Cyber Security Manager, Risk

5 days ago


London, Greater London, United Kingdom Heathrow Airport Full time £60,000 - £120,000 per year
Description

As Cyber Security Manager, Risk, you'll lead Heathrow's day-to-day cyber risk management, driving a proactive, business-wide approach to identifying and managing threats. You'll shape and refine our risk policies and standards, ensure compliance through close collaboration with assurance teams, and build strong relationships with regulators to meet our obligations under the NIS Regulations and wider cyber resilience standards.

Responsibilities
  • Lead day-to-day cyber risk management, ensuring risks are identified, assessed, and managed effectively across the business.
  • Develop and enhance risk management policies and standards, aligning with industry best practice and Heathrow's enterprise risk framework.
  • Work closely with assurance teams to oversee compliance of key systems and drive corrective actions where needed.
  • Engage with regulators and authorities, including the Civil Aviation Authority, to support Heathrow's compliance with NIS Regulations and other cyber resilience requirements.
  • Champion a culture of proactive risk management, driving continuous improvement and alignment with Heathrow's strategic goals
Qualifications
  • Degree-educated (or equivalent experience) with experience in cyber risk management, ideally across IT and OT environments.
  • Holds or working towards relevant certifications such as CISSP, CISM, C-RISC, CISA, or ISO 27001 Lead Auditor/Implementor.
  • Strong knowledge of information security controls, standards and frameworks, including ISO 27001, NIST, and NCSC CAF.
  • Solid understanding of the UK cyber regulatory landscape, particularly the NIS Regulations 2018; aviation sector experience (e.g. CAP1753) advantageous.
  • Experienced in applying risk management frameworks (e.g. ISO 27005, NIST RMF) within complex operational environments.
  • Proven leadership and stakeholder management skills, able to collaborate effectively with both technical SMEs and senior executives.


  • London, Greater London, United Kingdom J Bandy Consulting Full time £40,000 - £80,000 per year

    Cyber Security Risk ConsultantLocation: Remote (UK-based) with occasional travel to client sitesClearance Requirement: Must hold or be eligible for SC-level government security clearanceResidency Requirement: Must currently reside in the UKAbout the RoleWe are seeking a Cyber Security Risk Consultant to join our clients expert consulting team, delivering...


  • London, Greater London, United Kingdom Heathrow Full time £60,000 - £100,000 per year

    IntroductionTogether, we're working to welcome millions more passengers, while ensuring aviation can continue to be a force for good by leading global efforts in sustainability. At Heathrow, you can be part of this – providing solutions that make every journey better for millions each year. That means ensuring we meet the changing needs of the passengers,...

  • Cyber Risk Manager

    2 weeks ago


    London, Greater London, United Kingdom Convex Insurance Full time £60,000 - £120,000 per year

    Department:RiskLocation:London, UKDescriptionThe Enterprise Risk Management ('ERM') team sits within the Group Risk Management function, which is comprised of three 'pillars': Insurance Risk, Financial & Market Risk, and ERM. Convex has a strong focus to be market leaders in the use of data and technology.The primary role of the, newly created, Cyber...


  • London, Greater London, United Kingdom Millennium Full time £60,000 - £120,000 per year

    Cyber Security Risk EngineerWe are seeking a Cyber Security Risk Engineer with a robust background in the full suite of modern technologies employed within an enterprise environment. This role requires a deep understanding of operating systems (Windows, Linux, MacOS, and Mobile), cloud services (Google, Amazon, Microsoft to include M365), network...


  • London, Greater London, United Kingdom QinetiQ Security & Defence Contractors Full time £85,000 - £110,000 per year

    Package:  Competitive Salary + BenefitsRole ID:    SF18379Are you ready to be part of the future? At QinetiQ, we're not just imagining tomorrow we are creating it. From cutting edge defence technology to ground breaking innovations our mission is to empower and protect lives. Join us as a Senior Cyber Security Consultant at any of our main sites, where...


  • London, Greater London, United Kingdom EDF UK Full time £60,000 - £100,000 per year

    Job Description As the Senior Cyber Risk Manager here at EDF, you will be responsible for providing organisational oversight, leadership, and delivery of risk management across EDF Business Units together with producing the aggregated EDF UK holistic risk management position.What you'll be doingIdentify and oversee the mitigation of cyber risks owned by...


  • London, Greater London, United Kingdom EDF (UK) Full time £60,000 - £120,000 per year

    About The RoleAs the Senior Cyber Risk Manager here at EDF, you will be responsible for providing organisational oversight, leadership, and delivery of risk management across EDF Business Units together with producing the aggregated EDF UK holistic risk management position.What You'll Be DoingIdentify and oversee the mitigation of cyber risks owned by the...


  • London, Greater London, United Kingdom EDF Energy Limited Full time £60,000 - £120,000 per year

    About the RoleAs the Senior Cyber Risk Manager here at EDF, you will be responsible for providing organisational oversight, leadership, and delivery of risk management across EDF Business Units together with producing the aggregated EDF UK holistic risk management position. What you'll be doingIdentify and oversee the mitigation of cyber risks owned by the...


  • London, Greater London, United Kingdom Heathrow Airport Full time £100,000 - £150,000 per year

    DescriptionAt Heathrow, the safety and security of our passengers and operations is our top priority. We're looking for a Cyber Security Manager – Threat Management to help lead our threat defence capabilities, protect our digital and operational environments, and contribute to the UK's critical national infrastructure.This is a unique opportunity to play...

  • Head of Risk, Cyber

    10 hours ago


    London, Greater London, United Kingdom Schroders Full time £80,000 - £120,000 per year

    Job DescriptionHead of Risk – Cyber & TechnologyWho We're Looking ForWe are looking for an experienced cyber and technology risk professional with strong technical skills combined with the ability to communicate with and influence both technical and non-technical senior management.About SchrodersWe're a global investment manager. We help institutions,...