Execs to Grow Market Share Remote working, Excellent Benefits & Progression About Our Client The client is a specialist provider of internal audit, risk, and assurance services in the United Kingdom. Job Description The IT Audit and CyberAssurance Lead will be responsible for: Leading and delivering high … quality digital and cyberassurance and consultancy services to our existing clients. Developing a strategic vision for the digital and cyber offering, identifying opportunities for growth and innovation. Working closely with universities and key stakeholders to understand their digital and cyber risks, providing insightful and practical … recommendations. Overseeing and expanding the team, ensuring expertise in emerging technologies and cyber threats. Engaging with sector-wide initiatives, contributing to thought leadership, and building the firm's reputation in the field. Supporting business development activities, expanding our client base, and positioning the firm as a leader in digital More ❯
Our client Scottish Power are seeking a Cyber-Risk Analyst for an immediate start for a critical intial 3 month project based in the Glasgow office, which could potentially reach to 6-9 months. Job Purpose Statement The primary purpose of the Cyber Risk and Assurance Analyst … is to support the delivery of Cyber Risk and Assurance services by the SPEN Cyber Governance, Risk and Assurance team. This role offers the opportunity to work and gain further experience within three primary GRA domains across BAU and Change Delivery – Cyber Risk Management, Third … Party Risk Management and Cyber Assurance. Risk activities performed by this role are expected to include conducting or supporting cyber risk assessments on behalf of stakeholders using the Cyber Risk Assessment Methodology across our essential services, IT and OT estates regular reviews and reporting of existing risks More ❯
business objectives as well as industry good practice (including Secure by Design aligned to UK Government principles) and regulatory requirements (including GovAssure and NCSC CyberAssurance Framework). What you'll be doing: Develop and execute GRC strategies that align with business objectives and inform appropriate supporting business … which incorporate Regulatory, Legal and Compliance in relation to applicable security policies, standards and guidelines Assisting with the identification of identified risks and emerging cyber security vulnerabilities and threats. The subsequent analysis to quantify and lead risk mitigation plans Work with Service Management to ensure that partners and suppliers … and verify/evidence appropriate compliance and security KPIs Work closely with 1st, 2nd and 3rd lines of defence on all matters relating to cyber security, information assurance, cyber risk, data privacy including regulatory and compliance considerations Lead the development and enhancement of governance, risk and compliance More ❯
Information Security Technical Assurance Lead Paddington, London Help us to make a world of difference Urenco is a global leader in the production of low carbon energy. We work at the cutting edge of the transition to a sustainable, net zero world. We're looking for an Information Security … Technical Assurance Lead, based at our new Paddington Site. This role sits within the CISO function which aims to continuously develop and enhance its cyber security portfolio, to protect Urenco, its customers and the safety of the public, ensuring the sustainable use of nuclear technology for years to … come. The group CISO team is made up of three areas, namely: Governance, Risk and Compliance Operational Technology (OT) Cyber and CyberAssurance Threat Defence This role is a candidate to join the CyberAssurance Team, reporting to the Head of OT Cyber Security More ❯
Purpose: As a Principal OT consultant in NCC Group's Global OT Consulting and Implementation (C&I) division, your role is pivotal in providing Cyber Security Assurance and Engineering to businesses, aiding them in safeguarding critical systems and information assets. Your responsibilities will include building and maintaining trusted … supporting the development of the C&I capability globally; in some instances, this could also include travel. Summary: NCC Group specializes in offering comprehensive CyberAssurance and engineering services aimed at assisting businesses in fortifying their cybersecurity posture. This encompasses defining security strategies, conducting risk assessments, developing policies … providing security awareness training, and offering on-demand cyber expertise. Our core services range from strategy and governance to incident response planning and 62443 assessments. We also provide bespoke services tailored to the specific needs of organizations, including managed services, security architecture review, SOC, monitoring, DFIR, Penetration Testing, Safety More ❯
