Cyber Risk Manager

2 weeks ago


Gloucester GL AE United Kingdom EDF Energy Full time

Gloucester Business Park, Gloucester or Atlantic Quay, Glasgow. Hybrid role, minimum of 3 days per week in an office. Flexible working arrangements to be discussed.

Are you experienced in identifying and assessing potential cyber risks within an organisation's infrastructure and operations? Are you familiar with current cybersecurity frameworks and best practices for mitigating cyber threats? Are you comfortable leading cross-functional teams in developing and implementing comprehensive cyber risk management strategies? Are you comfortable managing a range of stakeholders from board members to technical experts?

If so, we have an exciting opportunity for you to join us as our next Cyber Risk Manager at EDF

The Opportunity

We're looking for you to join our dynamic team as our next Cyber Risk Manager and take charge of developing, coordinating, and implementing risk management activities across our Nuclear licensees. You'll play a vital role in ensuring stakeholders, including executives and SIROs, have a clear and consistent understanding of cyber security risks. From maintaining the cyber risk register to coordinating risk mitigation efforts, you'll be at the forefront of safeguarding our organisation against cyber threats.

You'll also be responsible for providing accurate cyber reporting and metrics, driving essential discussions in risk management forums, and supporting the implementation of our Nuclear Cyber Security Strategy and the EDF Cyber target operating model.

Pay, benefits and culture

Alongside a competitive salary starting from £80,000 depending on experience, we're dedicated to offering flexible benefits that support our people across all aspects of their lives.

We offer a market-leading company pension scheme, paid holidays, and a range of flexible benefits, such as: a company incentive bonus plan, cycle to work scheme, discounts, and employee pricing.


At EDF, everyone's welcome. We strive to create an inclusive and diverse environment where everyone has a voice and where you feel confident being yourself. We're committed to equality, diversity, and inclusion. We'd like our future workforce to have an equal gender balance, represent a broad mix of people from minority ethnic backgrounds, LGBTQ+, those with a disability and supporting social mobility.

We're a disability confident employer and we'll do all we can to help with your application, adjusting as you need. We'll value the difference you bring and offer opportunities for you to thrive and succeed.

What you'll be doing

We're looking for you to play a pivotal role in safeguarding our operations against cyber threats. As a Cyber Risk Manager, you'll support and enable senior executive stakeholders across our nuclear licensees to gain a comprehensive understanding of cyber risks to our information, IT, and plant systems-whether regulated or non-regulated. Your responsibilities will include:

  • Tracking and reporting on risk management activities and decisions across our vast nuclear estate, ensuring seamless coordination of cyber security risk management reporting and associated metrics.
  • Providing management and oversight of risk licensee management policies, processes, and procedures to maintain a robust risk management framework.
  • Convening and chairing the Nuclear Cyber Security Risk Forums, where you'll establish a common working-level view of cyber risk positions consistent with our Nuclear Cyber Security Strategy and the EDF cyber target operating model.
  • Promoting risk management to enhance licensee understanding of their exposure and inform investment decisions through cyber security forums.
  • Serving as the secretary, supporting the heads of Nuclear Security and Cyber Security & Information Assurance, and chairing relevant cyber security communities of practice to bolster the work of the Cyber Risk Forums.
  • Supporting the running and attendance of SIRO's Oversight Boards, ensuring that licensee SIROs grasp their respective risk positions and can make informed decisions regarding risk treatment.
  • Assisting in the analysis and presentation of cyber risks across our nuclear licensees, collaborating with key stakeholders such as the Head of CS&IA, licensee BISOs, and the EDF UK Office of the CISO.
  • Managing external contractors and suppliers to ensure the successful delivery of our key accountabilities.

Who you are

Along with being able to achieve our Security Clearance (SC) checks, to be suitable for this role, we're looking for you to:

  • A solid understanding of national and international standards and information security frameworks like ISO27000 and HMG Security Policy framework. Get ready to dive deep into the intricate world of cyber security regulations and best practices.
  • Expertise in cyber security risk management frameworks and methodologies such as ISO27005, NIST CSF, and IRAM2. Your strategic approach to risk management will be critical in ensuring our systems remain secure and resilient.
  • Practical experience in tackling complex cyber security threats, vulnerabilities, and risks. You'll be on the front lines, safeguarding our digital assets against the ever-evolving landscape of cyber threats.
  • A knack for navigating the digital realm with ease. From mastering the latest software tools to staying abreast of emerging technologies, your computer literacy will be your greatest asset.
  • Strong communication and interpersonal skills that go beyond technical jargon. You'll need to build trust and foster collaboration across teams, finding pragmatic solutions that balance business objectives with security requirements.
  • Proven leadership abilities and stakeholder management skills. Get ready to inspire and influence others as you lead teams and collaborate with stakeholders to drive our cyber security initiatives forward.

