Cyber Assurance Lead

Rullion

Greater London

Hybrid

GBP 120,000 - 157,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Rullion seeks a Cyber Assurance Lead on a contract basis in London. The role oversees cyber security controls from risk assessment to operation and maintenance, ensuring assurance across the system lifecycle and reporting findings to stakeholders.

You will drive audits, risk assessments and compliance reviews, aligning with regulatory requirements and governance. Hybrid working with on-site presence is required.

Qualifications

  • Formal methods and standards for security governance.
  • Experience implementing cyber risk management plans.
  • Leading cyber assurance audits and implementing mitigating actions.
  • Azure cloud security experience.
  • Knowledge of data protection and privacy requirements.
  • Understanding regulatory environments.

Responsibilities

  • Verify cyber security controls per risk management plan and assess threats.
  • Produce detailed cyber security audit plans.
  • Assure security controls are implemented, operated and maintained.
  • Write and present audit findings to technical and non-technical audiences.
  • Assess risk assessments against business goals.
  • Review compliance with legal/regulatory requirements.
  • Provide expert audit, assurance and risk advice.
  • Use auditing tools for efficient assessments.
  • Convince stakeholders of audit importance.

Skills

COBIT 5 / ISO27001
Data protection compliance
Azure identity management
Windows security controls
Security hardening
Vulnerability management
Cyber security risk governance
Privacy and online rights
Adversarial behaviour awareness

Education

CCISP / CCISM
CEH
Lead Security Auditor

Job description

Role: Cyber Assurance Lead
Position: Contract
Location: Hybrid/ London
Days on Site: Minimum 1
Duration: Approx until 31 st March 2027

Pay: Up to 750£ per day Umbrella

Job Purpose / Overview

Cyber assurance is an umbrella term for several processes aimed at ensuring individual system components can adequately protect themselves from attacks. Doing so requires not just a one-time effort but spans the complete system lifecycle in a changing environment as security posture may evolve over time adapting to emerging threats or changing systems utilisation. The Cyber Assurance Lead role holder is responsible to ensure that assurance is carried out professionally fulfils its role as last line of defence. They will oversee cyber security controls implementation, from definition in line with risks assessments to operation and maintenance. The Cyber Assurance Lead post holder will conduct assessments and audits, sharing findings and mitigations actions with the relevant stakeholders and teams.

The Digital & IT directorate sits within the PMO Unit which in turn sits within the overall delivery department. Digital & IT is accountable for providing Enterprise IT infrastructure and application to the business and to a subset of Tier 1 contract partners.

Framework & Boundaries

The role holder is given Cyber Assurance services ownership by the Head of IT Operations / IT Operations Manager.

The boundaries of the role are typically defined by the SZC Digital & IT's governance structure including policies and procedures related to data management, technology procurement, and project management. The Cyber Assurance Lead post holder operates within these boundaries to ensure that their function aligns with regulatory requirements and industry standards.

Principal Accountabilities
  • Verifying that the specified cyber security controls have been implemented in accordance with the risk management plan, with assessments of threats and vulnerabilities.
  • Produce detailed plans for cyber security audits.
  • Assure the implementation, operation and maintenance of security controls.
  • Write formal reports, and sometimes deliver oral briefings, on the findings of audits and compliance reviews. Results are presented clearly so that both technical staff and general management understand the key points. Present findings to colleagues and managers, in both cyber security and general roles.
  • Assess the correctness of cyber security risk assessments and risk management plans, taking account of the organisation's business goals.
  • Review compliance with legal and regulatory requirements
  • Provide expert advice on audit, assurance and risk management.
  • Use specific auditing tools to conduct efficient assessments.
  • Convince stakeholders of the importance of audit, assurance and security.
Knowledge & Skills
  • Formal method or standards, such as COBIT 5 or ISO27001 and associated best practices.
  • Legal and regulatory standards on data protection and privacy.
  • Knowledge across a range of Security technologies: Azure identify management and networking, Windows security controls and firewall technologies.
  • Security Hardening and Testing.
  • Vulnerability Management.
  • Cyber Security Risk Management and Governance in line with Law and Regulations (incl. SNI and export control).
  • Knowledge on Privacy and Online Rights.
  • Familiar with Adversarial Behaviours.
Qualifications & Experience
  • Track record of conducting Cyber Security Risk Assessments within a regulated environment, preferably the nuclear industry.
  • Experience in Cyber Security Risk Management Plan implementation management.
  • Previous experience of leading Cyber Assurance audits and overseeing the mitigation actions and controls implementation.
  • Cyber Security Experience within an Azure Cloud Computing work environment
  • CCISP / CCISM (or similar).
  • Lead Security Auditor.
  • Certified Ethical Hacker (CEH).

We celebrate and support diversity and are committed to ensuring equal opportunities for both employees and applicants.

Rullion celebrates and supports diversity and is committed to ensuring equal opportunities for both employees and applicants.

Related Jobs
  • Field Engineer
    Bridgwater, Somerset
    £350 - £475 per day + PAYE/Umbrella
  • Cyber Project Manager
    City of London, London
    £650 - £800 per day
  • Asset Engineer
    City of London, London
    £350 - £351 per hour
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Assurance Lead
Cyber Assurance Lead

Morson Group • Greater London

On-site
GBP 83,000 - 138,000
Cyber Assurance Lead
Cyber Assurance Lead

Reed • Birmingham

Remote
GBP 90,000 - 120,000
Cyber Delivery Assurance Lead
Cyber Delivery Assurance Lead

Cyber UK • United Kingdom

On-site
GBP 95,755 - 125,644
Cyber Assurance Consultant
Cyber Assurance Consultant

Cyber UK • Milton Keynes

On-site
GBP 45,000 - 65,000
Cyber Assurance Lead — Hybrid London (Audit & Risk)
Cyber Assurance Lead — Hybrid London (Audit & Risk)

Rullion • Greater London

Hybrid
GBP 120,000 - 157,000
Cyber Security Consulting Lead
Cyber Security Consulting Lead

DiverseJobsMatter • Greater London

Hybrid
GBP 90,000 - 140,000
30 days holiday + buy 2
Pension 10%
Hybrid working
Cyber Risk & Delivery Assurance Lead
Cyber Risk & Delivery Assurance Lead

Cyber UK • United Kingdom

Hybrid
GBP 95,755 - 125,644
Principal Cyber Risk & Assurance Advisor - Contract
Principal Cyber Risk & Assurance Advisor - Contract

Involved Solutions LTD. • Greater London

Remote
GBP 118,000 - 159,000
Head of Cyber Resilience and Cloud
Head of Cyber Resilience and Cloud

Cyber UK • Reading

On-site
GBP 138,000 - 157,000
Cyber Security Engineer - Lead
Cyber Security Engineer - Lead

Morson Talent • Greater London

On-site
GBP 60,000 - 90,000