Cyber Security Specialist

Aviva

City Of London

On-site

GBP 74,000 - 101,000

Full time

3 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Flexible working
Hybrid/Smart working

Job summary

Aviva is seeking a Security Specialist on a 6-month inside IR35 contract to provide expert cyber security governance, risk management, and project delivery support. You will guide stakeholders, review designs, and help embed security across programmes.

You will work with internal teams and external partners to ensure secure outcomes, produce risk dashboards, and deliver security awareness materials. Adaptability and clear communication are essential.

Qualifications

  • Experience in cyber security, information security, or risk management in complex enterprise environments.
  • Strong understanding of governance, assurance, and risk management frameworks.
  • Ability to review designs from a security perspective and identify vulnerabilities.
  • Experience creating security reports, metrics, and awareness materials.
  • Excellent written and verbal communication with senior stakeholders.

Responsibilities

  • Support security risk management decisions across projects by identifying cyber risks and suggesting controls.
  • Review technical designs to identify security gaps and vulnerabilities.
  • Provide guidance on Aviva security processes, including testing and assurance activities.
  • Deliver governance framework consultancy, including Security Fundamentals and TPISA processes.
  • Embed security requirements across project lifecycles from inception to delivery.
  • Produce security risk dashboards and remediation metrics for leadership.
  • Create security awareness and training materials to improve security culture.
  • Engage with internal teams, suppliers, and partners to promote security practices.
  • Document findings with remediation plans or risk acceptances.
  • Articulate cyber risks and business impacts clearly to stakeholders.

Skills

Cyber governance
Risk management
Security risk assessment
Stakeholder engagement
Security controls
Penetration testing
Threat modelling
Security standards
Reporting

Job description

Job Title: Security Specialist
Duration 6 Months
Inside IR35

This is a contract opportunity for someone who is an experienced cyber security professional with a strong understanding of security governance, risk management, and project delivery. This role would suit someone who can quickly integrate into a complex organisation, provide expert security guidance to stakeholders, and proactively identify and manage cyber security risks across projects and business initiatives.

You’ll be confident working independently, engaging with technical and non-technical stakeholders, and influencing security-related decisions to ensure risks are appropriately managed and mitigated.

Key Responsibilities
  • Support security risk management decisions across projects, programmes, and business change initiatives by identifying potential cyber security risks and recommending appropriate controls.
  • Review and assess technical designs to identify security vulnerabilities, weaknesses, and compliance gaps.
  • Provide expert guidance on Aviva security processes, including penetration testing, business impact assessments, and security assurance activities.
  • Deliver consultancy and advice on security governance frameworks, including Security Fundamentals, TPISA processes, and related security standards.
  • Provide cyber security input throughout the project lifecycle to ensure security requirements are embedded from inception through delivery.
  • Produce management information reports, dashboards, and metrics that provide visibility of security risks and remediation activities.
  • Create and deliver security awareness and training materials to improve security culture and promote best practices.
  • Engage with internal teams, third-party suppliers, and business partners to encourage and maintain strong security practices.
  • Ensure security findings are accurately documented, tracked, and managed, with appropriate remediation plans or risk acceptances in place.
  • Develop concise and effective materials that clearly articulate cyber security risks, options, recommendations, and business impacts for stakeholders and leadership teams.
Skills and Experience
  • Demonstrable experience in cyber security, information security, or security risk management roles within complex enterprise environments.
  • Strong understanding of security governance, security assurance, and risk management frameworks.
  • Experience reviewing technical solutions, architectures, and designs from a security perspective.
  • Knowledge of penetration testing processes, vulnerability management, and security assessment methodologies.
  • Experience supporting projects and change initiatives by providing pragmatic security advice and risk-based recommendations.
  • Strong stakeholder management skills with the ability to communicate technical security concepts to both technical and non-technical audiences.
  • Experience creating management reports, security metrics, presentations, and awareness materials.
  • Proven ability to manage multiple priorities and deliver outcomes in a fast-paced environment.
  • Experience working with third-party suppliers and managing security considerations within external partnerships.
  • Excellent written and verbal communication skills, including the ability to present findings, recommendations, and risk assessments to senior stakeholders.

We’re inclusive and welcome everyone. We want applications from all backgrounds and experiences. Excited but not sure you tick every box? Even if you don't, we would still encourage you to apply. We also consider all forms of flexible working, including part-time and job shares.

We flex locations, hours and working patterns to suit our customers, business, and you. Most of our people are smart working, spending at least 50% of their time in our offices every week, combining the benefits of flexibility with time together with colleagues.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Security Specialist
Cyber Security Specialist

Aviva • Slough

On-site
GBP 65,000 - 90,000
Cyber Security Specialist
Cyber Security Specialist

Aviva • Greater London

Hybrid
GBP 70,000 - 100,000
Cyber Security Risk & Governance Specialist
Cyber Security Risk & Governance Specialist

Aviva • City Of London

Hybrid
GBP 74,000 - 101,000
Flexible working
Hybrid/Smart working
Cyber Security Specialist – Vulnerability Management
Cyber Security Specialist – Vulnerability Management

Aviva • Bristol

On-site
GBP 39,000 - 55,000
Generous pension scheme
Private Medical Benefit
Share scheme
+1
Contract Cyber Security Risk & Governance Advisor
Contract Cyber Security Risk & Governance Advisor

Aviva • Greater London

Hybrid
GBP 70,000 - 100,000
Cyber Security Specialist
Cyber Security Specialist

Adecco Portugal • Manchester

Hybrid
GBP 150,000 - 162,000
Cyber Security Engineering Manager
Cyber Security Engineering Manager

Aviva plc • United Kingdom

Remote
GBP 90,000 - 110,000
Salary London 100K
Bonus 12%
Pension 14%
+4
Cybersecurity Test Governance Manager
Cybersecurity Test Governance Manager

Aviva • United Kingdom

Hybrid
GBP 60,000
Bonus opportunity of 10%
Generous pension scheme
29 days holiday plus bank holidays
+3
Cyber Security Engineering Manager
Cyber Security Engineering Manager

Aviva • Greater London

On-site
GBP 90,000 - 100,000
Bonus scheme 12%
Pension up to 14%
29 days holiday
+3
Cyber Security Consulting Lead
Cyber Security Consulting Lead

DiverseJobsMatter • Greater London

Hybrid
GBP 90,000 - 140,000
30 days holiday + buy 2
Pension 10%
Hybrid working