Current jobs related to Cyber Security Risk and Compliance Leader - Glasgow, Glasgow City - Social Security Scotland


  • Glasgow, Glasgow City, United Kingdom ScottishPower Full time

    Cyber Security Assurance and Compliance LeadLocation: GlasgowSalary: £54-£68K, plus benefits (15% bonus & healthcare)Hybrid workingHelp us create a better future, quicker.ScottishPower is embarking on a Cyber Security Transformation Programme. We're looking for a Cyber Assurance and Compliance Lead to help define, implement, and manage the Cyber Security...


  • Glasgow, Glasgow City, United Kingdom Iberdrola Full time

    Cyber Security Assurance and Compliance LeadAbout the RoleThis is an exciting opportunity to join ScottishPower as a Cyber Security Assurance and Compliance Lead. As a key member of our team, you will play a critical role in defining, implementing, and managing the Cyber Security Assurance Model and tracking the Regulatory Compliance posture across...


  • Glasgow, Glasgow City, United Kingdom Scottish Power Full time

    Cyber Security Transformation ProgrammeScottish Power is embarking on a Cyber Security Transformation Programme to enhance our cyber security posture. We're seeking a Cyber Assurance and Compliance Lead to help define, implement, and manage the Cyber Security Assurance Model and track the Regulatory Compliance posture across ScottishPower.The role will lead...


  • Glasgow, Glasgow City, United Kingdom Be-IT Full time

    Cyber Security Risk Manager:We are seeking a Cyber Security Risk Manager to join our team at Be-IT. As a key member of our security team, you will be responsible for protecting our clients from cyber threats by managing risk, developing mitigation plans, and providing leadership with independent assurance of our cybersecurity posture.Your role will involve...


  • Glasgow, Glasgow City, United Kingdom https:www.energyjobline.comsitemap Full time

    Cyber Security Assurance and Compliance LeadAbout the RoleWe are seeking a highly skilled Cyber Security Assurance and Compliance Lead to join our team at ScottishPower. As a key member of our Cyber Security team, you will be responsible for defining, implementing, and managing the Cyber Security Assurance Model and tracking the Regulatory Compliance posture...


  • Glasgow, Glasgow City, United Kingdom Be-IT Full time £75,000

    Cyber Risk & Information Security ManagerAbout the Role:We are seeking a highly skilled Cyber Risk & Information Security Manager to join our team at Be-IT. As a key member of our security team, you will be responsible for protecting our clients from cyber threats by managing risk, developing mitigation plans, and providing leadership with independent...


  • Glasgow, Glasgow City, United Kingdom Be-IT Full time £75,000

    Cyber Risk & Information Security ManagerAbout the Role:We are seeking a highly skilled Cyber Risk & Information Security Manager to join our team at Be-IT. As a key member of our security team, you will be responsible for protecting our clients from cyber threats by managing risk, developing mitigation plans, and providing leadership with independent...


  • Glasgow, Glasgow City, United Kingdom Iberdrola Renewables Full time

    Cyber Security Transformation Programme LeadScottishPower is embarking on a Cyber Security Transformation Programme, seeking a Cyber Security Transformation Programme Lead to help define, implement, and manage the Cyber Security Assurance Model and track the Regulatory Compliance posture across ScottishPower.This role leads the definition and implementation...


  • Glasgow, Glasgow City, United Kingdom Head Resourcing Full time

    Job Title: Cyber Security AnalystJob Summary:We are seeking a highly skilled Cyber Security Analyst to join our team at Head Resourcing. As a Cyber Security Analyst, you will be responsible for operating and managing our clients' Vulnerability Management, Pen Testing, and SDLC security controls.Key Responsibilities:Conduct vulnerability assessments and...


  • Glasgow, Glasgow City, United Kingdom Head Resourcing Full time

    Job Title: Cyber Security AnalystJob Summary:We are seeking a highly skilled Cyber Security Analyst to join our team at Head Resourcing. As a Cyber Security Analyst, you will be responsible for operating and managing our clients' Vulnerability Management, Pen Testing, and SDLC security controls.Key Responsibilities:Conduct vulnerability assessments and...


  • Glasgow, Glasgow City, United Kingdom Dionach Full time

    About the RoleWe are seeking an experienced Cyber Security Team Leader to join our growing Pentest Team at Dionach. As a CHECK Team Leader, you will be responsible for leading customer engagements, managing teams, and delivering high-quality penetration testing services.Key ResponsibilitiesLead customer engagements on-site and manage teams to deliver...


  • Glasgow, Glasgow City, United Kingdom Dionach Full time

    About the RoleWe are seeking an experienced Cyber Security Team Leader to join our growing Pentest Team at Dionach. As a CHECK Team Leader, you will be responsible for leading customer engagements, managing teams, and delivering high-quality penetration testing services.Key ResponsibilitiesLead customer engagements on-site and manage teams to deliver...


  • Glasgow, Glasgow City, United Kingdom City Facilities Management Holdings Ltd Full time

    Job Title: Cyber Security ManagerThis role sits within the 2nd Line of defence, where you will lead and support the business, managing cyber risk and information protection positions effectively. Protecting the business from security threats, by identifying risks and developing appropriate risk migration plans. Providing senior leadership with independent...


  • Glasgow, Glasgow City, United Kingdom Ashurst Full time

    About AshurstAshurst is a leading global law firm with a strong commitment to innovation and excellence. We are seeking a highly motivated and experienced Cyber Security Operations Team Leader to join our team.Job SummaryThe Cyber Security Operations Team Leader will be responsible for managing the technical aspects of our cyber security operations, ensuring...


