Lead Cyber Security Risk Manager

UK Home Office

Croydon

Hybrid

GBP 67,000 - 81,000

Full time

12 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Civil Service Pension
Performance reward scheme
25 days annual leave
8 public holidays + 1 privilege day
Hybrid work arrangement (60% in office

Job summary

UK Home Office is seeking a Lead Cyber Risk Manager to identify, understand and mitigate cyber risks across critical infrastructure and systems. You will advise stakeholders using evidence-based approaches and lead a small team of risk professionals.

The role requires expert risk management skills, governance experience, and the ability to communicate complex security concepts to senior leadership. Hybrid working with 60% office attendance is available.

Qualifications

  • Independently lead risk management activities within a practice area, aligning with governance structures.
  • Develop and assure risk management policy to meet regulatory requirements.
  • Communicate security risk considerations to senior stakeholders and advise on risk decisions.
  • Demonstrate ability to design and implement security controls aligned with organizational needs.

Responsibilities

  • Lead risk management activities and drive independent risk analyses.
  • Develop and maintain risk-management policy and governance.
  • Advise senior stakeholders on risk assessment and remediation strategies.
  • Oversee remedial controls and assurance following security reviews.
  • Mentor and lead a small Civil Service cyber risk team.
  • Present cybersecurity risks to non-technical leadership.

Skills

Risk management
Policy development
Threat assessments
Security governance
Stakeholder communication
Team leadership

Job description

Location: Glasgow | Croydon | Sheffield | Manchester (hybrid with 60% office attendance)

Salary: £66,732 plus skills allowance of up £14,668

In this critical role, you will identify, understand and mitigate cyber-related risks and evaluate the risks to our critical national infrastructure and business critical systems. You will use your expertise to draw on a range of evidence to proactively advise stakeholders, enabling well-informed, risk-based decision making.

You’ll be joining an expert team of cyber professionals, committed to reducing the exposure to cyber-attack of new and existing digital systems. You’ll be aided in your role by a diverse and supportive organisational culture, and a commitment to further your continuous development.

The Lead Cyber Risk Manager supports, plans and develops the implementation and management of organisation-wide processes and procedures for the management, assurance or governance of cyber risk.

They will provide tailored expert support and advice that highlights cyber security risks to a range of stakeholders, projects, business teams and service owners, helping them to remedy identified risks by enabling well-informed and auditable decisions, using published guidance and standards, and drawing on a range of experts as well as personal expertise.

Main Responsibilities
  • Independently and impartially undertaking risk management activities within a given area of practice or expertise, usually within established security and risk management governance structures. You will lead the independent derivation and analysis of security needs and conduct tailored threat assessments, security audits, or other risk management activities, ensuring consistency with regulations and legislation.
  • Developing risk management-related policy and assure the ongoing appropriateness of policy in accordance with regulation and wider organisational and government policies.
  • Communicating effectively with senior stakeholders to ensure they recognise the importance of security considerations and advising senior stakeholders on their approach to risk assessment in the context of their organisational outcomes.
  • Managing risk management processes, reviewing their efficiency and effectiveness, and leading recommendations for continuous improvement. This includes reviewing internal controls following any security breach, providing advice on how to remediate any vulnerabilities discovered, and agreeing and overseeing remedial solutions, controls and safeguards.
  • Assessing reviews and risk assessments and ensuring identified risks are managed in accordance with Home Office risk management policies.
  • This role currently is responsible for leading a small team of Civil Service Cyber Risk Managers.
  • Information or cyber security including threat and risk analysis for complex, high-risk and/or mission critical systems, preferably involving the Home Office, Cabinet Office, NCSC or within industry Security Operations Centres (SOCs) and departments.
  • Proficiency analysing or implementing technical or security policies in a large organisation. Skilled in balancing security requirements with business impact to ensure practicality and effectiveness.
  • Ability to champion cybersecurity risk and ensure ongoing appropriateness or practices.
  • Proven track record in implementing cybersecurity risk, assurance or governance processes and procedures.
  • Proven ability to lead and mentor a diverse team of governance, risk or assurance specialists.
  • Ability to design and implement security controls aligned with organisational requirements, whilst navigating changes and proactively responding to evolving risks.
  • Strong ability to present technical information to non-technical stakeholders and the ability in influencing decision-making processes at senior leadership levels, promoting security priorities.
Why work for us...

Find out more information at: Benefits - Home Office Careers, but some of the primary ones are:

  • A Civil Service Pension with employer contribution rates of at least 28.97%.
  • In-year reward scheme for one-off or sustained exceptional personal or team achievements.
  • 25 days annual leave on appointment, rising with service.
  • 8 days of public holidays, plus 1 additional privilege day.
  • Where business needs allow, some roles may be suitable for a combination of office and home-based working. This is a non-contractual arrangement where all employees will be expected to spend a minimum of 60% of their working time in an office.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Lead Cyber Security Risk Manager
Lead Cyber Security Risk Manager

UK Home Office • Sheffield

Hybrid
GBP 63,000 - 80,000
Civil Service Pension
In-year reward scheme
25 days annual leave
+2
Lead Cyber Security Risk Manager
Lead Cyber Security Risk Manager

UK Home Office • Glasgow

Hybrid
GBP 63,000 - 80,000
Civil Service Pension (employer 28.97%
Annual leave 25 days
Public holidays 8 + 1 day
+2
Cyber Risk Lead: Strategy, Governance & Influence
Cyber Risk Lead: Strategy, Governance & Influence

UK Home Office • Sheffield

Hybrid
GBP 63,000 - 80,000
Civil Service Pension
In-year reward scheme
25 days annual leave
+2
Cyber Risk Manager - Active Security Clearance Required
Cyber Risk Manager - Active Security Clearance Required

Solirius Ltd. • Greater London

On-site
GBP 70,000 - 110,000
Competitive salary
Bonus scheme
Private healthcare insurance
+3
Senior Vulnerability Manager
Senior Vulnerability Manager

UK Home Office • Salford

Hybrid
GBP 49,000 - 58,000
Civil Service Pension with employer 28
In-year reward scheme
25 days annual leave
+2
Senior Vulnerability Manager
Senior Vulnerability Manager

UK Home Office • Sheffield

Hybrid
GBP 34,000 - 58,000
Civil Service Pension
25 days annual leave
Public holidays + 1 privilege day
+1
Cyber Information Assurance Manager
Cyber Information Assurance Manager

Anson McCade • Greater London

Hybrid
GBP 77,000 - 85,000
Hybrid and flexible working
Private medical insurance
25 days annual leave
+2
Cyber Risk Manager - Active Security Clearance Required
Cyber Risk Manager - Active Security Clearance Required

Solirius Reply • Greater London

On-site
GBP 60,000 - 85,000
Competitive Salary
Bonus Scheme
Private Healthcare Insurance
+3
Cyber Security Consultant - Manager
Cyber Security Consultant - Manager

Anson McCade • Greater London

Hybrid
GBP 100,000 - 140,000
30 days annual leave
Private medical insurance
Cyber Security
Cyber Security

Panoramic Associates • City Of London

Hybrid
GBP 50,000 - 67,000