Cybersecurity Compliance Advisor

Lenovo

Farnborough

On-site

GBP 70,000 - 110,000

Full time

5 hours ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Employee Assistance Program
Diversity focus
Training platform

Job summary

Lenovo is seeking a Cyber Security Compliance Manager within the Solutions & Services Group to drive alignment with NIS2 and the Cyber Resilience Act across Lenovo business units. You will work with product teams globally to embed resilience, risk management, and secure-by-design practices.

You will lead compliance programs, manage audits, and develop documentation while coordinating with executives, engineering, and procurement to ensure regulatory readiness and robust governance.

Qualifications

  • 7+ years of experience in cybersecurity compliance, governance, risk & compliance (GRC), or related regulatory function.
  • Strong knowledge of EU cybersecurity regulations including NIS2 and CRA, or GDPR/DORA/ISO 27001 experience.
  • Experience developing or maturing compliance programs and governance.

Responsibilities

  • Lead NIS2 & CRA compliance readiness with gap assessments and remediation plans.
  • Embed CRA requirements into the product lifecycle with secure-by-design principles.
  • Drive implementation of cybersecurity controls meeting governance and supply chain security requirements.
  • Manage compliance programs end-to-end with timelines, milestones, and risk tracking.
  • Serve as liaison across SSG with security, legal, engineering, product, procurement and leadership; drive alignment.
  • Develop and maintain compliance documentation including policies, control matrices, and audit trails.
  • Support audits, assessments, and regulatory engagements; monitor evolving regulations.

Skills

GRC / cybersecurity compliance
Regulatory engagement
Project management
Excellent communication

Education

Bachelor's degree in Cybersecurity / IT / CS or equivalent

Job description

* United Kingdom - Hampshire - Farnborough

Why Work at Lenovo

We are Lenovo. We do what we say. We own what we do. We WOW our customers.

Lenovo is a US$83 billion revenue global technology powerhouse, ranked #153 in the Fortune Global 500, and serving millions of customers every day in 180 markets. Focused on a bold vision to deliver Smarter Technology for All, Lenovo has built on its success as the world’s largest PC company with a full-stack portfolio of AI-enabled, AI-ready, and AI-optimized devices (PCs, workstations, smartphones, tablets), infrastructure (server, storage, edge, high performance computing and software defined infrastructure), software, solutions, and services. Lenovo’s continued investment in world-changing innovation is building a more equitable, trustworthy, and smarter future for everyone, everywhere. Lenovo is listed on the Hong Kong stock exchange under Lenovo Group Limited (HKSE: 992) (ADR: LNVGY).

This transformation together with Lenovo’s world-changing innovation is building a more inclusive, trustworthy, and smarter future for everyone, everywhere. To find out more visit www.lenovo.com , and read about the latest news via our StoryHub .

Description and Requirements

This position is for a Cyber Security Compliance Manager in the Solutions & Services Group (SSG). This is an exciting role that will give you the opportunity to work with Lenovo Product teams around the world to help Lenovo Business Units align with various regional, national and international security standards and regulations. You will be working alongside some of the best security teams in the industry.You will join a growing team of security professionals to help assess risk , ensure compliance and to design risk remediation and mitigation strategies and tactics.

This role will work hand in hand with business executives, product managers, architects, engineers, devops , and developers to support operationalization o f cybersecurity compliance program to meet regulatory obligations with a primary focus on the EU Network and Information Security Directive 2 (NIS2) and the Cyber Resilience Act (CRA) .

