Cyber Security Risk and Compliance Manager

3 weeks ago


Glasgow, Glasgow City, United Kingdom Social Security Scotland Full time

Position Overview

Are you an experienced professional in the dynamic field of Information Assurance and Security? Social Security Scotland is seeking a Cyber Security Risk and Assurance Manager to uphold the agency's commitment to security assurance, governance, and compliance aligned with our risk appetite.

In this pivotal role, you will oversee a skilled team of Information and Security Officers and Security Risk Advisors, driving the execution of a comprehensive Information Security Assurance, Governance, and Risk Programme.

The Security Risk and Assurance team is responsible for managing risks, providing security consultancy, ensuring supply chain assurance, overseeing the Security Awareness programme, and developing security policies alongside the Information Security Management System. Collaboration with the Head of Security Assurance and various teams within the Chief Digital Office is essential to maintain the confidentiality, integrity, and availability of information and information systems across the organization.

This prominent position offers the successful candidate the chance to make a substantial and positive impact on the lives of individuals who depend on Social Security Scotland.

Key Responsibilities

  • Lead risk management initiatives for intricate and innovative scenarios, ensuring adherence to regulatory and legislative standards while applying core risk management principles.
  • Mentor and guide risk managers and specialists, promoting skill enhancement, sharing best practices, and fostering collaboration across governmental and industrial sectors.
  • Conduct thorough analyses of complex security requirements and deliver Cyber Security risk assessments, offering insights on governance frameworks.
  • Ensure that fundamental organizational security requirements are met through integrated assurance methodologies that build confidence in risk, service, or system ownership.
  • Influence leadership decision-making by providing insightful reports on the effectiveness of security processes and serving as a subject matter expert on cyber risk management topics.
  • Facilitate balanced and cost-effective risk management decisions, ensuring their integration into corporate governance processes for complex scenarios.
  • Embed risk management practices within business operations such as system development, security architecture, and procurement processes.
  • Deliver customized risk assessments and provide security guidance on unique use cases, leveraging expertise in specific subjects or technologies.
  • Utilize standardized control frameworks (e.g., ISO 27001/2) while acknowledging their strengths and limitations, and offer guidance on the implications of security measures on users and business objectives.
  • Proactively collect and analyze threat intelligence to comprehend the evolving threat landscape, thereby enhancing the organization’s security posture.

Candidate Profile

1. Proven experience in leading and managing a security risk, assurance, and compliance function.

2. In-depth knowledge of information security standards with demonstrated experience in interpreting and applying information assurance legislation and policies (ISO27001, NIST, SG Cyber Resilience Framework, GDPR, DPA 2018, etc.).

3. Extensive experience in applying risk management methodologies and their practical implementation.

4. High-level understanding of both internal and external information security risks that could impact confidentiality, integrity, and availability.

Benefits

Annual Leave - You will receive 25 days of annual leave upon joining, increasing to 30 days after four full years of service, along with public and privilege days of leave each year. Flexi-time is also available, allowing you to take leave for any extra hours worked when suitable.

A Civil Service Pension - This position includes a Civil Service pension, with new joiners entering a career average pension scheme as standard.

Healthy Work-Life Balance - We offer various working arrangements, including full-time, part-time, term-time, and job shares, while promoting flexible working options.

Discounts - Enjoy a wide range of retail, travel, and lifestyle discounts through our benefits scheme.

Personal Support - Our Employee Assistance Programme provides confidential, independent information and guidance 24/7.

Volunteering Special Leave - Up to six days of paid special leave per year for volunteering, supporting staff in their commitment to important causes.

Modern Work Environment - Our bright and contemporary offices are designed with staff needs in mind, providing an ideal workspace.



  • Glasgow, Glasgow City, United Kingdom Social Security Scotland Full time

    Job OverviewAre you seasoned in a dynamic Information Assurance and Security landscape and seeking to advance your career? Social Security Scotland presents a remarkable opportunity for a Cyber Security Risk and Assurance Manager, tasked with ensuring the agency upholds a robust level of security assurance, governance, and compliance aligned with our risk...


  • Glasgow, Glasgow City, United Kingdom Social Security Scotland Full time

    Job OverviewAre you seasoned in a dynamic Information Assurance and Security landscape and seeking to advance your career? Social Security Scotland presents a remarkable opportunity for a Cyber Security Risk and Assurance Manager, tasked with ensuring the agency upholds a robust level of security assurance, governance, and compliance aligned with our risk...


  • Glasgow, Glasgow City, United Kingdom Social Security Scotland Full time

    About the RoleWe are seeking a highly skilled Cyber Security Risk and Assurance Manager to join our team at Social Security Scotland. As a key member of our Digital Risk and Security Team, you will play a critical role in ensuring the confidentiality, integrity, and availability of information and information systems across our organization.Key...


  • Glasgow, Glasgow City, United Kingdom Social Security Scotland Full time

    About the RoleWe are seeking a highly skilled Cyber Security Risk and Assurance Manager to join our team at Social Security Scotland. As a key member of our Digital Risk and Security Team, you will play a critical role in ensuring the confidentiality, integrity, and availability of information and information systems across our organization.Key...


  • Glasgow, Glasgow City, United Kingdom Social Security Scotland Full time

    Job SummarySocial Security Scotland is seeking a highly skilled Cyber Security Risk and Assurance Manager to lead our Information Security Assurance, Governance, and Risk Programme. As a key member of our team, you will be responsible for ensuring the confidentiality, integrity, and availability of information and information systems across the...


  • Glasgow, Glasgow City, United Kingdom Social Security Scotland Full time

    Job SummarySocial Security Scotland is seeking a highly skilled Cyber Security Risk and Assurance Manager to lead our Information Security Assurance, Governance, and Risk Programme. As a key member of our team, you will be responsible for ensuring the confidentiality, integrity, and availability of information and information systems across the...


