CrawlJobs Logo

Technology Risk & Controls Associate

amcor.com Logo

Amcor

Location Icon

Location:
Czech Republic; Spain , Prague

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

Join our Global Internal Audit (GIA) Team and be the key point of contact for IT Risk and Compliance matters. At GIA, we’re on a mission to continuously improve Amcor’s risk and control universe. Our growing team boasts a wealth of experience and skills, positioning us perfectly to elevate our internal controls to new heights. As we embark on this exciting journey, we’re seeking a Senior IT Risk Associate. You will be responsible for working with our Corporate IT department, business groups, control owners, third party consultants, and Amcor’s internal and external auditors to further strengthen our control environment. We are looking for a collaborative and hands-on individual, experienced in driving efficient and effective internal control frameworks in complex organizations. Reporting to our GIA IT Risk Manager, the incumbent of this role will be experienced in IT risks and internal controls.

Job Responsibility:

  • Influence our internal control strategy
  • Control Design Effectiveness Testing
  • Control Operating Effectiveness Testing
  • GRC Tool Support
  • Reporting

Requirements:

  • Bachelor’s degree in IT, Finance or Business
  • CISA and/or Certified Internal Auditor preferred
  • 2+ years’ experience in an internal controls / internal or external audit / IT risk management environment preferably gained in a large global Corporate and/or a Big 4 Accounting firm
  • Strong and practical working knowledge of current SOX requirements preferably in the Manufacturing sector
  • Demonstrated IT risk and controls knowledge
  • End-to-end process minded
  • Strong working knowledge of Excel and Data Analytics a plus
  • SAP knowledge is a plus
  • A natural curiosity for automation and innovation
  • Experience with setting up and utilizing various GRC Tools
  • Experienced in working in a diverse and multi-cultural / multi-national environment
  • Up to 20% travel

Nice to have:

  • Experience with data analytics a plus
  • SAP knowledge is a plus

Additional Information:

Job Posted:
January 06, 2026

Employment Type:
Fulltime
Work Type:
On-site work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Technology Risk & Controls Associate

Technology Risk Governance Manager

Help us deliver a better tomorrow. Australia Post is delivering for all Australi...
Location
Location
Australia , Richmond
Salary
Salary:
Not provided
auspost.com.au Logo
Australia Post
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong background in Technology Risk and IT Governance within large, complex organisations
  • Proven experience in risk management supporting technology or digital functions
  • Expertise in technology, digital and information governance, security risk, and operational frameworks such as ISO27001/2, ITIL, E8, NIST, and COBIT
  • Familiarity with APRA CPS 230/234, ISO 31000, or similar standards
  • Ability to translate and present complex technical and operational information into simple business language to engage business stakeholders
  • Demonstrated ability to influence, challenge, and engage senior business and technology leaders
  • Maintaining strong objective relationships beyond span of control
  • Excellent analytical, problem-solving, and communication skills
Job Responsibility
Job Responsibility
  • Support the proactive identification, assessment, and facilitate mitigation of technology risks across operational environments and transformation programs
  • Plan and execute regular and ad-hoc reviews into areas of significant technology risks to the organisation, including deep dives, and facilitating commercial solutions for any issues that may arise
  • Partner with delivery teams, architects, and operational leaders to integrate risk management into business-as-usual processes and project lifecycles
  • Maintain a current risk register reflecting emerging threats, system dependencies, and control effectiveness
  • Facilitate regular risk and control assessments and timely remediation of identified gaps
  • Support the Technology & Cyber Controls Assurance function in undertaking reviews against the minimum policy, standard and control requirements
  • Undertake targeted reviews of the effectiveness of key Technology controls and provide reporting & insights
  • Develop and implement risk management processes, libraries and documentation that will help improve transparency and management of enterprise and business unit technology risks and associated compliance and operational requirements
  • Provide risk advisory support for technology operations and systems within transformation projects
  • Review and challenge technology designs, change management processes, and vendor engagements from a risk perspective
What we offer
What we offer
  • Career Development: opportunities for professional growth and development
  • Work-Life Balance: flexible working arrangements
  • Employee Wellbeing: resources and support to ensure a healthy and safe work environment
  • Fulltime
Read More
Arrow Right

