For further infpormation please contact - philip-katzrbs-co-uk
Job Description Role holders manage specific assurance reviews with limited supervision from the relevant Assurance Delivery Manager (or equivalent), in line with the Group's Information Security standards and procedures- Role holders are expected to foster proactive and professional relationships with the business and with TSPs (Technology Service Providers), providing robust and challenging insight on business risk and on the adequacy and effectiveness of the control processes in place- The role holders will create a climate of continuous improvement in delivering assurance reviews, striving for excellence and contributing to the overall development of RBS strategy- The Assurance function adds value by providing specific business function and TSP assurance on Group policies and standards, in relation to customer, financial or reputational risks- The Assurance Analyst challenges the effectiveness of policy implementation based on testing results- With the wider team they act divisionally to review material risks and concerns, contributing to a consolidated picture of business as usual, gap analysis and future threats- Requirements · Accountable to key stakeholders for delivery of assurance reviews to an agreed quality, time and cost; · Conduct review testing- Tests may involve data analysis, observation and interviews with colleagues within the business and / or TP; · Work with Assurance Delivery Manager (or equivalent) to produce assurance review plan, designing solutions which take account of the resources available and constraints imposed; · Appraise Assurance Delivery Manager of progress on reviews underway and issues requiring resolution, bringing an approach that resolves issues and proposes solutions; · Liaise with business to identify whether planned timescales for assurance reviews are viable, validate issues and cross refer to other key stakeholders (e-g- GIA, Group Risk, and external parties); · Meet with Assurance Delivery Manager / team colleagues to share data, clarify understanding and identify potential issues; · Participate in and / or lead briefings with Assurance Delivery Manager to discuss role in relation to the specific assurance reviews; · Use assurance methodology to ensure that the ongoing progress of assurance reviews is formally tracked and that a clear audit trail exists in line with agreed governance; · Create and issue Assurance Documentation, assessing adequacy of controls, identifying tests to be used and testing rationale and with key individuals to identify processes, risk and controls; · Escalate contentious issues to Assurance Delivery Manager in a timely manner; · Follow up of assurance issues to ensure theses are addressed by the business in an appropriate manner; · Participate in knowledge sharing events to promote own and others' business / product knowledge and continuing professional development; and, · Support new team members / less experienced Specialist Assurance Analysts on an ad hoc basis- Responsibilities Experience Essential: · Experience of undertaking assurance reviews; · Experience of managing relationships with a business; · Experience in analysis and presentation of complex data and providing input to produce reports; and, · Being able to work as part of a team coupled with ability to gather and analyse information & provide a suitable solution- Other Significant Role Requirements - · Deputise for Assurance Delivery Manager, as appropriate; · Travel to a variety of CBD Locations will be required; · Develop and maintain a detailed understanding of relevant policies, processes, systems and issues potentially impacting on information security Risk; · Flexible and adaptable approach to responsibilities, priorities and working practices; · Demonstrate commitment to personal development; · Ability to prioritise own workload and to work under pressure with little supervision to tight deadlines whilst maintaining close attention to details; · Ability to identify and promote best practice across RBSG; and, Scope of Role: · Across Corporate Banking Division, including TSPs- The Individual Technical Knowledge: Essential: · Knowledge of assurance/audit techniques and assurance review/audit experience · Good technical knowledge for those areas affecting information security risk; · Evidence of good communication and relationship/ stakeholder management skills · Good awareness of the Division's structure and processes · Ability to produce clear and concise reports · A basic level of understanding of Project Management techniques Desirable: · Professional qualifications in Information Technology and/or Auditing - e-g-, MBCS, CISA People Management: · Identify relevant training for their own role and the team to maintain required level of technical expertise within the Group Financial Management: · Operate within financial boundaries set by the Head of Operations, including travel costs
|