Hybrid Senior Controls Manager

Posted 1 hour ago

Apply now

About the role

  • Senior Controls Manager ensuring effective Technology and Cyber controls at Bupa. Leading innovation and compliance in a collaborative environment across UK teams.

Responsibilities

  • Lead the ongoing evolution and improvement of our Technology and Cyber control framework.
  • Help control owners design, document, test and evidence their controls effectively.
  • Oversee first-line control testing, identifying trends, gaps and areas for improvement.
  • Produce clear reporting for senior leaders that highlights risks, control health and progress.
  • Work with Technology, Cyber and Operational teams to agree and track remediation actions.
  • Act as a key contact for internal audit, external audit and regulatory engagements.
  • Support major technology programmes by embedding the right controls from the outset.
  • Build control awareness through training, guidance and education across technical and non‑technical teams.
  • Lead deep dives into areas such as identity and access management, cloud controls, change management and more.
  • Partner closely with our second-line risk and compliance teams to keep our methodologies aligned.

Requirements

  • Experience designing, assessing and improving controls across Technology, Cybersecurity or Operational Risk in large organisations.
  • Strong written and verbal communication skills, able to turn technical detail into clear insights.
  • Great stakeholder management and the confidence to work with senior leaders and SMEs.
  • Strong understanding of control frameworks and standards such as ISO 27001, NIST CSF, COBIT, ITIL, PCI DSS, CIS and OWASP.
  • Experience working in regulated industries (financial services, insurance or healthcare).
  • Strong analytical skills to identify gaps, evaluate risks and interpret data.
  • Knowledge of cloud security and frameworks like CSA, CCM and cloud‑specific NIST/ISO controls.
  • Experience using tools such as Power BI and Excel to create clear reporting and dashboards.
  • A proactive mindset with a passion for continuous improvement and operational maturity uplift.
  • Desirable skills include experience contributing to large transformation programmes (e.g., cloud, cyber uplift) and conducting thematic reviews or deep dives into control areas.
  • Supporting audit or regulatory assurance activities.
  • Knowledge of risk and control methodologies, including the three lines of defence.
  • Qualifications (desirable but not essential) A degree in Cybersecurity, IT, Risk or a related field.
  • Certifications such as CISSP, CISA, CISM, GRCP, CGEIT, CRISC or ISO 27001 Lead Implementer/Lead Auditor.

Benefits

  • 25 days holiday, increasing through length of service, with option to buy or sell
  • Bupa health insurance as a benefit in kind
  • An enhanced pension plan and life insurance
  • Annual performance-based bonus
  • Onsite gyms or local discounts where no onsite gym available
  • Various other benefits and online discounts

Job title

Senior Controls Manager

Job type

Experience level

Senior

Salary

£72,800 - £100,000 per year

Degree requirement

Bachelor's Degree

Location requirements

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job