Vacancies

3 jobs available

Cyber Policy Advisor

Closing date: 03/08/2026 View

Role area IT Information Services
Salary £49,239
Location Sellafield or Risley
Closing date: 03/08/2026

About the role

At Sellafield Ltd, we are harnessing our expertise; bringing together world-class skills and innovative technology to solve complex nuclear, infrastructure, and engineering challenges. By joining Sellafield Ltd, you join an amazing team of people, from all walks of life, where you can thrive in a connected, considerate culture of innovation, collaboration, and community; and play a significant part in the UK's sustainable nuclear future. The challenges we face are amongst the most complex anywhere in the world. We are using advanced technologies to shape, create and advance the world’s nuclear decommissioning knowledge and capability. That’s why our work is driven by people with a passion for problem-solving and innovation.

As a Cyber Policy Advisor, you will play a key role in shaping and implementing cyber security and resilience policies across the Sellafield Ltd estate. You will work closely with internal teams, government departments, regulators, and industry stakeholders to identify cyber risks and develop strategic responses. Develop and maintain cyber security and information assurance policies aligned with national standards (e.g., NCSC, NIS Regulations, ONR guidance). Provide expert policy advice to IT, cyber operations, and senior leadership teams. Monitor regulatory changes and emerging threats to ensure policy relevance and compliance. Collaborate with internal stakeholders (e.g., IT, Legal, Risk, Operations) and external partners (e.g., ONR, NCSC, DESNZ). Act as the point of contact for cyber policy matters with external regulators. Support audits, inspections, and assurance activities related to cyber governance. Lead or contribute to cyber incident response planning and policy updates. Directly influence the organisation’s cyber resilience posture, regulatory compliance, and reputation. Work closely with cyber operations, information assurance, and digital transformation teams. Strong understanding of cyber security frameworks (e.g., ISO 27001, NIST, CAF). Experience in policy development, risk management, or cyber governance. Familiarity with UK regulatory landscape for critical national infrastructure (CNI), especially in the nuclear sector. Excellent written and verbal communication skills, with the ability to translate technical concepts into policy language. Proven ability to work with multidisciplinary teams and external regulators. Skills considered Desirable… Experience working in or with the nuclear industry or other...

Closing date: 03/08/2026

Cyber Risk Management Opportunities

Closing date: 03/08/2026 View

Role area IT Information Services
Salary £55,425 - £72,224
Location Sellafield or Risley

About the role

At Sellafield Ltd, we are harnessing our expertise; bringing together world-class skills and innovative technology to solve complex nuclear, infrastructure, and engineering challenges. By joining Sellafield Ltd, you join an amazing team of people, from all walks of life, where you can thrive in a connected, considerate culture of innovation, collaboration, and community; and play a significant part in the UK's sustainable nuclear future. The challenges we face are amongst the most complex anywhere in the world. We are using advanced technologies to shape, create and advance the world’s nuclear decommissioning knowledge and capability. That’s why our work is driven by people with a passion for problem-solving and innovation.

Cyber Risk Management roles are responsible for embedding effective cyber risk management across Sellafield Ltd. They ensure cyber risks are identified, assessed, and treated in alignment with business objectives and enterprise risk frameworks. These roles drive the development and application of risk methodologies, tools, and reporting to support informed decision-making. The Cyber Risk Manager delivers operational risk assessments, engages with stakeholders, and supports continuous improvement of risk processes. The Senior Cyber Risk Manager provides strategic oversight, leads on complex risk areas, and supports regulatory and executive engagement. Both roles contribute to strengthening cyber resilience, promoting risk awareness, and ensuring cyber risk is managed proactively across the organisation. Conduct and support cyber risk assessments across systems, services, and projects. Maintain and update the cyber risk register, ensuring timely escalation of significant risks. Collaborate with ICT, business units, and project teams to embed cyber risk management practices. Support the development and implementation of cyber risk frameworks, tools, and methodologies. Provide expert advice on cyber risk mitigation strategies and treatment plans. Contribute to the development of risk reporting for governance forums and regulatory bodies. Monitor emerging threats and assess their potential impact on the organisation’s risk posture. Promote cyber risk awareness and training across the organisation. Experience in cyber risk management, ideally within a regulated or critical infrastructure environment. Understanding of cyber risk frameworks (e.g., ISO 27005, NIST, FAIR) and the NCSC CAF. Degree or equivalent in cyber security, risk management, or...

SOC Engineer Opportunities

Closing date: 03/08/2026 View

Role area IT Information Services
Salary £55,425 - £72,224
Location Sellafield or Risley

About the role

At Sellafield Ltd, we are harnessing our expertise; bringing together world-class skills and innovative technology to solve complex nuclear, infrastructure, and engineering challenges. By joining Sellafield Ltd, you join an amazing team of people, from all walks of life, where you can thrive in a connected, considerate culture of innovation, collaboration, and community; and play a significant part in the UK's sustainable nuclear future. The challenges we face are amongst the most complex anywhere in the world. We are using advanced technologies to shape, create and advance the world’s nuclear decommissioning knowledge and capability. That’s why our work is driven by people with a passion for problem-solving and innovation.

The SOC Engineering opportunities will support Sellafield Ltd to deliver expert engineering, optimisation and lifecycle management of SOC platforms, ensuring high availability, security and scalability to enable robust, proactive threat detection and response in alignment with business and regulatory requirements. Engineer, optimise, and maintain SOC platforms (e.g., SIEM/SOAR such as Microsoft Sentinel, Defender suite, Log Analytics) to maximise security operations effectiveness. Onboard, validate, and document new log sources in line with operational detection requirements. Deploy, configure, and monitor platform agents and sensors across on-prem, cloud, and hybrid environments. Implement and tune analytics rules, detection logic and KQL queries, collaborating with threat detection and response teams. Develop, maintain, and improve automation workflows (e.g., SOAR playbooks, Logic Apps, scripts) to streamline detection and response. Produce and review reports on platform health, coverage gaps, and ingestion volumes to inform operational improvements and cost optimisation. Provide guidance and mentorship to SOC engineering colleagues and contribute to skills development across the team. Collaborate with ICT and business stakeholders to prioritise engineering work based on risk/business value. Ensure robust documentation, adherence to standards, and maintenance of secure engineering practices in line with frameworks such as NCSC CAF, MITRE ATT&CK, and NIST CSF. Monitor and manage performance and cost of cloud native security services (e.g., Azure security tooling), supporting optimisation efforts. Lead telemetry engineering, including designing parsers, data schemas, onboarding runbooks, retention and normalisation to support detection and forensics. Participate in incident response activities as...

Location

Contract type

Fill in the form that pops out with your email address and desired contact frequency then click the 'Subscribe' button on the form.

You will have the choice to opt out of the alert in the email confirmation.