurance on, and governance of, key IT projects and critical change activities, including consideration of delivery risk, control readiness, benefits realisation and governance effectiveness for major technology and data change programmes.
Internal Audit Best Practices: - Develop the Internal Audit function by suggesting and driving improvements to auditing practices, methods, procedures and documentation, specifically around data analytics and integrated audits.
ExCo and Audit Committee Reporting: - Coordinate and draft ExCo and Audit Committee reports, ensuring key messages, issue updates and supporting information are accurate, complete and issued in line with agreed reporting timelines. |
|
|
Qualifications |
Skills (Expert ability) |
Experience (Proven expertise) |
|
Essential:
|
Essential:
|
Essential:
|
|
Desirable:
|
Desirable:
|
Desirable:
|
Internal Audit Lead
Listed UK business
Midlands or North London based
£70,000 - £80,000 plus car allowance and high bonus
This company is renowned in the UK for its superb service, culture and employee retention/ progression.
The role will see you lead on the internal audit plan; supporting the Senior Manager, who in turn reports to a Director of Assurance.
As such, you will be pivotal in delivering risk based audits, contributing on strategy, and aiding in the AC prep and papers. You will also be a key stakeholder liason for the team, and as such needs the commerciality and influencing skills.
The ideal candidate will have:
- ACA/ ACCA qualification
- Internal audit in-house experience
- A mix of financial and operational audit experience
- The ability to be on site 4 days a week
This role is perfect for someone looking for longer term career progression, and a place they can call home!
Salary is between £70,000 and £80,000 plus car allowance and benefits, depending on experience level.
Senior / Principal Data Scientist AI & Data Strategy
Compass Group Internal Audit
|
Level |
Senior / Principal Data Scientist |
|
Location |
Chertsey head office |
|
Working pattern |
Hybrid — typically around 3 days a week on-site, with the flexibility to work from home |
|
Reports to |
Group Director of Risk and Internal Audit |
|
Travel |
Occasional international travel |
Compass Group
Compass Group is a FTSE 20 and Fortune Global 500 business — the world’s leading contract catering, hospitality and support services provider. We operate in over 20 countries, across more than 50,000 client locations, serving over 5.5 billion meals a year. Food is our passion. Increasingly, data and AI are how we protect it, sharpen it and stay ahead.
The opportunity
We’re reinventing how Internal Audit works — moving from sampling and hindsight to data-led, continuous, forward-looking assurance. This is a rare chance to help build that capability from the ground up, not just run it. You’ll sit in a small, high-profile Group team with a direct line of sight to the very top of a FTSE 20, and the autonomy to make a real mark.
What you’ll do
- Help shape and deliver Internal Audit’s AI and data strategy — and bring it to life.
- Build machine learning and AI models that turn full data populations into sharper, earlier risk insight.
- Hunt out fraud, error and control gaps with anomaly detection — across 100% of the data, not just samples.
- Stand up the pipelines, dashboards and tooling that power continuous auditing across the whole audit lifecycle.
- Bring auditors on the journey — coaching, training and raising data literacy across the team.
- Help us assure how the business itself uses AI — model risk, fairness, transparency and governance.
- Be our voice on what ‘good’ looks like, benchmarking against the best in the industry.
What you’ll bring
- A quantitative mind and a track record of shipping analytics, ML or AI solutions in the real world.
- Fluency in Python or R and SQL, and BI tools such as Power BI.
- Hands-on machine learning, statistical modelling and AI — plus the judgement to use them responsibly.
- Comfort with modern cloud and data platforms (Azure, AWS, GCP or Snowflake) and building data pipelines.
- The rare knack of explaining the technical simply — and influencing senior stakeholders.
- Curiosity about risk, processes and controls (internal audit experience welcome, but not essential).
- A data, analytics or audit certification (e.g. CISA, CIA) is a bonus, not a must.
Why join us
- Build a capability, don’t just maintain one — genuine scope to innovate.
- Small, high-profile team with visibility at the most senior levels of a global business.
- The backing, data and autonomy to do work that actually changes how we operate.
- Hybrid working and the flexibility to balance time in the office and at home.
- Career pathways across Internal Audit and the wider global business.
Internal
Internal controls manager
US listed business
Leeds based
Are you looking to join a fast growth, technology focused business with a superb culture?
Who wouldn't!?
This Internal controls manager role will see you aiding the business map, scope and implement their SOX controls framework.
