Cyber Security Risk Manager (Principal)

You will support the Chief Security Officer and Security Advisor in delivering the security strategy by being a Subject Matter Expert. Your expertise will help identify, analyze, evaluate, and mitigate risks across various systems and services. Working closely with the business and key stakeholders, you will provide trusted advice and support on all aspects of security—including data, information, assurance, cyber, and third-party suppliers—to safeguard the Department''s assets and manage security risks.This varied and complex role focuses on delivering Personnel, Cyber, Information, and Supply Chain security. You will collaborate with other teams on Physical, Technical, and Operational security, providing subject matter expertise and overseeing security risk identification, delivery, and escalation, influencing decisions within the GPA risk appetite.You will implement a wide range of security risk and assurance activities aligned with Government Standards, Frameworks, and Industry best practices, continuously improving security maturity. Responsibilities include communicating security standards, articulating threats, negotiating security enhancements, and conducting assurance activities across on-premise and cloud environments.Regular security assessments will be conducted to identify vulnerabilities and recommend controls, aiming for continuous improvement. You will ensure security is integrated into the entire lifecycle of systems and services, including supply chain security, and advise on compliance and mitigation measures.Leading the creation of a positive, engaging, and inclusive security culture through education and awareness programs, you will build a network of security partners across government and the broader industry to share best practices and foster collaboration.Key Responsibilities
Incident Management:
Act as the initial escalation point for managing incidents, advising on remediation, and developing security improvement plans.Security Policies:
Implement comprehensive security policies aligned with UK government standards.Security Awareness and Training:
Support programs to educate staff on security best practices and promote a security-first culture.Compliance and Assurance:
Ensure adherence to security regulations and standards, conducting audits and supporting initiatives like Secure by Design.Supply Chain Security:
Collaborate across the business to perform security assurance, advise on tenders, and mitigate risks throughout service lifecycles.Reporting:
Assist in preparing reports on security metrics, incidents, and compliance for governance forums and authorities.Risk Management:
Maintain and assess the security risk register, communicating with asset owners to mitigate vulnerabilities.Security Operations:
Oversee daily security operations, including incident response, threat detection, and security monitoring.We are an equal opportunity employer committed to diversity, including a focus on disability, ethnicity, gender, and LGBTQ+ communities. We encourage applications from all qualified candidates to join our mission-driven team, leading transformative programs and fostering innovation, sustainability, and inclusivity.
#J-18808-Ljbffr
Other jobs of interest...



Perform a fresh search...
-
Create your ideal job search criteria by
completing our quick and simple form and
receive daily job alerts tailored to you!