  • Glasgow, Glasgow City, United Kingdom Ashurst Full time

    About AshurstAshurst is a leading global law firm with a strong commitment to innovation and excellence. We are seeking a highly motivated and experienced Cyber Security Operations Team Leader to join our team.Job SummaryThe Cyber Security Operations Team Leader will be responsible for managing the technical aspects of our cyber security operations, ensuring...


  • Glasgow, Glasgow City, United Kingdom Ashurst Full time

    About AshurstDepartment/Role OverviewThe Cyber Security Operations Team Leader will oversee the technical aspects and team supervision, ensuring the effective handling of cyber security operations with a global reach. Responsibilities include acting as the primary point of contact for cyber security issues, enhancing incident response plans, producing...


  • Glasgow, Glasgow City, United Kingdom Ashurst Full time

    About AshurstDepartment/Role OverviewThe Cyber Security Operations Team Leader will manage technical aspects and team supervision, ensuring the effective handling of cyber security operations with a global reach. Responsibilities include acting as the primary point of contact for cyber security issues, enhancing incident response plans, producing technical...


  • Glasgow, Glasgow City, United Kingdom identifi Global Resources Full time £65,000 - £70,000

    Cyber Assurance and Compliance LeadWe are seeking a highly skilled Cyber Assurance and Compliance Lead to join our team at identifi Global Resources. As a key member of our cyber security department, you will play a crucial role in establishing and maintaining robust governance frameworks and processes.Your expertise and experience will shape strategies...


  • Glasgow, Glasgow City, United Kingdom identifi Global Resources Full time £65,000 - £70,000

    Cyber Assurance and Compliance LeadAt identifi Global Resources, we're seeking a highly skilled Cyber Assurance and Compliance Lead to join our team. As a key member of our cyber security department, you will be responsible for establishing and maintaining robust governance frameworks and processes. Your expertise and experience will shape strategies during...


  • Glasgow, Glasgow City, United Kingdom Ashurst Full time

    About AshurstDepartment/Role OverviewThe Cyber Security Operations Team Leader will manage technical aspects and team supervision, ensuring the effective handling of cyber security operations with a global reach. Responsibilities include acting as the primary point of contact for cyber security issues, enhancing incident response plans, producing technical...

Cyber Security Risk and Compliance Leader

2 months ago


Glasgow, Glasgow City, United Kingdom Social Security Scotland Full time

Job Overview

Are you seasoned in a dynamic Information Assurance and Security landscape and seeking to advance your career? Social Security Scotland presents a remarkable opportunity for a Cyber Security Risk and Assurance Manager, tasked with ensuring the agency upholds a robust level of security assurance, governance, and compliance aligned with our risk appetite.

In this role, you will oversee a skilled team of Information and Security Officers and Security Risk Advisors, propelling the execution of an ambitious Information Security Assurance, Governance, and Risk Program.

The Security Risk and Assurance team is responsible for managing risks, providing security consultancy, ensuring supply chain assurance, overseeing the Security Awareness program, and developing security policies alongside the Information Security Management System. Collaboration with the Head of Security Assurance and various teams within the Chief Digital Office is essential to maintain the confidentiality, integrity, and availability of information and information systems throughout the organization.

This prominent position offers the selected candidate the chance to make a substantial and positive impact on individuals relying on Social Security Scotland.

Key Responsibilities

  • Lead risk management initiatives for intricate and novel scenarios, ensuring adherence to regulatory and legislative standards while applying core risk management principles.
  • Mentor and guide risk managers and specialists, fostering skill enhancement, sharing best practices, and encouraging collaboration across governmental and industrial sectors.
  • Conduct thorough analyses of complex security requirements and deliver Cyber Security risk assessments, offering guidance on governance frameworks.
  • Ensure that fundamental organizational security needs are met through integrated assurance methodologies that build confidence in risk, service, or system ownership.
  • Influence leadership decision-making by providing insightful reports on the effectiveness of security processes and serving as a subject matter expert on cyber risk management topics.
  • Facilitate balanced and cost-effective risk management choices, ensuring integration into corporate governance processes for complex scenarios.
  • Embed risk management practices within business operations such as system development, security architecture, and procurement processes.
  • Deliver customized risk assessments and provide security advice on unique use cases, leveraging expertise in specific topics or technologies.
  • Utilize standardized control frameworks (e.g., ISO 27001/2) while acknowledging their strengths and limitations, and offer guidance on the implications of security measures on users and business needs.
  • Proactively collect and analyze threat intelligence to comprehend the evolving threat landscape, thereby enhancing the organization’s security posture.

Candidate Profile

1. Proven experience in leading and managing a security risk, assurance, and compliance function.

2. In-depth knowledge and understanding of information security standards, with demonstrable experience in interpreting and applying information assurance legislation and policies (ISO27001, NIST, SG Cyber Resilience Framework, GDPR, DPA 2018, etc.).

3. Demonstrated experience in applying risk management methodologies and their implementation.

4. Comprehensive knowledge of both internal and external information security risks that could impact confidentiality, integrity, and availability.

Employee Benefits

Annual Leave - You will receive 25 days of annual leave upon joining, increasing to 30 days after four full years of service, along with public and privilege days of leave each year. Flexi-time is also available, allowing you to take leave for any extra hours worked when suitable.

A Civil Service Pension - This position includes a Civil Service pension, with new joiners to the Civil Service automatically enrolled in a career average pension scheme.

Work-Life Balance - We offer various working arrangements, including full-time, part-time, term-time, and job shares, along with encouragement for flexible working.

Discounts - Enjoy a wide range of retail, travel, and lifestyle discounts through our benefits scheme.

Personal Support - Our Employee Assistance Programme provides confidential, independent information and guidance 24/7.

Volunteering Leave - Up to six days of paid special leave per year for volunteering activities, supporting staff in contributing to causes that matter to them.

Modern Workspaces - Our bright and contemporary offices are designed with staff well-being in mind.