It is an exciting chance to really add your mark through your consulting and advisory skills.
This role is part of a long term aim to be gold standard on controls!
The role is hybrid, with 2 days in the office and minimal travel.
Ideal candidate:
- ACA/ ACCA qualified
- Professional services experience would be beneficial
- Internal controls testing/ implementation - SOX
- Superb communication and drive to add value!
Interested? Please apply today to be considered!
Astrum Search is working with a leading FTSE 100 to recruit an Internal Audit Manager. You'll join a well-established and large internal audit team delivering a wide range of audits.
Reporting to the Head of Audit, you will be responsible for the end to end delivery of a number of global audits, delivering independent assurance and insight to the business and acting as a motivator for change.
Key Responsibilities:
- Own a portfolio of audits, from planning through to completion.
- Write Audit Reports and key audit deliverables, providing accurate and timely information to the Executive and Audit Committee.
- Utilise new technology including Automation, Continuous Improvement and Data Analytics to providing greater assurance and insights.
- Contribute to the ongoing development of the audit and risk function and help deliver improvement projects.
- Be proactive in your own audit training and self-learning about the business and industry to continuously learn and develop your skills.
Skills & Experience:
- Accountancy or Internal Audit qualification (ACA/ACCA/CIMA/IIA).
- Experience within internal audit is crucial.
- Some experience in the retail or consumer sectors desirable.
- Project management and change management experience.
- Problem solving ability to identify pragmatic solutions.
The role is based in my clients Hertfordshire HQ and you'll be required to be office based 3 x per week (1 day can be in London). Some travel is expected in the role but no more than 20%.
My client has a fantastic track record for developing its employees either in the internal audit team and wider business. This is a fantastic opportunity to join one of the top performing and largest FTSE constituents.
port
Job Title Head of Risk & Assurance
Directorate Finance and Corporate Services
Reports to Director of Legal Services
|
Job Purpose |
To provide strategic and operational leadership for Risk and Assurance, ensuring effective delivery, sound governance, informed decision making and continuous improvement in support of organisational priorities.
Sport England continues to evolve, strengthening its ability to deliver ‘Uniting the Movement’. This role will support effective governance, assurance and decision-making through organisational change, working with senior stakeholders to embed proportionate risk management, internal control and continuous improvement. The post holder will also manage the delivery of internal audit through external suppliers.
To be a successful Head of Risk & Assurance, you will need to display the highest standards of professionalism, objectivity, fairness, expertise, integrity, and vision. You will be responsible for developing, maintaining, and maximising effective working relationships with colleagues through proactive collaboration and advocating the assurance function across Sport England.
As a senior leader, the post holder will role model Sport England’s values, build effective relationships across the organisation, and use evidence and insight to influence good governance, risk management and assurance practice.
|
Dimensions |
Direct Reports 1
Location Homeworking / Hybrid in Loughborough or Bisham Abbey
Key Stakeholders Executive Leadership Team (ELT), Senior Management, Audit, Risk & Governance Committee (ARGC), Internal Audit service providers, Investment Management Team.
|
Key Duties and Responsibilities |
% Time |
|---|---|
|
Risk
|
55% |
|
Internal Audit
|
10% |
|
Internal Governance & Assurance
|
35% |
|
Pervasive
|
N/a |
|
Organisation Value and Behaviours |
- Ambitious – Determined in pursuit of our goals, prioritising work and partnerships that will most advance our mission, help us succeed and make a positive impact on our nation.
- Innovative – Curious, optimistic, and relentless, we question established ways of working and learn from each other and from our experiences.
- Inclusive – Harnessing our collective strength and respecting difference to create the conditions for everyone to engage and to excel.
- Collaborative – One team, committed to delivering together and working with others to make a difference to people’s lives.
|
Person Specification |
The additional skills, knowledge and experience required.
Essential
- A professionally qualified accountant or audit professional with suitable internal audit experience.
- Significant experience in risk management and/or internal audit within a complex organisation (charity, public sector, or regulated environment desirable).
- Proven track record of developing and embedding enterprise risk management frameworks, including strategic and operational risk registers.
- Experience of designing and delivering internal audit programmes, including planning, execution, reporting and follow-up of actions.
- Knowledge, awareness, and ability to incorporate the Public Sector Internal Audit Standards and Government Functional Standard for Internal Audit (GovS 009) into Sport England’s internal audit practices.
