Skip to main contentA logo with &quat;the muse&quat; in dark blue text.

Information Security Control Assurance Manager

AT Experian
Experian

Information Security Control Assurance Manager

Nottingham, U.K. / Remote

Company Description

Experian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics and software. We also assist millions of people to accomplish their financial goals and help them save time and money.

We invest in people and new advanced technologies to unlock the power of data. As a FTSE 100 Index company listed on the London Stock Exchange (EXPN), we have a team of 22,500 people across 32 countries. Our corporate headquarters are in Dublin, Ireland. Learn more at experianplc.com.

Want more jobs like this?

Get jobs delivered to your inbox every week.

Select a location
By signing up, you agree to our Terms of Service & Privacy Policy.


Internal Grade C

Description

As an Information Security Control Assurance Manager, you will lead a team that evaluates security controls across systems both on-premise and in the cloud, to ensure they mitigate risks and comply with regulatory and industry standards. You will provide direction and oversee the team in conducting security control testing, to verify the design, implementation, and operational effectiveness of controls. You will work in an agile environment, ensuring the quality of security assessments through testing, automation, and collaboration with teams and multiple partners.

This is a UK-based, remote position, reporting to the Information Security Risk & Control Director.

Summary of Primary Responsibilities

  • Oversee information security control testing program following Experian's risk management framework, working with teams and partners across multiple regions.
  • Oversee a team of security control testers responsible for assessing information systems, platforms, and operating procedures following established corporate standards for security.
  • Design repeatable testing methodologies to support control assurance testing, including automated testing steps for cloud environments.
  • Ensure control tests are well-planned, including risk identification, sampling, selection of controls, testing methods, and reporting criteria.
  • Compile management reports, summary analysis, and detailed presentations to describe risk, controls, and control deficiencies to multiple partners.
  • Improve the efficiency of the control testing program by ensuring Goals are measurable and testing materials are standardized.


Qualifications

What your background is

  • Experience managing a team of IT auditors or Information Security control assessors.
  • Experience performing IT Audit or Information Security control assessments, with specific experience testing cloud security controls.
  • Professional certification such as CISA, CISM, CISSP, ISO 27001 Lead Auditor, or equivalent.
  • Knowledge of industry standards and frameworks such as NIST 800-53, ISO 27001/27002, CIS Controls, COBIT.
  • Experience with current automated and manual industry methods for evaluating security controls on prem and in cloud environments.

Important Skills

  • Knowledge of security controls provided by tools such as Sailpoint, Rapid7, Wiz.io, MS Defender.
  • Experience with cloud security controls within environments such as AWS and Azure.
  • Experience using automation, data driven testing techniques and generative AI to gain efficiency in control assurance.
  • Big 4 accounting experience.
  • Experience creating queries and reports using RSA Archer and ServiceNow.


Additional Information

Benefits package includes:

  • Great compensation package and discretionary bonus plan
  • Core benefits include pension, bupa healthcare, sharesave scheme and more
  • 25 days annual leave with 8 bank holidays and 3 volunteering days. You can purchase additional annual leave.

Experian is proud to be an Equal Opportunity and Affirmative Action employer. Innovation is an important part of Experian's DNA and practices, and our diverse workforce drives our success. Everyone can succeed at Experian and bring their whole self to work, irrespective of their gender, ethnicity, religion, colour, sexuality, physical ability or age. If you have a disability or special need that requires accommodation, please let us know at the earliest opportunity.

#LI-Hybrid

Experian Careers - Creating a better tomorrow together

Find out what its like to work for Experian by clicking here

Client-provided location(s): Ruddington, Nottingham NG11, UK
Job ID: Experian-744000048603338
Employment Type: Full Time

Perks and Benefits

  • Health and Wellness

    • Health Insurance
    • Dental Insurance
    • Vision Insurance
    • Life Insurance
    • Short-Term Disability
    • Long-Term Disability
    • HSA With Employer Contribution
    • FSA
    • HSA
    • Pet Insurance
    • Mental Health Benefits
  • Parental Benefits

    • Birth Parent or Maternity Leave
    • Adoption Assistance Program
    • Family Support Resources
    • Adoption Leave
    • Non-Birth Parent or Paternity Leave
    • Fertility Benefits
  • Work Flexibility

    • Hybrid Work Opportunities
    • Remote Work Opportunities
    • Flexible Work Hours
  • Office Life and Perks

    • Casual Dress
    • Commuter Benefits Program
  • Vacation and Time Off

    • Paid Holidays
    • Personal/Sick Days
    • Volunteer Time Off
    • Paid Vacation
    • Leave of Absence
  • Financial and Retirement

    • 401(K) With Company Matching
    • Company Equity
    • Performance Bonus
    • Stock Purchase Program
  • Professional Development

    • Leadership Training Program
    • Tuition Reimbursement
    • Promote From Within
    • Shadowing Opportunities
    • Access to Online Courses
    • Internship Program
    • Work Visa Sponsorship
    • Associate or Rotational Training Program
    • Mentor Program
  • Diversity and Inclusion

    • Employee Resource Groups (ERG)
    • Unconscious Bias Training
    • Diversity, Equity, and Inclusion Program