The Cyber Process Manager is responsible for designing, implementing, and continuously improving cyber security processes across Sellafield Ltd to ensure they are efficient, consistent, and aligned with regulatory, operational, and business requirements. The role plays a critical part in embedding structured, repeatable, and auditable practices that underpin the organisation’s compliance, and assurance activities. Operating within a highly regulated and technically complex environment, the postholder works closely with compliance, assurance, and ICT delivery teams to ensure that cyber processes are integrated into day-to-day operations and support strategic objectives. The role also contributes to audit readiness, regulatory engagement, and the development of a mature, process-driven cyber security function that can adapt to evolving threats and expectations.
Lead the design, documentation, and implementation of cyber security processes and workflows. Ensure cyber processes align with CAF principles, regulatory requirements (e.g., ONR SyAPs, NISR 2003), and internal governance frameworks. Collaborate with cyber risk, compliance, and assurance teams to ensure process integration and consistency. Monitor process performance using KPIs and metrics; identify and implement improvements. Support internal and external audits by ensuring process documentation and evidence are maintained and accessible. Act as a subject matter expert on cyber process management, providing guidance to ICT and business stakeholders. Drive process automation and standardisation to improve efficiency and reduce operational risk. Maintain a central repository of cyber security process documentation and ensure version control and accessibility. Support regulatory engagement with the ONR by ensuring cyber security processes are transparent, well-documented, and demonstrably aligned with regulatory expectations. Provide evidence and process insights during inspections, audits, and formal reviews. Support the Head of GRCA and Cyber Risk Team Lead in embedding a culture of process excellence and continuous improvement. Budget Responsibility: Contributes to process improvement initiatives within the GRCA budget. Matrixed Line Management responsibility. Decision-Making Authority: Authority to define and approve cyber process documentation and improvement plans. Strong experience in process design and improvement, ideally within a cyber security or ICT environment. Familiarity with process frameworks such as ITIL, COBIT, or ISO 27001. Understanding of cyber security principles and regulatory requirements (e.g., CAF, NISR, ONR SyAPs). Experience...
A Health and Safety Lead acts as the functional authority within Sellafield Ltd for specific Health & Safety (H&S) discipline (e.g. Conventional Health & Safety, Radiological Protection, Occupational Hygiene, Chemical Safety / COMAH, Fire Protection, Management of Contractors, Governance and Oversight, Regulatory Integration). They ensure that all matters related to the assigned discipline are effectively managed, with appropriate consideration of business risk, cost, and schedule impact. The job holders are responsible for shaping company-wide policy, defining standards, setting improvement objectives, and providing assurance to the SHEQ Director, SHEQ Lead Team and H&S Duty Holders on company safety performance.
Act as the senior authority for Conventional Safety and source of corporate knowledge, in order to provide specialist advice, guidance and services to the business. Shape company H&S strategy and policy, and provide the safety ‘rules and tools’ required to support the safe execution of the Sellafield Plan. Ensure that all relevant legislative requirements, standards and industry good practice are interpreted and incorporated within the Sellafield Ltd Management System. Define company improvement objectives and targets, and establish Key Performance Indicators to measure and monitor performance against those targets. Act as an Intelligent Customer for H&S; owning and overseeing outsourced work, ensuring specifications are clear, outputs meet regulatory and safety standards, and Sellafield Ltd retains accountability for safety-critical decisions. Ensure that effective governance arrangements are implemented across the enterprise and assure the business on performance against legislative and company standards and targets. Ensure accurate and timely reporting of significant H&S issues and ensure that effective corrective action plans and improvement programmes are developed and implemented to address gaps in regulatory compliance. Promote a culture of organisational learning to continually improve performance. Identify and provide ownership and active management of enterprise level H&S risks. Act as a conscience of the organisation, intervening as appropriate to challenge activities which threaten H&S standards and performance. Own and continuously enhance the company’s Health & Safety training programmes, ensuring alignment with regulatory and operational requirements. Define company nuclear baseline and SQEP requirements for key H&S roles....
