Lead Cyber Security Analyst

2 weeks ago


City of Edinburgh, United Kingdom Scottish Government Full time

Job Description Do you want to help protect critical digital services that support students across Scotland in accessing life changing financial support for higher education? Join the Student Awards Agency Scotland (SAAS) as a Lead Cyber Security Analyst and play a vital role in safeguarding sensitive data and supporting the secure delivery of services to more than 150,000 students each year. Responsibilities Lead and assure cyber security initiatives across AWS and on‑premise environments, ensuring secure‑by‑design services and compliance with policy and standards. Own and maintain incident response plans, lead incident management, root‑cause analysis, and lessons‑learned activities to improve organisational resilience. Conduct security risk and vulnerability assessments, threat analysis, and business impact assessments, providing clear recommendations to mitigate risk. Develop, review, and oversee execution of security test plans for new and existing services. Provide expert guidance on access management, including defining and assuring technical, procedural, and privileged access controls across all systems and services. Contribute to cyber security policies, standards, and guidelines, ensuring alignment with NCSC principles, legal and regulatory requirements, and industry best practice. Communicate complex technical risks and cyber threats clearly to both technical and non‑technical audiences, including colleagues, suppliers, and partners. Maintain up‑to‑date knowledge of malware trends, threat actors, and attack techniques, providing timely advice to support decision‑making and risk management. Lead and develop IT teams and suppliers in secure practices, building capability and strong partnerships across SAAS, the Scottish Government, and external stakeholders. Success profile Success profiles are specific to each job and they include the mix of skills, experience and behaviours candidates will be assessed on. Behaviours Making Effective Decisions Working Together Experience Subject matter expertise in developing and operational techniques for cyber security operations (e.g. detecting anomalous activity, automating orchestration, configuration of IT) OR experience identifying the need for, and implementing, new operating procedures and practices to meet changing requirements Proven experience of managing incidents end‑to‑end, reporting on and bringing investigations to successful conclusion, and advising on response best practice. Experience of delivering or reviewing risk assessments using appropriate methods for enterprise IT and/or cloud systems, with a clear understanding of how assessed risks should be addressed. Experience designing and implementing multi‑platform test programmes for systems, products, or services, selecting appropriate tools and techniques to identify vulnerabilities and adapting the approach based on findings. Advanced knowledge of system architectures, with the ability to articulate the impact of vulnerabilities on existing and future designs and systems. Technical / Professional Skills .Cyber Security Operations (Expert) Incident Management, Investigation & Response (Expert) Information Risk Assessment & Management (Practitioner) Penetration Testing (Practitioner) Specific Security Technology & Understanding (Practitioner) These skills are assessed by technical assessment, designed to represent the role. Candidates reaching this stage will receive a Technical Assessment Candidate Pack which outlines the specific skills to be assessed, plus the method of assessment. You can find out more about the skills required here: Cyber security: operations - gov.scot How to apply Apply online, providing a CV and Supporting Statement (of no more than 1500 words) which provides evidence of how you meet the experience and behaviours listed in the Success Profile above. Artificial Intelligence (AI) tools can be used to support your application, but all statements and examples provided must be truthful, factually accurate and taken directly from your own experience. Where plagiarism has been identified (presenting the ideas and experiences of others, or generated by artificial intelligence, and presented as your own) applications will be withdrawn and internal candidates may be subject to disciplinary action. Please see our candidate guidance for more information on acceptable and unacceptable uses of AI in recruitment. If invited for further assessment, this will consist of an interview and (DDAT Technical Assessment ). Assessments are scheduled for w/c 8th December however this may be subject to change. Qualifications About us The Scottish Government is the devolved government for Scotland. We have responsibility for a wide range of key policy areas including: education, health, the economy, justice, housing and transport. We offer rewarding careers and employ people across Scotland in a wide range of professions and roles. Our staff are part of the UK Civil Service, working for Ministers and senior stakeholders to deliver vital public services which improve the lives of the people of Scotland. We offer a supportive and inclusive working environment along with a wide range of employee benefits. Find out more about what we offer. As part of the UK Civil Service, we uphold the Civil Service Nationality Rules. Working pattern Our standard hours are 35 hours per week and we offer a range of flexible working options depending on the needs of the role. From October 2025, the Scottish Government will require staff in hybrid‑compatible roles to work in‑person 40% of the time, either in an office or other agreed work location. If you have specific questions about the role you are applying for, please contact us. Security checks Successful candidates must complete the Baseline Personnel Security Standard (BPSS), before they can be appointed. BPSS is comprised of four main pre‑employment checks - Identity, Right to work, Employment History and a Criminal Record check (unspent convictions). You can find out more about BPSS on the UK Government website, or read about the different levels of security checks in our Candidate Guide. Equality statement We are committed to equality and inclusion and we aim to recruit a diverse workforce that reflects the population of our nation. Find out more about our commitment to diversity and how we offer and support recruitment adjustments for anyone who needs them. Further information Find out more about our organisation, what we offer staff members and how to apply on our Careers Website. Read our Candidate Guide for further information on our recruitment and application processes. #J-18808-Ljbffr



