IT Control Tester at Vanguard

Dublin, County Dublin, Ireland

Vanguard Logo
Not SpecifiedCompensation
Mid-level (3 to 4 years), Senior (5 to 8 years)Experience Level
Full TimeJob Type
UnknownVisa
Financial Services, Technology RiskIndustries

Requirements

  • Proven experience in IT Audit, IT Risk Management, or Technology Control Testing within the financial services or a similarly regulated industry
  • Strong practical knowledge of IT control frameworks, such as COBIT, NIST Cybersecurity Framework, and ITIL
  • Strong working knowledge of key regulations governing technology and data in financial services, such as Sarbanes-Oxley (SOX), GDPR, DPA and the DORA
  • Demonstrable understanding of the impact of major emerging regulations like the EU AI Act
  • Demonstrable experience testing controls across key IT domains, including cybersecurity, cloud environments (AWS/Azure), DevOps, change management, access management, and IT operations
  • Hands-on experience using GRC platforms (Archer) for control management

Responsibilities

  • Test Planning & Scoping: Develop and maintain the annual IT control testing plan. Define the scope, objectives, timing, and methodology for each control test based on risk assessments and regulatory requirements
  • Control Evaluation & Execution: Execute detailed walkthroughs and testing of key IT general controls (ITGCs) and application controls identified in the Risk and Control Self-Assessment (RCSA) to validate their design and operating effectiveness
  • Framework Implementation & Enhancement: Drive the implementation and continuous improvement of the IT Control Testing Framework across our European entities, ensuring alignment with global standards and local regulatory nuances
  • Control Library & Regulatory Watch: Proactively monitor the regulatory landscape and translate requirements from current and emerging technology regulations into tangible, testable controls. Key regulations include, but are not limited to: Operational Resilience & Cybersecurity (DORA and FCA Operational Resilience rules (SYSC), intra-group and third party oversight controls), Data Privacy & Governance (GDPR, UK GDPR, and the EU Data Act), Emerging regulations (The EU AI Act, CTP)
  • Advisory & Partnership: Partner with technology owners, developers, and project teams to provide proactive advice on control design and implementation for new systems, applications, and infrastructure changes
  • Issue Management & Reporting: Clearly document test results, manage findings in the Governance, Risk, and Compliance (GRC) platform, and collaborate with stakeholders to develop robust and timely remediation plans. Prepare clear, concise reports on the IT control posture for senior management and risk committees
  • Stakeholder Collaboration: Liaise effectively with First Line of Defence (business and IT), Global IT Controls testing team, and Third Line (Internal Audit) to ensure a coordinated and comprehensive approach to assurance activities
  • Leads and executes the enterprise risk management framework in accordance with the divisional implementation plan. Provides oversight and guidance to the enterprise, division, and subdivision through the creation and application of standard and customized content, reporting and business analytics

Skills

ITGC
RCSA
IT audit
risk assessment
control testing
test planning
regulatory compliance
DORA
EU AI Act
data privacy
control design
business analytics

Vanguard

Client-owned investment management firm offering low-cost funds

About Vanguard

Vanguard provides financial services with a focus on investment management. The company offers a variety of products, including mutual funds, exchange-traded funds (ETFs), individual retirement accounts (IRAs), and 401k rollovers, aimed at individual investors, financial advisors, and institutions. Vanguard's unique ownership structure means it is owned by its funds, which are in turn owned by the clients, allowing it to prioritize the needs of its investors over external shareholders. This model enables Vanguard to offer low-cost investment options, as it primarily earns revenue through management fees that are generally lower than industry standards. Additionally, Vanguard provides personalized investment advisory services, charging fees based on the assets managed. The company's goal is to help clients grow their wealth and achieve their financial objectives through effective investment strategies, while maintaining a competitive performance track record.

Kline Township, PennsylvaniaHeadquarters
1975Year Founded
SECONDARYCompany Stage
Fintech, Financial ServicesIndustries
10,001+Employees

Benefits

Best-in-class medical, dental & vision coverage
Onsite health clinic & fitness center
Health Smart Rewards program
Vanguard Retirement Savings Plan
Education Benefits
PTO
Family Planning Benefist
Parental leave
Personal development opportunities
Volunteer Time Off

Risks

Competition from AI-driven platforms like Writer challenges Vanguard's traditional advisory services.
Vanguard's stake in Steelcase exposes it to the volatile furniture market.
New active bond ETFs may struggle in a low-yield environment with increasing competition.

Differentiation

Vanguard is client-owned, aligning its interests with investors, unlike traditional firms.
The firm offers low-cost investment products, making it attractive to cost-conscious investors.
Vanguard's ownership structure allows it to focus on long-term investor value.

Upsides

Vanguard's new active bond ETFs offer diversified, low-cost fixed income options.
The acquisition of Steelcase shares diversifies Vanguard's portfolio into the furniture industry.
Launching the International Dividend Growth Fund appeals to investors seeking sustainable dividend growth.

Land your dream remote job 3x faster with AI