Expression of Interest (EOI) We are inviting Expressions of Interest (EOI) from our existing Nuclear Operators for future opportunities in shift vacancies. This is to enable the continued support to business needs including Minimum Safety Staffing Levels (MSSL). To be considered for a shift position, an employee must: Be a fully competent Nuclear Operator Have a performance rating of meets expectations as a minimum for the 25/26 Financial Year Be willing to move to another facility if required Have a minimum of 2 years length of service within a Nuclear Operator role. Individuals may express interest in one alternative shift working pattern only, and the preferred shift pattern must be different from their current arrangement. Placement into a shift role will be determined based on a combination of business requirements and individual performance. Please note that opportunities for shift roles are currently limited. As a result, eligible individuals may experience an extended wait before being matched to a suitable vacancy. If you have any queries regarding the EOI please contact: operations.profession@sellafieldsites.com
We are seeking expressions of interest from current Band 3B Upper employees who are interested in a sideways move into the Operations Profession as an Operations Manager. Operations Managers are responsible for the safe, efficient and compliant operation of a facility or group of facilities. The role involves leading teams, managing resources and delivering organisational objectives while ensuring compliance with site standards, regulatory requirements and company expectations. The role also supports continuous improvement and operational performance across the business. The recent launch of the Operations Career Pathway provides greater clarity on development opportunities within the profession and supports the development of capability and resilience across our organisation. This is an opportunity to broaden your experience, apply your existing skills in a different environment and contribute to the long-term strength of our operational workforce. If you are interested in developing your career within Operations, we encourage you to express your interest.
Manage operations that ensure compliance with the Nuclear Site Licence conditions / procedures on behalf of the Head of Operations to ensure delivery against programme / delivery plans, within the bounds of the Safety Case. Maintain and ensure nuclear safety and security, as well as other safety including conventional, industrial, radiological, and environmental, of the facility by enforcing site standards, policies, processes, procedures and training. Build and maintain relationships with internal and external stakeholders, in order to enable effective operations. Manage an operations team comprising Team Leaders and Operators, coaching the team, setting objectives, and reviewing performance, ensuring training takes place to ensure that staff have the necessary skills and knowledge to complete operations in a safe and effective manner. Authorise and validate modifications to ensure facilities are safe and well maintained. Manage operational delivery and improvements to ensure delivery against programme in a safe manner. Ensure governance arrangements are in place to support safe delivery of operational activities including effective assessment. In addition to the above, role holders are expected to fulfil other duties and tasks that are commensurate with their grade, assigned to them by management to ensure efficient operations and the success of the team / organisation. Essential Skills: Significant experience (typically at least 2-3 years) within or supporting operations. In addition, Operations Manager 2 (B3B Upper) roles require broader experience typically gained from working across multiple operational areas. Sound knowledge of Safety Case principles and the application...
The Cyber Assurance Advisor I role is responsible for supporting the delivery of second-line cyber assurance across key technology domains, including Operational Technology (OT), Information Technology (IT), Technical Architecture, and Supply Chain. This role focuses on evaluating the effectiveness of cyber security controls, identifying areas of risk management, and ensuring that appropriate mitigation strategies are in place. Working under the direction of the Cyber Assurance Principal Advisor and in collaboration with the Cyber Assurance Team Lead, the postholders contribute to the organisation’s overall cyber resilience by conducting assurance activities, supporting compliance with internal and external requirements, and ensuring that findings are clearly communicated and addressed. Their work helps maintain a strong security posture and supports informed decision-making across the business.
Support the planning, coordination, and delivery of cyber assurance activities across IT, OT, technical architecture, and supply chain domains. Conduct cyber control testing, evidence reviews, and contribute to structured assurance assessments to evaluate the effectiveness of security measures. Assist in the development and presentation of assurance reports, dashboards, and metrics for internal stakeholders, enabling informed risk-based decisions. Maintain and update assurance documentation, including assessment records, evidence logs, and action tracking registers. Identify control weaknesses and/or gaps that create or increase risks. Collaborate with ICT, engineering, and supply chain teams to gather evidence, validate control implementation, and support timely remediation of identified issues. Contribute to regulatory and audit readiness by supporting evidence collation, documentation reviews, and preparation activities. Monitor and maintain awareness of emerging cyber threats, regulatory developments, and assurance best practices to inform assurance planning and execution. Support continuous improvement of assurance methodologies, tools, and processes to enhance the effectiveness and efficiency of cyber assurance activities. Participate in knowledge sharing and awareness initiatives to promote a strong cyber risk culture across the organisation. The Cyber Assurance Advisor I role operates within a complex and evolving digital environment where cyber threats are increasingly sophisticated and regulatory expectations continue to grow. This role sits within the second line of defence, providing independent oversight and assurance of cyber security controls across diverse domains including IT, OT, technical architecture, and supply chain. The postholders are expected to work collaboratively across business units, often engaging...