robust governance, and enjoying the freedom to design impactful processes across our global operations. As the sole expert in this position, you'll spearhead Cyber projects with plans to build your own team in 2025 The role combines two dynamic elements: Core IT Security: Leverage your deep technical expertise … to maintain the security of our infrastructure, servers, and systems. From leading our Managed Security Service Providers (MSSPs), building a best-in-class Cyber training and awareness programme, and performing security audits on critical systems. Cybersecurity Governance: Implement governance and frameworks to embed security across the business, across IT … Mission As our Cybersecurity Lead, you will: Build and implement a DevSecOps framework to ensure our digital products are secure and meet the highest Cyberassurance standards. Lead the Cybersecurity function, managing people, processes, and tools while ensuring the business is "Secure by Design." Identify and remediate CyberMore ❯
NOT require sponsorship) About the Role: A leading organisation is seeking a highly experienced and strategic Security Culture and Awareness Manager to join its cyber security team. This is a fantastic opportunity to shape and lead the development, governance, and awareness of IT and cyber security policies across … a large and complex organisation. As the Global Cyber Policy and Governance Lead, you will be responsible for aligning cyber controls with business strategy, enhancing policy frameworks, ensuring compliance with international standards and regulations, and providing leadership-level reporting and insight. Key Responsibilities: Lead the design, implementation, and … governance of IT and cyber security policy frameworks. Develop and manage a global policy governance structure that aligns with industry best practices and internal strategy. Ensure cyber policies remain current, effective, and aligned with evolving technologies, threats, and compliance requirements. Promote cyber awareness initiatives across the organisation More ❯
and enhance security across critical infrastructure. You’ll be at the forefront of their information security strategy, ensuring the confidentiality, integrity, and availability of cyber and information security assets. You will lead the security team, manage third-party SOC operations, and be accountable for progressing the CyberAssurance Framework (CAF). The Role Lead and mature the CyberAssurance Framework (CAF) Assess and mitigate risks across networks, systems, and applications Manage security team & third-party SOC operations Implement security controls, policies & awareness programs Monitor threats, lead incident response & drive security culture Report security posture & metrics More ❯
Staines, Middlesex, United Kingdom Hybrid / WFH Options
Foundations Executive Search
Cyber and IT Risk Analyst Location: Hybrid (c. 3-4 times per month in the Staines area) Type: Full-time, Permanent Salary: £62,000 - £79,000 per annum + Benefits Foundations Executive Search is proud to be partnering with one of the UK's most prestigious and recognised brands … to support the appointment of a Cyber and IT Risk Analyst . This is a fantastic opportunity for an analytical, detail-driven cyber risk professional to join a nationally critical organisation undergoing significant digital transformation. You'll be supporting enterprise-wide cyber risk decision-making at scale … helping to shape and mature security practices across a complex operational environment. The Opportunity As a Cyber and IT Risk Analyst, you will play a vital role in supporting the enterprise security team to assess, manage, and remediate cyber and IT risks. Working closely with a wide range More ❯
focused organisation which provides operational excellence whilst identifying new areas of growth as part of our day to day objectives. Job Description for IT & Cyber Policy and Governance Lead Business Area: Information Security Job Title: IT & Cyber Governance and Policy Lead Scope and Coverage: Global Outline Purpose of … Role This role will: Implement and develop and own IT and cyber governance processes and forums in alignment with the IT and Information security operations and risk framework. Maintain and improve the IT and information security policy framework including the suite of policies and standards and associated processes. Help … within a constantly evolving IT and information security threat environment. Impact of Role Implement governance framework to enable enforcement and management of IT and cyber policies across all JD entities. Help drive good security hygiene and the use of appropriate controls into the business culture of JD Sports. Reports More ❯
Bristol, Somerset, United Kingdom Hybrid / WFH Options
Bangura Solutions
Security Assurance Coordinator - Technology, Defence, SC Cleared, Hybrid SC Cleared CyberAssurance Coordinator SME required with proven experience in security assurance and risk management within defence, government, or high-security environments. Suited candidates must have strong knowledge of security frameworks and standards such as RMADS, NIST … risk balance cases. Familiarity with codes of connection (CoCo), Secure by Design, and security impact assessments (SIAs). This career opportunity suit a Security Assurance specialist with a Security/Cyber background and will provide you with broad workload. Responsibilities will include: 1. Documentation & Security SME Advice 2. More ❯
bristol, south west england, United Kingdom Hybrid / WFH Options
Bangura Solutions
