At Sellafield Ltd, we are harnessing our expertise; bringing together world-class skills and innovative technology to solve complex nuclear, infrastructure, and engineering challenges. By joining Sellafield Ltd, you join an amazing team of people, from all walks of life, where you can thrive in a connected, considerate culture of innovation, collaboration, and community; and play a significant part in the UK's sustainable nuclear future.
Responsible for establishing and delivering a robust second-line cyber assurance capability across Sellafield Ltd. The role ensures that cyber security controls, processes, and systems are independently assessed for effectiveness, compliance, and alignment with regulatory expectations and business risk appetite. Operating within a highly regulated and safety-critical environment, the postholder supports the Head of GRCA and the wider cyber security function by providing meaningful insight into the organisation’s cyber resilience and driving continuous improvement. The Team Lead works closely with risk and compliance leads, ICT delivery teams, and internal/external audit functions to ensure assurance is embedded, risk-informed, and proportionate. The role also supports regulatory engagement and contributes to maintaining confidence in Sellafield Ltd cyber security posture. Lead the development and execution of a risk-based cyber assurance strategy and annual plan, ensuring alignment with organisational objectives and regulatory expectations. Oversee the delivery of second-line assurance activities, including control effectiveness testing, process evaluations, and thematic reviews across IT, OT, technical architecture, and supply chain domains. Provide independent, expert assurance on the adequacy and effectiveness of cyber security controls, risk mitigations, and governance arrangements. Take ownership to proactively identify, assess, and escalate risks that could impact safety, compliance, and/or project delivery. Ensure timely communication of potential risks to relevant stakeholders and contribute to mitigation planning. Coordinate with first-line ICT, engineering, and supply chain teams, as well as third-line audit, to ensure assurance coverage is integrated, efficient, and comprehensive. Produce high-quality assurance reports, dashboards, and insights for senior...
Fill in the form that pops out with your email address and desired contact frequency then click the 'Subscribe' button on the form.
You will have the choice to opt out of the alert in the email confirmation.