
Enable job alerts via email!
Generate a tailored resume in minutes
Land an interview and earn more. Learn more
A leading cyber security organization in the United Kingdom is seeking a Strategy & Policy Team Lead to support the Deputy CISO. This role involves overseeing strategic initiatives, refining governance processes, and enhancing communication across the organization. The ideal candidate will drive the development of security awareness and be a key liaison in aligning cyber risk management. Candidates must have experience in implementing cyber security policies and engaging various stakeholders.
Profile Title: Strategy & Policy Team Lead
Reports to: Deputy CISO
Job Family: TBC
Capability: TBC
Function/Division: Cyber Security>
Grade:
The Strategy & Policy Team Lead plays a key role in supporting the Deputy CISO by overseeing strategic cyber security initiatives, refining governance processes, fostering cross-functional collaboration, and strengthening communication across the organisation. This role also drives the development of security awareness, education, and culture throughout the business.
Acting as a trusted advisor and liaison, the Team Lead helps align cyber risk management, compliance efforts, and leadership engagement. They contribute to shaping the broader cyber security strategy and enhancing CS&IA’s long-term capability and resource planning. Additionally, they promote risk awareness and translate strategic security objectives into actionable insights for senior leadership.
This is a newly established role within the organisation, created to lead the development and implementation of cyber security policies, standards, and governance frameworks. The role plays a critical part in shaping the future‑state (“to‑be”) model of the cyber security function, helping to define its structure, capabilities, and strategic direction.
A key challenge lies in reviewing existing policies and standards, identifying gaps, and establishing a coherent and forward‑looking framework that aligns with regulatory expectations and business needs. This includes building a strong reference model and ensuring consistency across IT and OT environments.
The role requires a deep understanding of cyber security across the organisation, particularly within ICT & Digital / ISO, to ensure CS&IA is effectively integrated and resourced to support delivery. It also involves working closely with stakeholders to identify policy gaps, drive improvements, and build the capability needed to mature the function.
Operating in a complex and evolving threat landscape, the role must balance strategic oversight with hands‑on delivery, ensuring that cyber risk is well understood, communicated, and managed across the enterprise.
For information about how Sellafield Ltd manage personal information, please visit https://www.gov.uk/government/publications/sellafield-ltd-privacy-statement
Sellafield Ltd, Registered in England number 1002607