SC Security Cleared CyberAssurance Coordinator SME required with proven experience in security assurance and risk management within defence, government, or high-security environments. Suited candidates must have strong knowledge of security frameworks and standards such as RMADS, NIST, DEF STAN, and policies. You will also have … balance cases. Familiarity with codes of connection (CoCo), Secure by Design, and security impact assessments (SIAs). This career opportunity will suit a Security Assurance specialist with a Security/Cyber background and will provide you with broad workload. Responsibilities will include: 1. Documentation & Security SME Advice 2. More ❯
Milton Keynes, Buckinghamshire, South East, United Kingdom Hybrid / WFH Options
FCDO Services
them Setting the standard for success. Assuring trust and safety at every level. Knowing your decisions are valued. It all matters. Create a digital assurance culture that protects data in the national interest As our new Chief Information Security Officer, we appreciate that youll bring fresh eyes to every … the security of our information and technology so that we can all deliver our services in a safe, secure way. You will manage digital assurance across FCDO Services from IT, security and logistics, through to translation services and interior design data and provide expert support to key projects. Whats … data, youll be accountable for the data of our customers. Well look to you to develop our vision and strategy for information security and cyberassurance and take the lead on its implementation. Crucially, youll enable us to be innovative safely and securely. Your broad remit will span More ❯
security standards domain. • Experience of working with external audit and certification organisations • Familiar with the ISO27001 standard • Knowledge of the NIS regulation and NCSC cyberassurance framework (CAF) • Knowledge and understanding of digitalisation in a regulated environment. Experience of scoping and managing competing and complex projects. • Understanding and More ❯
Shiremoor, England, United Kingdom Hybrid / WFH Options
Northern Powergrid
security standards domain. • Experience of working with external audit and certification organisations • Familiar with the ISO27001 standard • Knowledge of the NIS regulation and NCSC cyberassurance framework (CAF) • Knowledge and understanding of digitalisation in a regulated environment. Experience of scoping and managing competing and complex projects. • Understanding and More ❯
shiremoor, north east england, United Kingdom Hybrid / WFH Options
Northern Powergrid
security standards domain. • Experience of working with external audit and certification organisations • Familiar with the ISO27001 standard • Knowledge of the NIS regulation and NCSC cyberassurance framework (CAF) • Knowledge and understanding of digitalisation in a regulated environment. Experience of scoping and managing competing and complex projects. • Understanding and More ❯
Newcastle Upon Tyne, Tyne And Wear, United Kingdom
Proactive.IT Appointments Limited
technical control requirements and specifications, and managing the outcomes to deliver the required objectives. Security Architect - Key Skills: Experienced in Architecture Solid Security/Cyber Security background Previous experience developing architecture blueprints, strategies, and roadmaps Documented experience and a strong working knowledge of methodologies to conduct threat-modelling exercises … Practical knowledge of information security standards Experience working with external audit and certification organizations Familiarity with ISO27001 standard Knowledge of NIS regulation and NCSC cyberassurance framework (CAF) Understanding of digitalisation in a regulated environment Experience scoping and managing complex projects Knowledge of system development life cycle methodologies More ❯
Newcastle Upon Tyne, Tyne and Wear, North East, United Kingdom
Proactive Appointments Limited
technical control requirements and specifications, and managing the outcomes to deliver the required objectives. Security Architect – Key Skills: Experienced in Architecture Solid Security/Cyber Security background Previous experience developing architecture blueprints, strategies, and roadmaps Documented experience and a strong working knowledge of the methodologies to conduct threat-modelling … security standards domain Experience of working with external audit and certification organisations Familiar with the ISO27001 standard Knowledge of the NIS regulation and NCSC cyberassurance framework (CAF) Knowledge and understanding of digitalisation in a regulated environment Experience of scoping and managing competing and complex projects Understanding and More ❯
for a brilliant Vulnerability Analyst to join a constantly growing UK utilities company as they embark on a 5 year long transformation of their Cyber Security team while they help revolutionise the UK energy industry. As a UK Critical National Infrastructure provider, Information Security is an integral part of … triage, assess, and prioritise identified security vulnerabilities, ensuring mitigating controls are identified and implemented where necessary. You will support security assessments and third parties’ cyber exercises that identify security vulnerabilities, while tracking remediation, risks, and exceptions. We are looking for an individual that has: Must have 2 years’ cyber … OT/ICS knowledge about products, architectures and workflows. Experience or knowledge of vulnerability management tools such as Qualys, Nessus, etc. Good understanding of CyberAssurance Framework Experience with working with Regulators and providing compliance updates for OT environment are highly desirable. In turn, we can offer you More ❯
