
WPP · London
WPP is the trusted growth partner for the world’s leading brands. We unite cutting-edge media intelligence and data solutions, world-class creativity, next-ge...
WPP is the trusted growth partner for the world’s leading brands.
We unite cutting-edge media intelligence and data solutions, world-class creativity, next-generation production, transformative
enterprise solutions and expert strategic counsel in a single company – powered by exceptional talent and our agentic marketing
platform, WPP Open, to help our clients navigate change, capture opportunity and deliver transformational growth.
We work with the world's most valuable brands and have global reach across 100+ markets, with deep local expertise.
Our people are the key to our success. We're committed to fostering a culture of creativity, belonging and continuous learning,
attracting and developing the brightest talent, and providing exciting career opportunities that help our people grow.
For more information, visit WPP.com.
We're looking for a Technical Security Governance Lead – Software Development to help shape and strengthen secure software
development governance across one of the world's largest technology and creative ecosystems. Working within WPP's Digital Security
& Risk Management team, you'll partner with engineering, product and platform teams to govern secure-by-design ways of working,
improve software security governance, and provide oversight across modern development environments.
This role isn't about writing code day-to-day. Instead, you'll influence governance of how secure software is built, deployed and
maintained across cloud-native platforms, APIs, AI-enabled applications and global engineering teams.
This is an opportunity to influence software security governance at global scale, helping shape how security supports innovation
across one of the world's largest and most diverse technology environments. You'll work alongside talented security and
engineering professionals while helping build secure, resilient products and platforms for the future.
risks.
governance.
controls and data protection.
You're open: We are inclusive and collaborative; we encourage the free exchange of ideas; we respect and celebrate diverse views.
We are open-minded: to new ideas, new partnerships, new ways of working.
You're optimistic: We believe in the power of creativity, technology and talent to create brighter futures or our people, our
clients and our communities. We approach all that we do with conviction: to try the new and to seek the unexpected.
You're extraordinary: we are stronger together: through collaboration we achieve the amazing. We are creative leaders and pioneers
of our industry; we provide extraordinary every day.
Passionate, inspired people – We aim to create a culture in which people can do extraordinary work.
Scale and opportunity – We offer the opportunity to create, influence and complete projects at a scale that is unparalleled in the
industry.
Challenging and stimulating work – Unique work and the opportunity to join a group of creative problem solvers. Are you up for the
challenge?
#LI-Hybrid
We believe the best work happens when we're together, fostering creativity, collaboration, and connection. That's why we’ve
adopted a hybrid approach, with teams in the office around four days a week. If you require accommodations or flexibility, please
discuss this with the hiring team during the interview process.
WPP is an equal opportunity employer and considers applicants for all positions without discrimination or regard to particular
characteristics. We are committed to fostering a culture of respect in which everyone feels they belong and has the same
opportunities to progress in their careers.
PLEASE READ OUR PRIVACY NOTICE (HTTPS://WWW.WPP.COM/EN/CAREERS/WPP-PRIVACY-POLICY-FOR-RECRUITMENT) FOR MORE INFORMATION ON HOW WE
IT CONTROLS SPECIALIST Take a look inside our London office ABOUT THE TEAM SumUp's Internal Controls function sits at the heart of our financial governance, responsible for the programmes that give regulators, auditors, and leadership confidence in how we operate. As SumUp grows, robust and scalable technology controls are increasingly important to the strength of our financial governance and wider control environment. . This is a newly created role, and it's a genuinely important one. You will take ownership of the technology side of our ICFR and Provision 29 (P29) programmes. You'll be the person who builds it: designing the control framework, running the IT ICFR assurance programme, and making sure our IT general controls can stand up to external audit scrutiny. WHAT YOU'LL DO * Design, document, test, and oversee remediation of IT General Controls (ITGCs), automated controls, and