  • Aberdeen City, United Kingdom Cyber Fraud Centre Full time

    Sword is a leading provider of business technology solutions within the Energy, Public and Finance Sectors, driving transformational change within our clients. We use proven technology, specialist teams and domain expertise to build solid technical foundations across platforms, data, and business applications. We have a passion for using technology to solve...


  • City Of London, United Kingdom Cyber Security training courses Full time

    A leading cyber security firm in Central London is seeking an experienced Cyber Security Programme Manager to drive large-scale transformation initiatives. This hybrid role includes overseeing project delivery, managing budgets, and ensuring compliance with security policies. Candidates must have a strong track record in cyber security management and...


  • City of Edinburgh, United Kingdom Scottish Government Full time

    A government agency in Scotland is seeking a Lead Cyber Security Analyst to safeguard sensitive data and ensure secure delivery of services. The role involves leading cyber security initiatives, managing incidents, and conducting risk assessments for more than 150,000 students. Ideal candidates will have advanced knowledge in cyber security operations and...


  • City Of London, United Kingdom Inspire People Full time

    Cyber Security Analyst - 3 Month Contract Role / Government / Inside IR35 Are you ready to make a significant impact in the realm of cyber security? A prestigious government department is seeking a Cyber Security Analyst for a 3-month assignment, offering a unique chance to enhance your skills and contribute to national security. Inside IR35. Out-of-hours on...


  • City Of London, United Kingdom Cyber Security training courses Full time

    Cyber Security Program Manager I am working with an organisation that is embarking on a major cyber security transformation and looking to bring on a Cyber Security Program Manager to lead a multi-year, enterprise-wide uplift program. This is a strategic role where you'll work closely with senior stakeholders and an external delivery partner to enhance cyber...


  • City Of London, United Kingdom Cyber Security training courses Full time

    Are you an experienced Cyber Security Programme Manager looking for your next challenge? We're working with a global organisation seeking a strategic leader to drive a multi-year, enterprise-wide cyber security transformation. In this high-impact role, you'll oversee the end-to-end delivery of complex security initiatives, working closely with an external...


  • City Of London, United Kingdom MANCOMM Full time

    Vacancy Position: Cyber Security Analyst/LeadVacancy No: VN991Location: ManchesterEmployment Type: PermanentFixed Term Duration: N/A Overview Join Chambers and Partners as our next Cyber Security Analyst/Lead, a pivotal role at the heart of our commitment to safeguarding information and maintaining trust. You’ll lead the development and delivery of our...


  • City Of London, United Kingdom Chambers & Partners Full time

    Job Details: Cyber Security Analyst/LeadIf you are unable to apply via the portal, please email your CV and Cover Letter to us directly to recruitment@chambers.comFull details of the job.Vacancy InformationVacancy Name: Cyber Security Analyst/LeadVacancy No: VN991Location: LondonEmployment Type: Perm Full TimeOverviewJoin Chambers and Partners as our next...


  • Edinburgh, Edinburgh, United Kingdom The Tech Recruiter Full time £60,000 - £75,000 per year

    are delighted to partner with an international FMCG business based in Edinburgh who are looking to bring aContract Cyber Security Analyst (inside IR35)into the team.The Cyber Security Analyst will safeguard the organisation by anticipating and neutralising cyber threats, overseeing vulnerability management, and ensuring adherence to security standards. This...


  • Edinburgh, United Kingdom Moon Executive Search Full time

    Opportunity for a Senior Cyber Security Analyst for a nationwide IT MSP, based in Edinburgh. **Senior Cyber Security Analyst Opportunity** **IT MSP - Edinburgh - Office based** **Salary £40 - £55k DOE** **Looking to appoint ASAP** Maintain, analyse and improve security standards, recommending and implementing measures that can improve overall security...