Price Risk Data Controls Senior Business Analyst

The role will be part of Price and Credit Risk and Controls team, charged with e...
Location
Location
Hungary , Budapest
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 7+ years’ experience as a Business Analyst or Subject Matter Expert (SME) including expertise of trade lifecycle, market risk and valuation, CDE data controls, data analysis, business requirement documentation, implementation and UAT testing, through to business adoption
  • Strong controls mindset, identifying and mitigating risks, communicating and escalating concerns
  • Demonstrated experience in executing key controls, monitoring control results, identifying and resolving issues
  • Expertise in markets products across asset classes and associated critical data elements
  • Attention to detail to capture data accurately, strong data analytical and storytelling skills
  • Business analysis and change management expertise in delivering complex solutions are essential (preferably including proficiency with project management tools such as JIRA, MS Project)
  • Excellent oral and written communications skills
  • must be articulate and persuasive with the judgement and authority to provide insightful commentary to senior stakeholders
  • Ability to handle complexity, ambiguity and a fast changing, often demanding work environment
Job Responsibility
Job Responsibility
  • Design 1LoD controls and associated Target Operating Model (TOM) to improve Price Risk data quality
  • Perform control current state and gap assessments and identify enhancements needed
  • Document business requirements to enable the implementation of 1LoD preventative and detective data quality controls
  • Drive control enhancements related to CDE DQ validations, including supporting the business through UAT and production parallel testing
  • Lead working groups and/or scrums with stakeholders and technology partners to manage the delivery within the agreed timeline(s)
  • Execute Price Risk data quality controls as defined in TOM and MCA
  • Monitor and provide governance and oversight over Price Risk CDE DQ controls, including DQ metrics, insightful project update materials and artifacts
  • Identify and understand the DQ issues aligned with that data set including end-to-end data flows and controls and ensure these are addressed in the defined target state solution with robust controls
What we offer
What we offer
  • Cafeteria Program
  • Home Office Allowance (for colleagues working in hybrid work models)
  • Paid Parental Leave Program (maternity and paternity leave)
  • Private Medical Care Program and onsite medical rooms at our offices
  • Pension Plan Contribution to voluntary pension fund
  • Group Life Insurance
  • Employee Assistance Program
  • Access to a wide variety of learning and development programs, online course libraries and upskilling platforms, such as Udemy and Degreed
  • Flexible work arrangements to support you in managing work - life balance
  • Career progression opportunities across geographies and business lines
  • Fulltime
Read More
Arrow Right

Risk & Information Security Associate Analyst

We are looking for a highly organized, detail-oriented Risk & Information Securi...
Location
Location
Cyprus , Nicosia
Salary
Salary:
Not provided
www-ap.albourne.com Logo
Albourne
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 2–3 years of professional experience
  • Excellent organizational skills with the ability to manage multiple workstreams and meet deadlines in a dynamic environment
  • Strong written and verbal communication skills, including the ability to prepare concise, well-structured documents and interact professionally across all levels of the business
  • Meticulous attention to detail, particularly in preparing audit materials, compliance documentation, and reviewing access controls
  • Proactive and self-motivated, able to work independently and across time zones without direct daily supervision
  • Comfortable handling sensitive and confidential information with discretion
  • Interest in technology, cybersecurity, and enterprise risk
  • Basic understanding of information security principles and frameworks (e.g., ISO 27001, NIST)
  • Ability to interpret and work with structured information (e.g., policies, risk registers, audit plans)
  • Capable of coordinating inputs from multiple stakeholders and compiling them into coherent outputs (e.g., committee papers, training summaries, client DDQs)
Job Responsibility
Job Responsibility
  • Monitor and report on the effectiveness of information security controls
  • Support the identification, tracking, and resolution of security incidents or weaknesses
  • Assist in maintaining security metrics and dashboards for internal reporting
  • Contribute to the assessment of operational, technology, and third-party risks
  • Assist in evaluating controls and proposing mitigation strategies aligned with risk appetite
  • Participate in internal audits and control testing, ensuring timely remediation of findings
  • Help maintain and enforce security and risk management policies and procedures
  • Support compliance with relevant data protection, privacy, and information security regulations
  • Coordinate periodic user access reviews and assist with awareness initiatives
  • Work across departments to gather risk-related information and support secure business operations
What we offer
What we offer
  • Support for professional qualifications (such as CFA and CAIA)
  • Career growth and tools for ongoing learning and development
  • Medical insurance for you and your dependents
  • Provident fund
  • Yearly bonus dependent upon performance and company growth
  • Opportunity for international travel (i.e., short periods of secondment to other Albourne offices)
  • 5 additional service recognition holidays in surplus to standard annual leave
  • Albourne Training Days (minimum of 40 hours per year)
  • Free office parking
  • A supportive, diverse, and multi-cultural work environment
  • Fulltime
Read More
Arrow Right