key system-generated financial reports across SumUp's ICFR and P29 programmes * Build and maintain a complete IT risk and control matrix (RCM) covering all in-scope control domains, and produce audit-quality evidence packs * Act as the primary point of contact between the Internal Controls team and SumUp's Engineering and IT functions, coordinating evidence, managing auditor requests, and tracking deficiencies through to remediation * Identify and implement automation opportunities across the controls lifecycle, including evidence collection workflows, access review sampling, and change management evidence extraction * Advise the business on IT risk identification and control design to support compliance and broader risk management requirements YOU'LL BE GREAT FOR THIS ROLE IF… * Strong hands-on experience in IT audit, ITGC testing, or technology risk, whether from an internal or external audit background * Solid knowledge of IT General Controls domains: logical access, change management, computer operations, and SDLC * Familiarity with ICFR, SOX, or equivalent regulatory frameworks, including experience managing IT PBC (Prepared by Client) requests with external auditors * A good understanding of IT risk and the ability to link IT controls activities with broader assurance programmes (such as ISO and other existing frameworks) to avoid duplication and drive efficiency * Ability to document and maintain risk and control matrices to a standard that holds up under audit scrutiny * Comfort working across multi-jurisdictional environments and influencing technical teams without direct authority * Intellectual curiosity about automation and AI — and a genuine interest in applying both to make controls programmes more efficient WHY YOU SHOULD JOIN SUMUP * 🌎 Opportunity to work with a truly global, multicultural team from our central Covent Garden location, wrapped in historic charm and modern flair. This involves an office-first setup * 🌈 Commitment to Diversity and Inclusion: be part of a workplace that values and promotes diversity, fostering an inclusive environment where everyone's perspectives are respected and embraced * 🚀 Enrolment onto our Virtual Stock Option programme: you will own a stake in SumUp's future success * 🏖 Generous time off: enjoy 28 days of paid leave, plus bank holidays and special leaves * 📚 A dedicated annual L&D budget for attending conferences and/or advancing your career through further education * 🏥 Health matters: private health insurance, including optical and dental * 🚗 Life made easier: salary-sacrifice commuter benefits via Gogeta * 💼 Financial security: retirement scheme (SumUp matches 7% when you contribute 5%) * 🛡 Peace of mind: life insurance from MetLife for 2× your salary * 🌴 Break4me: 1-month sabbatical after 3 years of service * 🔗 Referral Bonus: earn additional rewards by referring talented individuals to join the SumUp team ABOUT SUMUP Be empowered to do more that matters. At SumUp, we're on a mission to empower small businesses across the globe by providing simple and affordable tools that allow them to thrive. Today, over 4 million businesses in 37 markets rely on SumUp as their financial partner to manage payments, finance and customer relationships. Our commitment to small businesses is reflected in our diverse team of over 3,000 SumUppers from over 90 nationalities, united by global collaboration and an innovative mindset. Our core values lay the foundation for who we are and what we stand for, shaping our work culture and driving our success. We foster inclusivity and a continuous learning culture, providing a safe space for personal and professional growth. Our differences make us unique and strong as we strive to create an environment where everyone belongs and feels supported, no matter how they identify. SumUp is proud to be an Equal Employment Opportunity employer, actively seeking and embracing diversity in our workforce. We don't make hiring or employment decisions based on race, colour, religion or religious belief, ethnic or national origin, nationality, sex, gender, gender identity, sexual orientation, disability, age or any other basis protected by applicable laws or prohibited by company policy. Our commitment extends beyond recruitment to creating a safe and respectful workplace where harassment of any form is strictly prohibited. Discover more about our culture and opportunities on our careers website, and follow our journey on LinkedIn, Instagram, and TikTok. Job Application Tip We recognise that candidates feel they need to meet 100% of the job criteria in order to apply for a job. Please note that this is only a guide. If you don’t tick every box, it’s ok too because it means you have room to learn and develop your career at SumUp.
