Cyber Security Risk and Compliance Leader

3 weeks ago


Glasgow, Glasgow City, United Kingdom Social Security Scotland Full time

Job Overview

Are you seasoned in a dynamic Information Assurance and Security landscape and seeking to advance your career? Social Security Scotland presents a remarkable opportunity for a Cyber Security Risk and Assurance Manager, tasked with ensuring the agency upholds a robust level of security assurance, governance, and compliance aligned with our risk appetite.

In this role, you will oversee a skilled team of Information and Security Officers and Security Risk Advisors, propelling the execution of an ambitious Information Security Assurance, Governance, and Risk Program.

The Security Risk and Assurance team is responsible for managing risks, providing security consultancy, ensuring supply chain assurance, overseeing the Security Awareness program, and developing security policies alongside the Information Security Management System. Collaboration with the Head of Security Assurance and various teams within the Chief Digital Office is essential to maintain the confidentiality, integrity, and availability of information and information systems throughout the organization.

This prominent position offers the selected candidate the chance to make a substantial and positive impact on individuals relying on Social Security Scotland.

Key Responsibilities

  • Lead risk management initiatives for intricate and novel scenarios, ensuring adherence to regulatory and legislative standards while applying core risk management principles.
  • Mentor and guide risk managers and specialists, fostering skill enhancement, sharing best practices, and encouraging collaboration across governmental and industrial sectors.
  • Conduct thorough analyses of complex security requirements and deliver Cyber Security risk assessments, offering guidance on governance frameworks.
  • Ensure that fundamental organizational security needs are met through integrated assurance methodologies that build confidence in risk, service, or system ownership.
  • Influence leadership decision-making by providing insightful reports on the effectiveness of security processes and serving as a subject matter expert on cyber risk management topics.
  • Facilitate balanced and cost-effective risk management choices, ensuring integration into corporate governance processes for complex scenarios.
  • Embed risk management practices within business operations such as system development, security architecture, and procurement processes.
  • Deliver customized risk assessments and provide security advice on unique use cases, leveraging expertise in specific topics or technologies.
  • Utilize standardized control frameworks (e.g., ISO 27001/2) while acknowledging their strengths and limitations, and offer guidance on the implications of security measures on users and business needs.
  • Proactively collect and analyze threat intelligence to comprehend the evolving threat landscape, thereby enhancing the organization’s security posture.

Candidate Profile

1. Proven experience in leading and managing a security risk, assurance, and compliance function.

2. In-depth knowledge and understanding of information security standards, with demonstrable experience in interpreting and applying information assurance legislation and policies (ISO27001, NIST, SG Cyber Resilience Framework, GDPR, DPA 2018, etc.).

3. Demonstrated experience in applying risk management methodologies and their implementation.

4. Comprehensive knowledge of both internal and external information security risks that could impact confidentiality, integrity, and availability.

Employee Benefits

Annual Leave - You will receive 25 days of annual leave upon joining, increasing to 30 days after four full years of service, along with public and privilege days of leave each year. Flexi-time is also available, allowing you to take leave for any extra hours worked when suitable.

A Civil Service Pension - This position includes a Civil Service pension, with new joiners to the Civil Service automatically enrolled in a career average pension scheme.

Work-Life Balance - We offer various working arrangements, including full-time, part-time, term-time, and job shares, along with encouragement for flexible working.

Discounts - Enjoy a wide range of retail, travel, and lifestyle discounts through our benefits scheme.

Personal Support - Our Employee Assistance Programme provides confidential, independent information and guidance 24/7.

Volunteering Leave - Up to six days of paid special leave per year for volunteering activities, supporting staff in contributing to causes that matter to them.

Modern Workspaces - Our bright and contemporary offices are designed with staff well-being in mind.



  • Glasgow, Glasgow City, United Kingdom Social Security Scotland Full time

    Position OverviewAre you an experienced professional in the dynamic field of Information Assurance and Security? Social Security Scotland is seeking a Cyber Security Risk and Assurance Manager to uphold the agency's commitment to security assurance, governance, and compliance aligned with our risk appetite.In this pivotal role, you will oversee a skilled...


  • Glasgow, Glasgow City, United Kingdom Social Security Scotland Full time

    Position OverviewAre you an experienced professional in the dynamic field of Information Assurance and Security? Social Security Scotland is seeking a Cyber Security Risk and Assurance Manager to uphold the agency's commitment to security assurance, governance, and compliance aligned with our risk appetite.In this pivotal role, you will oversee a skilled...


  • Glasgow, Glasgow City, United Kingdom Social Security Scotland Full time

    About the RoleWe are seeking a highly skilled Cyber Security Risk and Assurance Manager to join our team at Social Security Scotland. As a key member of our Digital Risk and Security Team, you will play a critical role in ensuring the confidentiality, integrity, and availability of information and information systems across our organization.Key...


  • Glasgow, Glasgow City, United Kingdom Social Security Scotland Full time

    About the RoleWe are seeking a highly skilled Cyber Security Risk and Assurance Manager to join our team at Social Security Scotland. As a key member of our Digital Risk and Security Team, you will play a critical role in ensuring the confidentiality, integrity, and availability of information and information systems across our organization.Key...


  • Glasgow, Glasgow City, United Kingdom Social Security Scotland Full time

    Job SummarySocial Security Scotland is seeking a highly skilled Cyber Security Risk and Assurance Manager to lead our Information Security Assurance, Governance, and Risk Programme. As a key member of our team, you will be responsible for ensuring the confidentiality, integrity, and availability of information and information systems across the...