for a brilliant Vulnerability Analyst to join a constantly growing UK utilities company as they embark on a 5 year long transformation of their Cyber Security team while they help revolutionise the UK energy industry. As a UK Critical National Infrastructure provider, Information Security is an integral part of … triage, assess, and prioritise identified security vulnerabilities, ensuring mitigating controls are identified and implemented where necessary. You will support security assessments and third parties’ cyber exercises that identify security vulnerabilities, while tracking remediation, risks, and exceptions. We are looking for an individual that has: Must have 2 years’ cyber … OT/ICS knowledge about products, architectures and workflows. Experience or knowledge of vulnerability management tools such as Qualys, Nessus, etc. Good understanding of CyberAssurance Framework Experience with working with Regulators and providing compliance updates for OT environment are highly desirable. In turn, we can offer you More ❯
City, Edinburgh, United Kingdom Hybrid / WFH Options
TieTalent
you a world of potential The Global Information Security (GIS) team is responsible for driving the development, deployment, monitoring and management of information and cyber security across the Computershare businesses, globally. Along with delivering a comprehensive portfolio of technical security control and monitoring services across all of the global … the Global Information Security team actively supports the business objectives whilst reducing the overall composite risk to Computershare. A role you will love The Cyber Security Engineer role has hands-on responsibilities for the implementation and maintenance of our on prem and cloud-related infrastructure and technologies. This role … deliver in-depth technical security services for our most critical applications and infrastructure, to ensure that they are highly resilient against existing and emerging cyber security threats. Key Accountabilities: Provide technical design, implementation and maintenance of our technical security infrastructure and policies. Develop technical solutions and new security toolsets More ❯
Project Security functions. Core activities include: Completion of documentation necessary to maintain Facilities Security Certificate (FSC - FSC policy and guidance ) and Industrial Personal Security Assurance (IPSA) Development of company Standard Operating Procedures (SOPs) to ensure compliance to HMG and corporate security standards to cover all the below areas Management … Management of small explosives store Checking in & out processes Muster of material Licence Application Support for Project Security activities Organisation of Security Aspects Letters Cyberassurance questionnaire Staff approval, briefing & access Space licences (CAA) Security advice to project teams and manufacturers Management of Secure Areas, ensuring they are More ❯
Senior Cyber Security Engineer – Aberdeen or London Are you a highly motivated and skilled Senior Cyber Security Engineer looking for your next challenge? Join a dynamic team where you'll play a key role in safeguarding critical information assets. As a Senior Cyber Security Engineer , you'll … be responsible for identifying, evaluating, and reporting cybersecurity risks to ensure robust cyber assurance. Working alongside the Operational Security team, you'll carry out second-line assurance activities to uphold the confidentiality, integrity, availability, safety, privacy, and recovery of crucial information in line with regulations. You’ll also … collaborate with internal teams and third-party vendors to assess and manage third-party cyber risks effectively. This hybrid role , based in Aberdeen or London , follows a 3/2 working pattern, with at least three days onsite each week. What you’ll do Work with the Project Team More ❯
Senior Cyber Security Engineer – Aberdeen or London Are you a highly motivated and skilled Senior Cyber Security Engineer looking for your next challenge? Join a dynamic team where you'll play a key role in safeguarding critical information assets. As a Senior Cyber Security Engineer , you'll … be responsible for identifying, evaluating, and reporting cybersecurity risks to ensure robust cyber assurance. Working alongside the Operational Security team, you'll carry out second-line assurance activities to uphold the confidentiality, integrity, availability, safety, privacy, and recovery of crucial information in line with regulations. You’ll also … collaborate with internal teams and third-party vendors to assess and manage third-party cyber risks effectively. This hybrid role , based in Aberdeen or London , follows a 3/2 working pattern, with at least three days onsite each week. What you’ll do Work with the Project Team More ❯
DP pre-screening. Work with assigned architect to ensure security requirements are finalized in design (High Level Design), review with Enterprise Architecture, Solutions Architecture, Cyber Security and Cyber Assurance. Work with Operational Resilience team and ensure compliance with standards. Please send your CV to cmiller@strategicstaff.com for immediate More ❯