ABOUT SUMUP We believe in the everyday hero. Those who have the courage to follow their passion and who have the strength and determination to realise their dreams. Small business owners are at the heart of all we do, so we're creating powerful, easy-to-use financial solutions to help them run their businesses. With a founder’s mentality and a team-first attitude, our diverse teams across Europe, South America and the United States work together to ensure that small business owners can be successful doing what they love. 🌍 YOUR TEAM You’ll join SumUp’s Global Internal Audit team, part of our wider G&A / GRC function, reporting directly to the Global Head of Internal Audit. This team plays a critical role in protecting SumUp’s integrity, supporting regulatory compliance, and strengthening trust with our Board, Audit Committee, and regulators. As our Internal Auditor - IT security specialist, you’ll bring essential technology and data analytics expertise into a team that partners closely with senior leaders across the business. You’ll be the go-to expert for technology-focused audits, helping shape how we assess IT risks, controls, and governance across a fast-scaling global fintech. 🔍 WHAT YOU’LL DO As an IT Internal Auditor, you’ll support the delivery of SumUp’s approved Internal Audit Plan, with a strong focus on technology, data, and systems risk. In this role, you will: * Plan and execute IT internal audits in line with the annual audit plan * Assess IT general controls, security, governance, and risk management frameworks * Prepare clear, insightful audit reports, presenting findings and recommendations to senior stakeholders * Use data analytics to improve audit efficiency, sample testing, and risk identification * Support ad-hoc audit projects and regulatory-related reviews * Contribute to the continuous improvement of internal audit methodologies, frameworks, and templates * Stay up to date with technology standards, regulatory developments, and industry best practices * Build strong relationships across the business and promote a proactive internal controls culture * Conduct targeted audits of AWS security standards and access controls across our cloud environment, ensuring credit card data stored in cloud services is adequately protected; * Perform risk-based reviews of payment products and ensure security requirements are consistently embedded throughout the development lifecycle. * Identifying anomalies or excessive privileges across different systems and payment platforms. ✅ YOU’LL BE GREAT FOR THIS ROLE IF You’re a hands-on IT auditor who enjoys combining technical depth with clear communication and stakeholder collaboration. Must-have experience: * Minimum 4 years’ experience in IT / Internal Audit within a regulated financial services environment * Strong knowledge of audit standards, risk management, and internal controls * Experience auditing IT controls and frameworks such as COBIT, ISO 27001, PCI DSS, ITIL, NIST, GDPR * Practical exposure to areas like data security, cloud architecture, disaster recovery, security operations, or network infrastructure * Advanced data analytics skills * Professional-level English (written and spoken) Nice to have: * Professional certifications such as CIA, CISA, CPA * Additional IT/security certifications (CISSP, CISM, CRISC, ISO 22301, or similar) * Experience with audit-related data analytics tools What sets you apart: * High ethical standards and integrity * Strong analytical and problem-solving mindset * Confidence influencing change and challenging the status quo constructively * Ability to work independently in a multinational environment ---------------------------------------------------------------------------------------------------------------------------------- 💚 WHY YOU SHOULD JOIN SUMUP 🇬🇧 LONDON, UNITED KINGDOM 🌎 Opportunity to work with a truly global, multicultural team from our central Covent Garden location, wrapped in historic charm and modern flair. This involves an office-first setup 🌈 Commitment to Diversity and Inclusion: be part of a workplace that values and promotes diversity, fostering an inclusive environment where everyone's perspectives are respected and embraced 🚀 Enrolment onto our VSOP program: you will own a stake in SumUp’s future success 🏖 Generous time off: enjoy 28 days of paid leave, plus bank holidays and special leaves 🏥 Health matters: Vitality health cover, including optical and dental 🚗 Life made easier: salary-sacrifice commuter benefits via Gogeta 💼 Financial security: retirement scheme (SumUp matches 7% when you contribute 5%) 🛡 Peace of mind: life insurance from MetLife for 2× your salary 🌴 Break4me: 1-month sabbatical after 3 years of service 🔗 Referral Bonus: earn additional rewards by referring talented individuals to join the SumUp team Job Application Tip We recognise that candidates feel they need to meet 100% of the job criteria in order to apply for a job. Please note that this is only a guide. If you don’t tick every box, it’s ok too because it means you have room to learn and develop your career at SumUp.