- Strong understanding of risk management frameworks and methodologies (e.g. ISO 31000 or equivalent).
- Working knowledge of orange book principles, evidenced by working in a relevant risk environment.
- Strong influencer, who can collaborate with stakeholders at all levels of the business.
- Experience of undertaking investigations and/or proactive reviews autonomously.
Desirable
- Experience of business continuity planning and crisis preparedness, including
testing and assurance activities.
- Ability to design and deliver training, building risk awareness and capability
across the organisation.
Page 1 of 1
TAS Manager
London - Hybrid working
ACA/ACCA/CA qualified or Equiv.
£70,000 - £80,000 base + package.
I'm currently working on a new Transactional Advisory Services role at the Manager level where we are seeking a candidate who has experience with the TAS service line.
The role for the TAS Manager is due to business growth and led by a new partner who is growing a team! Very exciting times are head! This is a team size of 10-15 people, and we're seeking someone who specifically has expeirence with Financial Due Diligence working across a number of sectors.
Candidates will be either an assistant manager with strong FDD experience willing to step up, however must have a minimum of 2-3 years experience at this grade, or a Manager who is willing to make a lateral move in order to progress quicker in the future!
Candidates must be:
Coming from practice and have strong FDD experience.
Hold the right to live/work in the UK as my client cannot sponsor.
Be quaified with an ACA/ACCA/CPA etc and be able to lead on projects!
Ability to get to the office 2x-3x per week
Contact me at Sheena@astrumsearch.com
Senior Internal Auditor
FTC 12 months - start end of August
England based - remote working available but able to visit sites across England
This maternity cover is available for someone who has the following:
- Project audit experience in a construction/ building/ utilities setting; leading end to end audits on programme management, health & safety, construction, design, GDPR, sub contractors, commercial projects etc
- NEBOSH or other quality assurance qualification/ experience
- Strong project site people management skills, and the ability to influence stakeholders
This role can be based remotely in England - as long as you can go to sites across the country.
Salary on offer is between £60,000 and £69,000 plus benefits, experience dependant.
Function: Audit, Risk and Assurance
Reports to: Head of Technology Audit
Job Grade: PT1
Location: Colt House, London, UK (hybrid set up)
Role purpose
The Technology Lead Internal Auditor is primarily responsible for leading and/or participating in technology and security focused audits with support over technology control elements of financial and operational audit assignments. They will be responsible for evaluating the adequacy of Colt’s (Colt Core and DCS) overall control environment in both design and application, highlighting inefficiencies in processes and supporting the business in building a sustainable control environment. The Technology Lead Internal Auditor will also be responsible for assisting on ad-hoc special projects and completing audit projects in any of Colt’s locations. This role is a great opportunity to add value and develop expertise across technology, security, and transformation processes across multiple business units.
Key accountabilities
- Deliver and/or lead technology and security audit assignments across Colt locations in a timely and efficient manner, participating in all stages of the audit from planning, execution, reporting and follow-up
- Fully understand and communicate the impact of audit findings (including root causes and risks) to relevant key stakeholders. As technology and security can be complex, being able to communicate complex technical issues and ideas in simple terms is highly valued.
- Make value add recommendations to the business to improve controls, processes and overall governance
- Engage with stakeholders to obtain a comprehensive understanding of the business under review and the implications for audit
- Build trust and credibility with technology stakeholders throughout the audit process
- Maintain audit documentation in accordance with Colt audit methodology
- Provide coaching to junior staff members (e.g. graduates/apprentices) on audit methodology and practices, where applicable
Role specific requirements
Skills & Experience
- Experienced technology auditor (e.g. CISA, CISSP, ISO or CIMA qualification preferred but not essential)
- Some experience in using or planning data analytic based audits. Ability to analyse data and identify trends, think critically and solve problems using a high degree of intellectual curiosity and good judgement
- Over 3 years’ experience working in a technology and/or cyber security audit related role either as an internal auditor or in related auditing/assurance fields
- Good experience of controls on risk and assurance assignments, including greenfield audits
- Strong knowledge of audit techniques for technology and security (business and operational control and risk management, a bonus).
- Ability to operate in a flat organisational structure with direct exposure to senior management and Executives
- Strong communication skills, proactiveness, and competence to influence outcomes
- Work effectively with team members and the wider business to build partnerships.