To lead the Protective Monitoring team in delivering proactive and reactive monitoring of security events across the organisation’s technical infrastructure. The role ensures timely detection, analysis, and escalation of potential cyber threats, supporting the organisation’s resilience against security incidents. The Team Lead will manage operational processes, develop team capability, and ensure compliance with regulatory and organisational security standards.
Lead and manage the Protective Monitoring team, ensuring effective allocation of resources and prioritisation of tasks. Oversee the monitoring, detection, and analysis of security events using SIEM and related technologies. Ensure timely escalation and coordination of incident response activities in line with organisational policies. Maintain and improve protective monitoring processes, ensuring alignment with industry best practices and compliance requirements. Develop and maintain operational dashboards and reporting for senior stakeholders. Own KPIs and SLAs for the monitoring capability (MTTD, MTTR, false positive rate, ingestion latency) and provide executive reporting. Drive continuous improvement initiatives, including automation and optimisation of monitoring workflows. Provide leadership, coaching, and development opportunities for team members. Collaborate with other Cyber Security teams and stakeholders to enhance threat detection and response capabilities. Ensure adherence to data protection, confidentiality, and security standards across all monitoring activities. Decision-Making: Authority to prioritise monitoring activities and escalate incidents as per policy. People Management: Direct line management of Protective Monitoring Analysts. Systems Access: Elevated access to monitoring tools and platforms for operational oversight. Part of the emergency response arrangements. Some on call working may be required. Ability to achieve SC and NPPV Clearance. Degree or equivalent experience in a relevant discipline (e.g., Cyber Security, Computer Science, Digital Forensics). Proven experience in cyber security operations, specifically in protective monitoring or SOC environments. Demonstrated experience of strong knowledge in information security principles (security principles applied to architecture,...
The Chief Medical Officer (CMO) establishes, directs, oversees and leads Occupational Health (OH) standards across the business, acting as the senior authority on all health matters, providing strategic medical leadership across the Enterprise. To ensure that all matters relating to health within the business are addressed appropriately, taking due account of business risk, business impact, cost and schedule implications, and ensuring delivery of defined OH services that support a safe, healthy and legally compliant workforce. The CMO provides strategic and professional oversight of Occupational Health services, including but not limited to: Management referrals. Health surveillance. Statutory and task-related medicals. Substance misuse sampling and reporting. In addition, the CMO also carries out the Medical Officer (MO) role, undertaking the duties as described in the MO Job Profile. Our Occupational Health department provides a professional and technical support service to the Company and forms a key part of SL site’s first aid provision and medical emergency response to radiological and non-radiological emergencies. The Occupational Health function operates within a complex, highly regulated environment. In addition to preventative and advisory health services, the department forms a critical role in supporting resilience and medical preparedness. The Chief Medical Officer plays a key leadership role in ensuring medical readiness, resilience and professional standards within this operational context.
Represent the interests of SL regarding health issues across the population of external customers, partners, stakeholders and special interest groups, including: - Chair of the Compensation Scheme for Radiation-Linked Diseases. - Representing the company and workers on the National Registry for Radiation Workers, working group, alongside UK Health Security Agency (UKHSA). - Liaise with the Nuclear Decommissioning Authority (NDA), Trade Unions and Office of Nuclear Regulation (ONR). Ensure that appropriate and adequate services, skills, capabilities and resources are distributed within the OH department in order to maintain effective service delivery. Provide direction on work, goals, targets and priorities within the OH department. Delegate appropriate level of authority to OH team members, leading a team of Occupational physicians and nursing staff, including a 24/7 shift nursing team. Ensure the provision and maintenance of the OH department including ensuring adequate succession and development plans are in place to maintain OH capability and delivery. Oversee assurance programme for audit within the business and for external organisations such as Lloyd’s Register Quality Assurance (LRQA) and the Faculty of Occupational Medicine for SEQOHS accreditation. Lead on business continuity and recovery for Occupational Health and all things medical within SL. Liaise with Value Stream Leads, Group Business Services (GBS), Human Resources (HR) and Security Vetting to ensure operational alignment within statutory law and ethical guidance. Ensure that all relevant health legislative requirements and standards are incorporated within the SL Management System and that processes are effective and...
Fill in the form that pops out with your email address and desired contact frequency then click the 'Subscribe' button on the form.
You will have the choice to opt out of the alert in the email confirmation.