Senior Control Manager

The GCIO Chief Control Office (CCO) team plays an important role in enabling the...
Location
Location
Poland
Salary
Salary:
Not provided
https://www.hsbc.com Logo
HSBC
Expiration Date
February 07, 2026
Flip Icon
Requirements
Requirements
  • Knowledge and passion for Artificial Intelligence (AI) technology and platforms, with a broad technical familiarity across digital currencies, cloud architecture, quantum computing and the management of third party technology providers
  • Detailed knowledge of Technology controls and very good understanding of Non-Financial Risk frameworks
  • Strong leadership background with a proven track-record of managing wide range of diverse stakeholders
  • Negotiating skills to manage right outcomes for GCIO across a diverse set of GB/GF’s, senior stakeholders and lines of defense often with competing objectives
  • Proven ability to articulate complex issues concisely and in simple language to support problem analysis
  • Experience in writing and presenting board papers
  • Ability to engage with team, colleagues and business partners collaboratively to deliver at pace
  • Previous experience of identifying, defining and solving problems that have impact on your work or the wider business.
Job Responsibility
Job Responsibility
  • Support the leadership of the CCO ETIV team to a value based and outcome focussed way of working, including driving cultural change to deliver strong integrated risk management across ETIV and the business
  • Enable the Businesses and Regions to execute their strategic growth objectives in a safe and secure way
  • Provide Businesses and Regions with clear understanding of Technology and relevant Non-Financial risks and the role they play in mitigating these risks
  • Partner with Risk and Control Owners to make sure risk positions are understood and reflected in the control activities from design through implementation to robust metrics
  • Support the Global Head of Controls as a key point of contact for ETIV GCIO for all matters related to risk & controls
  • Effectively manage relationships across 1LOD and 2LOD/3LOD partners – drive risk and audit reviews and subsequent actions through to resolution by partnering with 1LOD/GCIO teams
  • Drive risk and control decision-making based on quality data and commercial analysis, actively challenging poor, inefficient or excessive controls, related tasks and behaviours
  • Oversee emerging risks, strategic business initiatives and local change activity
  • Support consistent and insightful reporting and escalation of identified issues
  • Drive consistent communication, clarifying impacts of change on the risk and control environment for HSBC
What we offer
What we offer
  • Competitive salary
  • Annual performance-based bonus
  • Additional bonuses for recognition awards
  • Multisport card
  • Private medical care
  • Life insurance
  • One-time reimbursement of home office set-up (up to 800 PLN)
  • Corporate parties & events
  • CSR initiatives
  • Nursery discounts
  • Fulltime
!
Read More
Arrow Right

