Supporting the business and our divisional offices, our Head Office functions cover all departments from our Executive Board through to our support functions such as Group Design and Technical, HR, Health and Safety, IT, Sales and Marketing, Commercial, Procurement, Group Finance, Corporate Affairs, as well as Legal and Company Secretariat. We also have a specialised function – Barratt Partnerships.
While the work varies from team to team, our key requirements don’t: you must be well organised, extremely helpful and resourceful, and able to use your initiative. You’ll understand that what you do is important, and impacts on your team, the department, and the wider business.
Reporting to the IT Compliance Manager, you will be responsible for helping create short-term plans and/or goals to ensure that Group IT controls are operating effectively.
You will be expected to:
- Evaluate the efficiency of controls and improve them continuously, including completing regular audits of technology controls aligned to ITGC/ITAC, NIST and any other frameworks required.
- Act as a “2nd line of defence” within Group IT.
- Conducting interviews and testing to ensure that Group IT is compliant with policies, procedures, regulations and agreed controls across the Group IT department.
- Help conduct investigations to discover the root cause of compliance problems when they arise.
- Operate Risk Management processes, including designing and maintaining risk registers, providing support and leadership for other teams through this process.
- Operate the Third-party Cyber Risk Management process, ensuring that reviews are completed in a timely manner by the appropriate vendor owner, that risks are managed appropriately and that a regular cadence is set based on vendor criticality.
- Examining and improving compliance processes to resolve findings.
- Help create Compliance, Dashboards and reports, including managing large datasets.
- Draft, modify and implement Group IT policies.
- Collaborate with Legal, Audit and HR departments to monitor enforcement of standards and regulations.
- Prepare reports for senior management and external regulatory bodies as appropriate.
- Leading and helping in the design of programmes that improve compliance with agreed standards.
- Developing and overseeing control systems to prevent or deal with violations of legal guidelines, agreed standards (PCI DSS, NIST, GDPR etc.) and internal policies.
- Evaluating the efficiency of controls and improve them continuously.
- Revising procedures, reports etc. periodically to identify hidden risks or non-conformity issues.
- Develop and oversee control systems to prevent or deal with violations of legal guidelines and internal policies.
- Support delivery of e-Discovery activity, including email and data searches
- Detail orientation and the ability to pay attention and identify minimal changes in regulations.
- Excellent conflict management skills and the ability to dissolve any issues easily.
- Help perform internal investigations.