Since 2004, we’ve been bringing investment ideas to life and connecting capital with the right people and opportunities. Today, we manage more than £2.5 billion for a broad range of investors across five key investment strategies: Private Credit, Social Housing, Clean Heat, Energy and Venture. These strategies underpin the innovative range of investments we offer to both private (retail) and institutional clients. There are 230+ employees at Triple Point, all committed to leaving the world demonstrably better than we found it. That’s why we’re a certified B Corp, signed up to the Principles for Responsible Investment, and were named a Sunday Times 'Best Place to Work 2025 & 2026'. If this sounds like an environment where you would flourish, then read on… The Function & Team The Legal team provides clear, pragmatic advice that supports Triple Point’s ambitions and protects our interests. They work closely with teams across the business to draft agreements, manage risk and enable confident decision-making that’s both commercially sound and aligned with our values. Role Summary As Legal Counsel, you will be a trusted legal adviser to Triple Point's Energy businesses. You will play a key role in structuring, negotiating and executing complex financing and energy transactions, while supporting the ongoing management of existing investments and loan portfolios. Working closely with investment, portfolio management and senior stakeholder teams, you will provide pragmatic, commercially focused legal advice that enables growth, manages risk and supports confident decision-making across a diverse range of transactions. The Roles Key Responsibilities Transaction Execution & Advisory * Advise on transaction structuring, identifying legal risks and commercially viable solutions at the earliest stages of a deal. * Draft, negotiate and execute a broad range of finance documents, including facility agreements, intercreditor agreements and security documentation. * Review and negotiate the following: * Power Purchase Agreements (PPAs) * Corporate PPAs * Engineering, Procurement and Construction (EPC) agreements * Operations and Maintenance (O&M) agreements * Direct agreements and related project documentation Portfolio & Asset Management * Provide ongoing legal support across existing portfolios and loan books. * Draft and negotiate amendments, waivers, consents, reservation of rights letters and other portfolio management documentation. * Advise stakeholders on emerging legal, commercial and regulatory issues affecting existing investments. Risk Management & Governance * Identify, assess and communicate legal and commercial risks in a clear and practical manner. * Support the business in balancing risk management with commercial objectives. * Ensure all post-completion requirements are completed accurately, including Companies House filings and security registrations. * Contribute to the development and continuous improvement of legal processes, templates and knowledge sharing across the business. Collaboration & Business Partnership * Build trusted relationships with colleagues across Triple Point. * Work collaboratively with external counsel, counterparties and advisers. * Support a culture of continuous improvement, knowledge sharing and high performance across the Legal function. Experience * Qualified solicitor with extensive years of PQE and holds a current practicing certificate. * Experience in Project Finance/Infrastructure within Energy Transition is essential (including drafting and reviewing underlying project documentation) and one or more of the following areas: cash flow lending, acquisition financing, structured finance and leveraged lending. * Ability to demonstrate a good understanding of facility documentation. * Ability to demonstrate exposure to a broad range of deal structures. * Strong private practice training. * Experience of equity transactions within the energy sector would be desirable. Personal Qualities: * Pragmatism and commerciality. * Positive, proactive, smart, engaging and sociable. * Where accuracy is key, you take responsibility for your work and strive to get it right first time; people can rely on your work. * Comfortable working to internal and external deadlines. * Seek to develop a genuine rapport and long term working relationships. * Knowledgeable and can be relied on for technical aspects of the role. * Able to demonstrate and display technical knowledge to gain credibility for Triple Point with external parties. * Deliver high quality output that enhances Triple Point’s reputation for expertise. * Has a good awareness of what is going on in our sectors and are able to come with ideas about what we might do. IT Packages/Systems Used * Good command of Microsoft Outlook. * MS Office packages: Word and Excel. * Docusign. * Willingness to embrace and experiment with new technologies and AI. Why Join us? * You’ll join a talented, collaborative team in a connected environment where ideas and initiative are valued. * Be part of a growing and innovative team. * We offer a competitive salary, a comprehensive benefits package, and genuine opportunities for growth and progression. * Opportunities for professional development and career progression. At Triple Point, high performance means living our values every day: * Stay Curious. * Be Generous. * Take Thoughtful Action. * Pull Together. * Own It. In line with our values Stay Curious and Take Thoughtful Action every employee has access to AI tools to enhance their work. We see technology as a co-pilot, helping us improve efficiency and insight while keeping decisions grounded in thoughtful human judgement. Triple Point offers a wealth of benefits including a contributory pension, hybrid/flexible working and ongoing learning and development opportunities. Check out our comprehensive list of benefits HERE. Apply today for further information! Triple Point is dedicated to providing fair and equal opportunities for all individuals, including both current and potential employees. Discrimination of any kind based on factors such as age, disability, gender, sexual orientation, pregnancy, race, ethnicity, religion, gender identity, or marital status is not tolerated by the company. Our aim is to create a welcoming and diverse work environment where people from all walks of life feel valued and supported. We actively encourage individuals from various backgrounds to apply for job vacancies and become part of our team. STRICTLY NO AGENCIES