Job Search and Career Advice Platform

Enable job alerts via email!

Cyber Assurance Specialist

Civica

Dudley

On-site

GBP 40,000 - 60,000

Full time

Today
Be an early applicant

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A leading software provider in the UK seeks a Cyber Assurance Specialist to ensure robust cyber governance and compliance. Key responsibilities include managing documentation, supporting audits, and developing training materials. Ideal candidates will have strong knowledge of ISO 27001 and experience in stakeholder engagement. This role supports crucial organizational growth and digital transformation efforts.

Qualifications

  • Experience in maintaining cyber security documentation and policies.
  • Knowledge of ISO 27001 and other compliance frameworks.
  • Ability to engage and educate stakeholders on security practices.

Responsibilities

  • Curate and maintain documentation related to cyber governance.
  • Assist in the development of security policies and audit readiness.
  • Support incident response and maintain documentation for reviews.

Skills

Cybersecurity Policy Development
Audit Coordination
Risk Management
Stakeholder Engagement
Training Development

Tools

Microsoft Purview
OneTrust
Job description

We’re Civica, and we create software that helps deliver critical services for citizens all around the world. From local government, to education, health, and care, over 5,000 public bodies across the globe use our software to provide essential services to over 100 million citizens.

Our aspiration is to be a GovTech champion everywhere we work, supporting the needs of citizens and those who serve them every day. Building on 21 years of continuous growth and success, we're at a pivotal point in our journey to realise that aspiration.

Why you will love this opportunity as Cyber Assurance Specialist at Civica

The Cyber Assurance Specialist plays a vital role in safeguarding the organisation’s reputation and customer trust by ensuring robust cyber governance, compliance, and the continuous improvement of security practices. This position enables secure business growth and supports the organisation’s digital transformation.

The Cyber Assurance Specialist supports the organisation’s cyber assurance and governance activities by maintaining key documentation, assisting with audits and due diligence, and contributing to awareness and training initiatives. The role is pivotal in ensuring the organisation’s security posture remains transparent, compliant, and continuously improving.

What you will do to be successful in this role
Key Responsibilities
Documentation & Knowledge Management
  • Curate and maintain internal knowledge bases and external Trust Centre articles.
  • Ensure content is accurate, accessible, and aligned with current cyber policies and standards.
  • Collaborate with subject matter experts to update documentation in response to regulatory or operational changes.
Policy, Risk & Governance Support
  • Assist in the development, review, and maintenance of cyber security policies and procedures.
  • Support the Head of Cyber Governance in maintaining and improving ISO 27001 controls and other compliance frameworks (NIST, CIS).
  • Support risk identification, assessment, and reporting, collaborating with risk owners and business units.
Audit & Assurance Activities
  • Prepare and coordinate evidence for internal and external audits.
  • Conduct assurance activities against ISO 27001 and other relevant standards.
  • Maintain audit trails and track remediation of findings.
  • Proactively suggest improvements to controls and processes based on lessons learnt.
Customer & Supply Chain Due Diligence
  • Respond to customer security questionnaires and due diligence requests.
  • Support supply chain assurance activities, including supplier risk assessments and documentation.
  • Maintain a repository of standard responses and evidence for reuse.
Cyber Awareness & Training
  • Assist in the development and rollout of security training materials for staff.
  • Support the planning and execution of phishing simulations and cyber awareness campaigns.
  • Track engagement and effectiveness of awareness initiatives through metrics and reporting.
Incident Response Support
  • Assist with incident response documentation and post-incident reviews.
SharePoint & Information Management
  • Develop and maintain Cyber SharePoint sites to ensure content is current and well‑organised.
  • Ensure documentation is version‑controlled and accessible to relevant stakeholders.
Tooling & Automation
  • Support the adoption and optimisation of GRC / assurance tooling (Microsoft Purview, OneTrust).
Continuous Improvement
  • Proactively identify and recommend improvements to controls, processes, and training.
Stakeholder Engagement
  • Build strong relationships with stakeholders across the business, IT, and external partners to ensure alignment and effective communication.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.