A degree, or equivalent, in a relevant discipline would be advantageous however, not essential.

Closing Date: 21st May 2024

Join us and together we can help Britain achieve Net Zero.

#EDFNuclearServices #DestinationNuclear#EDFNuclearJobs


  • Cyber Risk Manager

    2 weeks ago


    Gloucester, United Kingdom EDF Full time

    … We’re looking for you to join our dynamic team as our next Cyber Risk Manager and take charge of developing, coordinating, and implementing risk management activities across our Nuclear licensees. You'll play a vital role in ensuring stakeholders, including executives and SIROs, have a clear and consistent understanding of cyber security risks. From...

  • Cyber Risk Manager

    2 weeks ago


    Gloucester (GL3 4AE), United Kingdom EDF Energy Full time

    Gloucester Business Park, Gloucester or Atlantic Quay, Glasgow. Hybrid role, minimum of 3 days per week in an office. Flexible working arrangements to be discussed.  Are you experienced in identifying and assessing potential cyber risks within an organisation's infrastructure and operations? Are you familiar with current cybersecurity frameworks and best...


  • United Kingdom Cyber Search Partners Full time

    Cyber Security Consultant Remote-based (UK) with client site travel (2 days per week/M4 corridor) CSP has partnered up with a dynamic business that provides expert services within the InfoSec, GRC, Safety Engineering, Cyber Security & Information Systems domains. As a Consultant in the Cyber & Digital Security and Information Assurance team, you will be...


  • Gloucester, UK, United Kingdom EDF Energy Full time

    Gloucester Business Park, Gloucester or Atlantic Quay, Glasgow. Hybrid role, minimum of 3 days per week in an office. Flexible working arrangements to be discussed.     Are you experienced in identifying and assessing potential cyber risks within an organisation's infrastructure and operations? Are you familiar with current cybersecurity...

  • IT Security Manager

    3 weeks ago


    United Kingdom LT Harper - Cyber Security Recruitment Full time

    Cyber Security OT Manager – Brownfield Opportunity Location – Hybrid – UK South Salary - £85k + Bonus and Benefits This is a chance to own an entire body of work as you take this CNI company on a OT cyber security journey from its current brownfield state , to achieving regulatory compliance with the governing bodies regulations for OES...


  • United Kingdom Cyber Crime Full time

    Senior Associate, Detection Engineer, Cyber Managed Services Kroll As the leading independent provider of risk and financial advisory solutions, Kroll leverages our unique insights, data and technology to help clients stay ahead of complex demands. Click for more details. View company page In a world of disruption and increasingly complex business...


  • United Kingdom Cyber Crime Full time

    Senior Associate, Detection Engineer, Cyber Managed Services Kroll As the leading independent provider of risk and financial advisory solutions, Kroll leverages our unique insights, data and technology to help clients stay ahead of complex demands. Click for more details. View company page In a world of disruption and increasingly complex business...


  • United Kingdom LT Harper - Cyber Security Recruitment Full time

    Cyber Security OT Manager – Brownfield Opportunity Location – Hybrid – UK South Salary - £85k + Bonus and Benefits This is a chance to own an entire body of work as you take this CNI company on a OT cyber security journey from its current brownfield state , to achieving regulatory compliance with the governing bodies regulations for OES in the...

  • Cyber Researcher

    4 days ago


    Gloucester, United Kingdom Cyber Security Jobsite Full time

    Cyber ResearcherLocation: Gloucester, Manchester or LondonOur world class team of Cyber Researchers and Reverse Engineers tackle some of the most interesting problems with a meaningful and tangible impact on the national security of the UK. We are growing our Cyber Developer team significantly and are looking for a diverse range of talent from experienced...