Cross-disciplinary Controls Sr. Lead Analyst

This role involves managing operational risk and control processes with a strong...
Location
Location
Colombia , Bogotá
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 15+ years of experience in operational risk management, compliance, audit, or other control-related functions in the financial services industry
  • Ability to identify, measure, and manage key risks and controls
  • Track record leading Control related projects and programs
  • Ability to see the big pictures with high attention to critical details
  • Develop and implement strategy and process improvement initiatives
  • Comprehensive knowledge of Citi’s businesses and functions and their risk profiles
  • Developing new ideas and improving current processes to proactively mitigate risks
  • Requires an ability to provide challenge and make recommendation for risk and controls remediation
  • Expert knowledge in the development and execution for controls
  • Proven experience in control related functions in the financial industry
Job Responsibility
Job Responsibility
  • Develop and maintain robust MIS reports and dashboards to monitor key risk indicators (KRIs) and control performance indicators (CPIs)
  • Provide insightful analysis of risk data to support strategic decision-making
  • Contribute to the development and implementation of AI governance frameworks, ensuring ethical use, transparency, fairness, and accountability of AI systems
  • Perform assurance activities over AI models and their associated data
  • Stay abreast of industry trends in risk management, MIS technologies, and artificial intelligence to continuously enhance risk and control capabilities
  • Support the safe growth and management of the Citi Markets business line and its associated higher risk segments through robust risk mitigation
  • Identify and assess risk, vulnerabilities, and opportunities for efficient and effective risk coverage
  • Work within team and across business/functional line management to assess complex issues, structure potential solutions, and drive effective resolution within permissible statutory and regulatory frameworks
  • Evaluate and respond to escalated matters and further escalate as required
  • Advise senior management on next steps as needed
What we offer
What we offer
  • Global benefits to support well-being, growth and work-life balance.
  • Fulltime
Read More
Arrow Right

LAPC Control Execution Lead

By joining Citi Belfast, you will work as a LAPC Control Execution Lead, respons...
Location
Location
United Kingdom , Belfast
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Significant relevant work experience
  • self-motivated and accountable
  • excellent communication skills – verbal & written
  • strategic mindset with the ability to think critically, solve complex problems, and drive innovative solutions through practical outcomes
  • ability to be responsible for a strategy, process, or control portfolio
  • experience with stakeholder management or cross functional teams
  • expertise in Compliance, Operational Risk Management or other control related function within Financial Services sector
  • expert-level understanding of MCA (Managers Control Assessment) frameworks and processes
  • experienced in Movement of Funds/ Payments Operational Risk
  • knowledge of other risk disciplines (market risk, credit risk) a plus
Job Responsibility
Job Responsibility
  • Oversees the development, implementation and application of operational risk policies, technology and tools, and governance processes to create lasting solutions for deliverables on movement of funds governance as a core enterprise capability
  • governance and oversight of movement of funds, large payment controls system or process and application integration initiatives, serving as an oversight function working with lines of businesses or in business risk and control teams
  • act as escalation point centrally to communicate and escalate reviews, concerns, and breaches
  • research, document and export best practices and common risk, controls, and corrective actions through framework papers
  • ensures that movement of funds related KORs and KRCIs are communicated and understood by businesses
  • develops and maintains relationships across the business users and lines of defense to better understand and deliver control and oversight requirements
  • oversees directly related control designs, with intention of ensuring efficiency of payment controls and/or lines of business executed and tested controls
  • analyze and build a comprehensive list of relevant controls associated with the LAPC (Large Anomalous Payment Control) rules engine, to ensure proper governance and oversight by its respective accountable owners
  • develop insights for all relevant controls within the organization.
What we offer
What we offer
  • Generous holiday allowance starting at 27 days plus bank holidays (increasing with tenure)
  • a discretional annual performance related bonus
  • private medical insurance packages to suit personal circumstances
  • employee Assistance Program
  • pension plan
  • paid parental leave
  • special discounts for employees, family, and friends
  • access to an array of learning and development resources.
  • Fulltime
Read More
Arrow Right

