Cyber Assurance Lead

  • City of London, London
  • £500 - £750 per day + PAYE/ Umbrella DOE

Share

Role: Cyber Assurance Lead

Position: Contract

Location: Hybrid/ London

Days on Site: Minimum 1

Duration: Approx until 31st March 2027

Pay: Up to 750£ per day Umbrella

Job Purpose / Overview

Cyber assurance is an umbrella term for several processes aimed at ensuring individual system components can adequately protect themselves from attacks. Doing so requires not just a one-time effort but spans the complete system lifecycle in a changing environment as security posture may evolve over time adapting to emerging threats or changing systems utilisation. The Cyber Assurance Lead role holder is responsible to ensure that assurance is carried out professionally fulfils its role as last line of defence. They will oversee cyber security controls implementation, from definition in line with risks assessments to operation and maintenance. The Cyber Assurance Lead post holder will conduct assessments and audits, sharing findings and mitigations actions with the relevant stakeholders and teams.

The Digital & IT directorate sits within the PMO Unit which in turn sits within the overall delivery department. Digital & IT is accountable for providing Enterprise IT infrastructure and application to the business and to a subset of Tier 1 contract partners.

Framework & Boundaries

The role holder is given Cyber Assurance services ownership by the Head of IT Operations / IT Operations Manager.

The boundaries of the role are typically defined by the SZC Digital & IT's governance structure including policies and procedures related to data management, technology procurement, and project management. The Cyber Assurance Lead post holder operates within these boundaries to ensure that their function aligns with regulatory requirements and industry standards.

Principal Accountabilities

  • Verifying that the specified cyber security controls have been implemented in accordance with the risk management plan, with assessments of threats and vulnerabilities.
  • Produce detailed plans for cyber security audits.
  • Assure the implementation, operation and maintenance of security controls.
  • Write formal reports, and sometimes deliver oral briefings, on the findings of audits and compliance reviews. Results are presented clearly so that both technical staff and general management understand the key points. Present findings to colleagues and managers, in both cyber security and general roles.
  • Assess the correctness of cyber security risk assessments and risk management plans, taking account of the organisation's business goals.
  • Review compliance with legal and regulatory requirements
  • Provide expert advice on audit, assurance and risk management.
  • Use specific auditing tools to conduct efficient assessments.
  • Convince stakeholders of the importance of audit, assurance and security.

Knowledge & Skills

  • Formal method or standards, such as COBIT 5 or ISO27001 and associated best practices.
  • Legal and regulatory standards on data protection and privacy.
  • Knowledge across a range of Security technologies: Azure identify management and networking, Windows security controls and firewall technologies.
  • Security Hardening and Testing.
  • Vulnerability Management.
  • Cyber Security Risk Management and Governance in line with Law and Regulations (incl. SNI and export control).
  • Knowledge on Privacy and Online Rights.
  • Familiar with Adversarial Behaviours.

Qualifications & Experience

  • Track record of conducting Cyber Security Risk Assessments within a regulated environment, preferably the nuclear industry.
  • Experience in Cyber Security Risk Management Plan implementation management.
  • Previous experience of leading Cyber Assurance audits and overseeing the mitigation actions and controls implementation.
  • Cyber Security Experience within an Azure Cloud Computing work environment
  • CCISP / CCISM (or similar).
  • Lead Security Auditor.
  • Certified Ethical Hacker (CEH).

Application Information:

If this sounds of interest, please APPLY NOW with your CV and a cover letter highlighting your suitability for this exciting role.

Good Luck!

This vacancy is being advertised by Rullion Ltd acting as an employment business.

Since 1978, Rullion has been securing exceptional candidates for a range of clients; from large well-known brands to SMEs and start-ups. As a family-owned business, Rullion's approach is credible and honest, focused on building long-lasting relationships with both clients and candidates.

Rullion is a forward-thinking recruitment company that specialises in providing a wide range of talent consultancy services to a diverse client base, from small start-ups to large household names.

We celebrate and support diversity and are committed to ensuring equal opportunities for both employees and applicants.

Thanks

Rullion

Rullion celebrates and supports diversity and is committed to ensuring equal opportunities for both employees and applicants.

Apply today
Don’t see the right job for you?
No stress. We love to talk to people with great talent, whether we have an open
vacancy that matches your skill set or not. We are here to unlock your potential.