  • united kingdom LT Harper - Cyber Security Recruitment Full time

    Cyber Security OT Manager – Brownfield OpportunityLocation – Hybrid – UK MainlandSalary - £85k + Bonus and BenefitsThis is a chance to own an entire body of work as you take this CNI company on a OT cyber security journey from its current brownfield state, to achieving regulatory compliance with the governing bodies regulations for OES in the GB. This...

  • Cyber Researcher

    4 days ago


    Gloucester, Gloucestershire, United Kingdom Cyber Security Jobsite Part time

    Cyber Researcher Location: Gloucester, Manchester or London Our world class team of Cyber Researchers and Reverse Engineers tackle some of the most interesting problems with a meaningful and tangible impact on the national security of the UK. We are growing our Cyber Developer team significantly and are looking for a diverse range of talent from...


  • United Kingdom Anson McCade Full time

    Cyber Security Consultant - Remote We are looking for Cyber Security Consultants to join the team and help work with our clients’ to defend themselves against cyber-attacks. The successful Cyber Security Consultant will support and grow to lead engagements that deliver cyber risk assessments, improve control maturity, define secure solutions and ensure...


  • United Kingdom Anson McCade Full time

    Cyber Security Consultant - Remote We are looking for Cyber Security Consultants to join the team and help work with our clients’ to defend themselves against cyber-attacks. The successful Cyber Security Consultant will support and grow to lead engagements that deliver cyber risk assessments, improve control maturity, define secure solutions and ensure...


  • United Kingdom Cyberwrite Full time

    REMOTE JOB - ANY LOCATION. EXCEPTIONAL COMPENSATION PACKAGE FOR THE RIGHT CANDIDATE. Job description – Senior Cyber Cat Modeler Cyberwrite is searching for a Senior Cyber Catastrophe Risk Modeler to join our mission to lead the cyber-insurance risk analytics market with our patented cyber risk platform. The right candidate: You are a passionate,...


  • United Kingdom Cyberwrite Full time

    REMOTE JOB - ANY LOCATION. EXCEPTIONAL COMPENSATION PACKAGE FOR THE RIGHT CANDIDATE. Job description – Senior Cyber Cat Modeler Cyberwrite is searching for a Senior Cyber Catastrophe Risk Modeler to join our mission to lead the cyber-insurance risk analytics market with our patented cyber risk platform. The right candidate: You are a passionate,...


  • United Kingdom Cyberwrite Full time

    REMOTE JOB - ANY LOCATION. EXCEPTIONAL COMPENSATION PACKAGE FOR THE RIGHT CANDIDATE. Job description – Senior Cyber Cat Modeler  Cyberwrite is searching for a Senior Cyber Catastrophe Risk Modeler to join our mission to lead the cyber-insurance risk analytics market with our patented cyber risk platform.  The right candidate:  You are a passionate,...


  • United Kingdom Cyberwrite Full time

    REMOTE JOB - ANY LOCATION. EXCEPTIONAL COMPENSATION PACKAGE FOR THE RIGHT CANDIDATE. Job description – Senior Cyber Cat Modeler  Cyberwrite is searching for a Senior Cyber Catastrophe Risk Modeler to join our mission to lead the cyber-insurance risk analytics market with our patented cyber risk platform.  The right candidate:  You are a passionate,...


  • United Kingdom Cyberwrite Full time

    REMOTE JOB - ANY LOCATION. EXCEPTIONAL COMPENSATION PACKAGE FOR THE RIGHT CANDIDATE. Job description – Senior Cyber Cat Modeler  Cyberwrite is searching for a Senior Cyber Catastrophe Risk Modeler to join our mission to lead the cyber-insurance risk analytics market with our patented cyber risk platform.  The right candidate:  You are a passionate,...


  • United Kingdom Anson McCade Full time €65,000

    We are a leading consultancy firm specializing in innovative and robust cybersecurity solutions. Our mission is to help organizations navigate the complexities of cyber threats and safeguard their digital assets. We pride ourselves on our expert team and our commitment to delivering top-tier security solutions. We are seeking a highly skilled and...


  • United Kingdom Dell Full time

    Secureworks (NASDAQ: SCWX) is a global cybersecurity leader that secures human progress with Secureworks® Taegis™, a SaaS-based, open XDR platform built on 20+ years of real-world threat intelligence and research, improving customers’ ability to detect advanced threats, streamline and collaborate on investigations, and automate the right actions. We...