What You Will Do:
  • Lead NIS2 & CRA compliance readiness by conducting gap assessments, identifying risks, and translating findings into clear, prioritized remediation plans.
  • Partner with engineering and product teams to embed Cyber Resilience Act (CRA) requirements into the product lifecycle, including secure-by-design principles, vulnerability management, SBOMs, and incident reporting processes.
  • Drive implementation of cybersecurity and risk management controls, ensuring compliance with regulatory requirements related to governance, accountability, supply chain security, and operational resilience.
  • Manage compliance programs and projects end-to-end, defining timelines, milestones, and deliverables while proactively tracking progress, risks, dependencies, and blockers.
  • Act as the primary liaison across SSG, collaborating with security, legal, engineering, product, procurement, and leadership teams on NIS2 and CRA compliance initiatives.
  • Develop and maintain compliance frameworks and documentation, including policies, procedures, control matrices, evidence repositories, audit trails, and supporting records.
  • Support internal and external audits, assessments, and regulatory engagements, ensuring the organization is prepared for compliance reviews and regulator inquiries.
  • Monitor evolving cybersecurity regulations and industry standards, including ENISA guidance and harmonized standards, while delivering metrics, reporting, and insights that measure program maturity and communicate compliance status to leadership.
What You Will Need:
  • 7+ years of experience in cybersecurity compliance, governance, risk & compliance (GRC), IT/cyber risk management, or a related regulatory compliance function.
  • Strong knowledge of EU cybersecurity regulations, including NIS2 and the Cyber Resilience Act (CRA), or experience with frameworks such as GDPR, DORA, and ISO 27001 with the ability to quickly build expertise in emerging regulations.
  • Proven experience developing, implementing, or maturing compliance programs, helping organizations strengthen governance, controls, and regulatory readiness.
  • Excellent project management skills, with the ability to independently lead multiple initiatives, manage competing priorities, and coordinate complex cross-functional workstreams.
  • Strong stakeholder management and influencing capabilities, comfortable partnering with engineering, product, legal, procurement, security, and executive leadership teams to drive alignment and execution.
  • Exceptional communication skills, with the ability to translate complex technical, cybersecurity, and regulatory requirements into clear, practical guidance for both technical and non-technical audiences.
  • Bachelor’s degree in Cybersecurity, Information Systems, Law, Computer Science, or a related field, or equivalent combination of education and practical experience.
  • Professional certifications such as CISSP, CISM, CISA, CRISC, or similar are preferred, along with cybersecurity experience within a technology company, managed services provider (MSP), or connected-product organization operating under Cyber Resilience Act requirements.
What We Offer:
  • An international team with a high focus on Gender Diversity.
  • Employee Assistance Program, e.g., for psychological, legal & financial consultancy.
  • You are joining a company that prioritizes sustainable solutions like CO2 Offset, Asset Recovery Services, and the Lenovo Certified Refurbished portfolio.
  • Access to training for personal development - Internal E-learning Development Platform Available for Employees
For candidates in Slovakia only: The anticipated initial gross base salary range for this position is 37,800 - 50,400 EUR per year. This range applies to the primary job location Slovakia and is determined using objective, non-discriminatory and gender-neutral criteria, including skills and relevant experience. Final compensation will be based on relevant experience, skills, and business considerations.

We are an Equal Opportunity Employer and do not discriminate against any employee or applicant for employment because of race, color, sex, age, religion, sexual orientation, gender identity, national origin, status as a veteran, and basis of disability or any federal, state, or local protected class.

Additional Locations: * Romania - Bucureşti - Bucharest * Slovakia - Bratislavský - Bratislava * United Kingdom - Hampshire - FarnboroughPAY TRANSPARENCY

If this role is primarily located outside the EU, the base salary range may not be listed in this posting. When the position can also be filled in EU countries, the applicable gross base salary range for the relevant EU location will be communicated to candidates well in advance of the interview process, in line with EU pay transparency obligations. Individuals may also be eligible for variable compensation (such as bonus or commission), and full details on total compensation and benefits for the applicable location will be shared during the recruitment process.

AI PROCESSING NOTICE

We use AI-based tools to support some of our processes (e.g. online interviews recordings and transcripts) in order to achieve better efficiency, accuracy and for our documentation purposes. AI can make mistakes, but we always make sure that the outputs are manually reviewed by a human. You can always opt-out or contact us in case of any question.

If you require an accommodation to complete this application, please contactability@lenovo.com

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Operational Security Manager
Operational Security Manager

Lenovo • Farnborough

On-site
GBP 80,000 - 120,000
EAP
Training platform
Sustainability initiatives
+1
Cyber Resilience Act Compliance Manager
Cyber Resilience Act Compliance Manager

Lenovo • Farnborough

Hybrid
GBP 30,000 - 44,000
Career development
Performance-based rewards
Hybrid working model (3:2)
+6
Sr. Legal Counsel SSG (Europe and META)
Sr. Legal Counsel SSG (Europe and META)

Lenovo • Farnborough

On-site
GBP 120,000 - 160,000
Holiday purchase
Private medical
Income protection
+2
EMEA Transition & PMO Lead
EMEA Transition & PMO Lead

Lenovo • Farnborough

On-site
GBP 70,000 - 110,000
Holiday purchase
Private medical
Income protection
+9
Field Technical Consultant
Field Technical Consultant

Lenovo • Farnborough

On-site
GBP 55,000 - 90,000
Holiday purchase
Private medical
Income protection
+9
Advisory Engineer, AI and Product Security
Advisory Engineer, AI and Product Security

Lenovo • Farnborough

On-site
GBP 120,000 - 170,000
Holiday purchase
Private medical
Income protection
+8
Advisory Engineer, AI Security and Architecture
Advisory Engineer, AI Security and Architecture

Lenovo • Farnborough

On-site
GBP 90,000 - 130,000
Holiday purchase
Private medical
Income protection
+5
Head of Legal – Service Development & Management
Head of Legal – Service Development & Management

Lenovo • Farnborough

Hybrid
GBP 120,000 - 180,000
Opportunities for career advancement
Diverse training programs
Performance-based rewards
+3
Local Account Manager Global Accounts UKI (d/w/m)
Local Account Manager Global Accounts UKI (d/w/m)

Lenovo • Farnborough

On-site
GBP 60,000 - 85,000
Medical Insurance
Pension / Retirement Plan
Employee Referral Bonus
+4
Program Specialist, AI Ethics
Program Specialist, AI Ethics

Lenovo • Farnborough

On-site
GBP 42,000 - 62,000
Private medical coverage options
Attractive pension scheme
Life insurance coverage
+2