  • Glasgow, Glasgow City, United Kingdom Social Security Scotland Full time

    Job SummarySocial Security Scotland is seeking a highly skilled Cyber Security Risk and Assurance Manager to lead our Information Security Assurance, Governance, and Risk Programme. As a key member of our team, you will be responsible for ensuring the confidentiality, integrity, and availability of information and information systems across the...


  • Glasgow, Glasgow City, United Kingdom Social Security Scotland Full time

    Position OverviewAre you an experienced professional in the dynamic field of Information Assurance and Security, seeking to advance your career? Social Security Scotland presents a unique opportunity for a Cyber Security Risk and Assurance Manager, responsible for upholding the agency's security assurance, governance, and compliance aligned with our risk...


  • Glasgow, Glasgow City, United Kingdom Social Security Scotland Full time

    Position OverviewAre you an experienced professional in the dynamic field of Information Assurance and Security, seeking to advance your career? Social Security Scotland presents a unique opportunity for a Cyber Security Risk and Assurance Manager, responsible for upholding the agency's security assurance, governance, and compliance aligned with our risk...


  • Glasgow, Glasgow City, United Kingdom Social Security Scotland Full time

    Position OverviewThe role of Senior Information and Cyber Security Officer is crucial in enhancing a robust Security Assurance initiative within the Digital Risk and Security sector. Working closely with the Head of Security Assurance, Security Risk and Assurance Manager, Security Architects, and other stakeholders in the Chief Digital Office, you will play...


  • Glasgow, Glasgow City, United Kingdom Social Security Scotland Full time

    Position OverviewThe role of Senior Information and Cyber Security Officer is crucial within the Digital Risk and Security division, focusing on the enhancement of a comprehensive Security Assurance initiative. Working closely with the Head of Security Assurance, the Security Risk and Assurance Manager, Security Architects, and members of the Chief Digital...


  • Glasgow, Glasgow City, United Kingdom Social Security Scotland Full time

    Position OverviewThe role of Senior Information and Cyber Security Officer is essential in propelling a comprehensive Security Assurance initiative within Digital Risk and Security. Working closely with the Head of Security Assurance, Security Risk and Assurance Manager, Security Architects, and colleagues in the Chief Digital Office, you will play a...


  • Glasgow, Glasgow City, United Kingdom Locke and McCloud Full time

    Job Summary:We are seeking a highly skilled Cyber Security Analyst to join our team at Locke & McCloud. As a Cyber Security Analyst, you will play a critical role in ensuring the security and integrity of our clients' IT systems worldwide.Key Responsibilities:Threat Detection and Response: Research and document vulnerabilities and risks to IT-related...


  • Glasgow, Glasgow City, United Kingdom Locke and McCloud Full time

    Job Summary:We are seeking a highly skilled Cyber Security Analyst to join our team at Locke & McCloud. As a Cyber Security Analyst, you will play a critical role in ensuring the security and integrity of our clients' IT systems worldwide.Key Responsibilities:Threat Detection and Response: Research and document vulnerabilities and risks to IT-related...


  • Glasgow, Glasgow City, United Kingdom Locke and McCloud Full time £60,000

    Job SummaryWe are seeking a highly skilled Cyber Security Analyst to join our global cyber security team at Locke & McCloud. As a key member of our team, you will play a pivotal role in ensuring the IT security and integrity of our systems worldwide.Key ResponsibilitiesConduct thorough research and documentation of vulnerabilities and risks to IT-related...


  • Glasgow, Glasgow City, United Kingdom Locke and McCloud Full time

    Job Summary:We are seeking a highly skilled Cyber Security Analyst to join our global cyber security team at Locke & McCloud. As a key member of our team, you will play a pivotal role in ensuring the IT security and integrity of our systems worldwide.Key Responsibilities:Conduct thorough research and documentation of vulnerabilities and risks to IT-related...


  • Glasgow, Glasgow City, United Kingdom Locke and McCloud Full time

    Job Summary:We are seeking a highly skilled Cyber Security Analyst to join our global cyber security team at Locke & McCloud. As a key member of our team, you will play a pivotal role in ensuring the IT security and integrity of our systems worldwide.Key Responsibilities:Conduct thorough research and documentation of vulnerabilities and risks to IT-related...


  • Glasgow, Glasgow City, United Kingdom Locke and McCloud Full time £60,000

    Job DescriptionRole: Cyber Security AnalystLocke & McCloud is seeking a highly skilled Cyber Security Analyst to join our global cyber security team. This role is critical in ensuring the IT security and integrity of our clients' systems worldwide.Conduct research and document vulnerabilities and risks to IT-related systems.Monitor and report on our clients'...


  • Glasgow, Glasgow City, United Kingdom Locke and McCloud Full time £60,000

    Job DescriptionRole: Cyber Security AnalystLocke & McCloud is seeking a highly skilled Cyber Security Analyst to join our global cyber security team. This role is critical in ensuring the IT security and integrity of our clients' systems worldwide.Key Responsibilities:Research and document vulnerabilities and risks to IT-related systems.Monitor and report on...


  • Glasgow, Glasgow City, United Kingdom Locke and McCloud Full time £60,000

    Job DescriptionRole: Cyber Security AnalystLocke & McCloud is seeking a highly skilled Cyber Security Analyst to join our global cyber security team. This role is critical in ensuring the IT security and integrity of our clients' systems worldwide.Key Responsibilities:Research and document vulnerabilities and risks to IT-related systems.Monitor and report on...


  • Glasgow, Glasgow City, United Kingdom Locke and McCloud Full time £60,000

    Job DescriptionRole: Cyber Security AnalystLocation: GlobalSalary: £60,000+Locke & McCloud is seeking a highly skilled Cyber Security Analyst to join our global cyber security team. This role is critical in ensuring the IT security and integrity of our clients' systems worldwide.Key Responsibilities:Conduct in-depth research and documentation of...