Technology Risk Internal Audit Cloud Associate Director

Lead and oversee our team’s Cloud assurance service line, providing our clients ...
Location
Location
United Kingdom , London
Salary
Salary:
Not provided
grantthornton.co.uk Logo
Grant Thornton UK LLP
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Professional qualification (CISA, CCAK, CCSK, CCSP etc.) with post qualification experience
  • Confident managing a large portfolio of internal audit and Technology Risk clients
  • Experience of scoping and delivering technology internal audits and Technology Risk engagements (ie first / second line assurance activities), and developing reports and presenting conclusions to relevant senior stakeholders
  • Experience of managing internal audits of large companies in addition to dealing with complex technical matters, in particular areas related to the configuration, resilience, and security of Cloud platforms and solutions (inc IaaS, PaaS, and SaaS)
  • Strong experience of a range of cloud governance, technical configuration, and cloud specific topics such as security, data protection/privacy, availability, resilience, disaster recovery, performance, cost management, third-party management, and change management
  • Experience of auditing public (such as AWS, Azure and Google Cloud) and/or private (such as VMWare) cloud platforms
  • Knowledge and familiarity with the Cloud Security Alliance Cloud Controls Matrix, cloud vendor Well Architected frameworks and Agile methodologies
  • Ideally a good track record of performing IT audits over DevSecOps / CICD pipelines, including release management, source code management, testing, security, use of tools and automation
  • Experience of delivering a technology audit / technology risk covering a broad range of areas, including cyber and network security, IT resilience, IT transformations, IT strategies, data protection, supplier management, and other
  • Extensive experience of using audit software and Microsoft packages
Job Responsibility
Job Responsibility
  • Take ownership and lead on allocated assignments and client accounts
  • Be responsible for overseeing the delivery of a number of technology internal audit / technology risk engagements and manage portfolio of technology audit / technology risk engagement and relationships with clients
  • Support and lead business development activities, winning new clients and upselling services to existing clients
  • Lead on planning conversations with clients, and in the preparation of draft terms of reference/audit planning documents
  • Providing subject matter expert input into technology audit / technology risk engagements and overseeing fieldwork performed by more junior team members
  • Oversee, and review the work of, junior members of the team, supporting development and ensuring quality in the work performed
  • Hold close-out meetings with clients to ensure that they have a full understanding of issues identified and these are agreed, and write reports summarising the key observations from the work performed
  • Presenting reports and findings at Audit Committees and other senior management committees
  • Support in the development of new technology audit / technology risk service lines and initiatives within BRS, with a focus (but not exclusively) on Cloud assurance
  • Assist with the financial management of client relationships, including monitoring WIP, raising invoices, ensuring an adequate margin is achieved on engagements, and preparing budgets
What we offer
What we offer
  • Flexible working
  • Reduced hours and job shares considered
  • Support to balance work and life
  • Inclusive culture
  • Real opportunity
  • Work life balance
  • Freedom to bring your whole self to work
  • Pursue your passions inside and outside of work
  • Secondments
  • Fundraising for local charities
Read More
Arrow Right

Transformation and Controls Senior Vice President, End User Computing

Global role responsible for supporting the development and implementation of the...
Location
Location
Ireland , Dublin
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience in Risk and Control, 2nd line Testing or Audit roles
  • Understanding of evolving governance, controls and regulatory requirements relating to technology tools and capabilities
  • Excellent communication skills and the ability to motivate and persuade colleagues across disparate businesses, regions and cultures
  • Ability to understand and operate successfully in a complex, heavily matrixed corporate environment
  • Understanding of business and technology tools expertise related to enterprise controls and control automation oversight in financial or similar firms
  • Working knowledge of Citi's End User Computing Policy, EUC Governance Programmes and business operations
  • Demonstrates history of having worked as a Programme Manager, or working on large, strategic cross-functional projects
  • Specific subject matter expertise regarding control tooling and capabilities and a strong business understanding of the products and services Citi offers
  • Demonstrated ability to lead change management across large global organisations
Job Responsibility
Job Responsibility
  • Support the design and implementation of the EUC Governance Framework for Citi
  • Work with senior leaders and their teams across multiple businesses and functions as well as second and third lines of defense
  • Partner with stakeholders to draft and implement action plans in support of regulatory requirements/commitments and Consent Order initiatives
  • Provide oversight over the EUC governance programmes including principles, policy, practices and standards including industry best practices
  • Measure Policy adherence and remedial action associated with Policy adherence
  • Engage with business and Global Functions leaders to drive EUC agenda progress
  • Support management communications relative to EUC Transformation & Governance with senior management
  • Partner effectively across the firm with key teams to drive the tools and capabilities including EUC Inventory management and workflow system capabilities
  • Support the identification, design and implementation of an appropriate tools for EUC discovery capability
  • Partner with 2nd and 3rd Lines of Defense to ensure controls relating to EUCs are adequately designed and operating effectively
What we offer
What we offer
  • Competitive base salary (annually reviewed)
  • Business casual workplace
  • Hybrid working model (up to 2 days working at home per week)
  • Benefits that support well-being, living well and saving well
  • Fulltime
Read More
Arrow Right