  • Glasgow, Glasgow City, United Kingdom Social Security Scotland Full time

    Position OverviewAre you an experienced professional in the dynamic field of Information Assurance and Security, seeking to advance your career? Social Security Scotland presents a unique opportunity for a Cyber Security Risk and Assurance Manager, responsible for upholding the agency's security assurance, governance, and compliance aligned with our risk...


  • Glasgow, Glasgow City, United Kingdom Social Security Scotland Full time

    Position OverviewAre you an experienced professional in the dynamic field of Information Assurance and Security, seeking to advance your career? Social Security Scotland presents a unique opportunity for a Cyber Security Risk and Assurance Manager, responsible for upholding the agency's security assurance, governance, and compliance aligned with our risk...


  • Glasgow, Glasgow City, United Kingdom Social Security Scotland Full time

    Position OverviewThe role of Senior Information and Cyber Security Officer is crucial within the Digital Risk and Security division, focusing on the enhancement of a comprehensive Security Assurance initiative. Working closely with the Head of Security Assurance, the Security Risk and Assurance Manager, Security Architects, and members of the Chief Digital...


  • Glasgow, Glasgow City, United Kingdom Social Security Scotland Full time

    Position OverviewThe role of Senior Information and Cyber Security Officer is crucial in enhancing a robust Security Assurance initiative within the Digital Risk and Security sector. Working closely with the Head of Security Assurance, Security Risk and Assurance Manager, Security Architects, and other stakeholders in the Chief Digital Office, you will play...


  • Glasgow, Glasgow City, United Kingdom Social Security Scotland Full time

    Position OverviewThe role of Senior Information and Cyber Security Officer is essential in propelling a comprehensive Security Assurance initiative within Digital Risk and Security. Working closely with the Head of Security Assurance, Security Risk and Assurance Manager, Security Architects, and colleagues in the Chief Digital Office, you will play a...


  • Glasgow, Glasgow City, United Kingdom Locke and McCloud Full time

    Job Summary:We are seeking a highly skilled Cyber Security Analyst to join our team at Locke & McCloud. As a Cyber Security Analyst, you will play a critical role in ensuring the security and integrity of our clients' IT systems worldwide.Key Responsibilities:Threat Detection and Response: Research and document vulnerabilities and risks to IT-related...


  • Glasgow, Glasgow City, United Kingdom Locke and McCloud Full time

    Job Summary:We are seeking a highly skilled Cyber Security Analyst to join our team at Locke & McCloud. As a Cyber Security Analyst, you will play a critical role in ensuring the security and integrity of our clients' IT systems worldwide.Key Responsibilities:Threat Detection and Response: Research and document vulnerabilities and risks to IT-related...


  • Glasgow, Glasgow City, United Kingdom Locke and McCloud Full time £60,000

    Job SummaryWe are seeking a highly skilled Cyber Security Analyst to join our global cyber security team at Locke & McCloud. As a key member of our team, you will play a pivotal role in ensuring the IT security and integrity of our systems worldwide.Key ResponsibilitiesConduct thorough research and documentation of vulnerabilities and risks to IT-related...


  • Glasgow, Glasgow City, United Kingdom Locke and McCloud Full time £60,000

    Job DescriptionRole: Cyber Security AnalystLocke & McCloud is seeking a highly skilled Cyber Security Analyst to join our global cyber security team. This role is critical in ensuring the IT security and integrity of our clients' systems worldwide.Conduct research and document vulnerabilities and risks to IT-related systems.Monitor and report on our clients'...


  • Glasgow, Glasgow City, United Kingdom Locke and McCloud Full time

    Job Summary:We are seeking a highly skilled Cyber Security Analyst to join our global cyber security team at Locke & McCloud. As a key member of our team, you will play a pivotal role in ensuring the IT security and integrity of our systems worldwide.Key Responsibilities:Conduct thorough research and documentation of vulnerabilities and risks to IT-related...


  • Glasgow, Glasgow City, United Kingdom Locke and McCloud Full time

    Job Summary:We are seeking a highly skilled Cyber Security Analyst to join our global cyber security team at Locke & McCloud. As a key member of our team, you will play a pivotal role in ensuring the IT security and integrity of our systems worldwide.Key Responsibilities:Conduct thorough research and documentation of vulnerabilities and risks to IT-related...


  • Glasgow, Glasgow City, United Kingdom Locke and McCloud Full time £60,000

    Job DescriptionRole: Cyber Security AnalystLocke & McCloud is seeking a highly skilled Cyber Security Analyst to join our global cyber security team. This role is critical in ensuring the IT security and integrity of our clients' systems worldwide.Key Responsibilities:Research and document vulnerabilities and risks to IT-related systems.Monitor and report on...


  • Glasgow, Glasgow City, United Kingdom Locke and McCloud Full time £60,000

    Job DescriptionRole: Cyber Security AnalystLocke & McCloud is seeking a highly skilled Cyber Security Analyst to join our global cyber security team. This role is critical in ensuring the IT security and integrity of our clients' systems worldwide.Key Responsibilities:Research and document vulnerabilities and risks to IT-related systems.Monitor and report on...


  • Glasgow, Glasgow City, United Kingdom Locke and McCloud Full time £60,000

    Job DescriptionRole: Cyber Security AnalystLocation: GlobalSalary: £60,000+Locke & McCloud is seeking a highly skilled Cyber Security Analyst to join our global cyber security team. This role is critical in ensuring the IT security and integrity of our clients' systems worldwide.Key Responsibilities:Conduct in-depth research and documentation of...