Vacancies

2 results for "cyber"

Cyber Assurance Advisor 1

Closing in 1 day View

Role area IT Information Services
Location Sellafield or Risley
Band 4B

About the role

The Cyber Assurance Advisor I role is responsible for supporting the delivery of second-line cyber assurance across key technology domains, including Operational Technology (OT), Information Technology (IT), Technical Architecture, and Supply Chain. This role focuses on evaluating the effectiveness of cyber security controls, identifying areas of risk management, and ensuring that appropriate mitigation strategies are in place. Working under the direction of the Cyber Assurance Principal Advisor and in collaboration with the Cyber Assurance Team Lead, the postholders contribute to the organisation’s overall cyber resilience by conducting assurance activities, supporting compliance with internal and external requirements, and ensuring that findings are clearly communicated and addressed. Their work helps maintain a strong security posture and supports informed decision-making across the business.

Support the planning, coordination, and delivery of cyber assurance activities across IT, OT, technical architecture, and supply chain domains. Conduct cyber control testing, evidence reviews, and contribute to structured assurance assessments to evaluate the effectiveness of security measures. Assist in the development and presentation of assurance reports, dashboards, and metrics for internal stakeholders, enabling informed risk-based decisions. Maintain and update assurance documentation, including assessment records, evidence logs, and action tracking registers. Identify control weaknesses and/or gaps that create or increase risks. Collaborate with ICT, engineering, and supply chain teams to gather evidence, validate control implementation, and support timely remediation of identified issues. Contribute to regulatory and audit readiness by supporting evidence collation, documentation reviews, and preparation activities. Monitor and maintain awareness of emerging cyber threats, regulatory developments, and assurance best practices to inform assurance planning and execution. Support continuous improvement of assurance methodologies, tools, and processes to enhance the effectiveness and efficiency of cyber assurance activities. Participate in knowledge sharing and awareness initiatives to promote a strong cyber risk culture across the organisation. The Cyber Assurance Advisor I role operates within a complex and evolving digital environment where cyber threats are increasingly sophisticated and regulatory expectations continue to grow. This role sits within the second line of defence, providing independent oversight and assurance of cyber security controls across diverse domains including IT, OT, technical architecture, and supply chain. The postholders are expected to work collaboratively across business units, often engaging...

Cyber Process Manager

Closing in 1 day View

Role area IT Information Services
Location Sellafield or Risley
Band 3B Lower

About the role

The Cyber Process Manager is responsible for designing, implementing, and continuously improving cyber security processes across Sellafield Ltd to ensure they are efficient, consistent, and aligned with regulatory, operational, and business requirements. The role plays a critical part in embedding structured, repeatable, and auditable practices that underpin the organisation’s compliance, and assurance activities. Operating within a highly regulated and technically complex environment, the postholder works closely with compliance, assurance, and ICT delivery teams to ensure that cyber processes are integrated into day-to-day operations and support strategic objectives. The role also contributes to audit readiness, regulatory engagement, and the development of a mature, process-driven cyber security function that can adapt to evolving threats and expectations.

Lead the design, documentation, and implementation of cyber security processes and workflows. Ensure cyber processes align with CAF principles, regulatory requirements (e.g., ONR SyAPs, NISR 2003), and internal governance frameworks. Collaborate with cyber risk, compliance, and assurance teams to ensure process integration and consistency. Monitor process performance using KPIs and metrics; identify and implement improvements. Support internal and external audits by ensuring process documentation and evidence are maintained and accessible. Act as a subject matter expert on cyber process management, providing guidance to ICT and business stakeholders. Drive process automation and standardisation to improve efficiency and reduce operational risk. Maintain a central repository of cyber security process documentation and ensure version control and accessibility. Support regulatory engagement with the ONR by ensuring cyber security processes are transparent, well-documented, and demonstrably aligned with regulatory expectations. Provide evidence and process insights during inspections, audits, and formal reviews. Support the Head of GRCA and Cyber Risk Team Lead in embedding a culture of process excellence and continuous improvement. Budget Responsibility: Contributes to process improvement initiatives within the GRCA budget. Matrixed Line Management responsibility. Decision-Making Authority: Authority to define and approve cyber process documentation and improvement plans. Strong experience in process design and improvement, ideally within a cyber security or ICT environment. Familiarity with process frameworks such as ITIL, COBIT, or ISO 27001. Understanding of cyber security principles and regulatory requirements (e.g., CAF, NISR, ONR SyAPs). Experience...

Location

Contract type

Band

Fill in the form that pops out with your email address and desired contact frequency then click the 'Subscribe' button on the form.

You will have the choice to opt out of the alert in the email confirmation.