Cyber Security Governance, Risk & Compliance

Cyber Security Governance, Risk & Compliance

Posted Today by Totaljobs

£64 Per hour
Undetermined
Undetermined
Lancashire

Summary: The Cyber Security Governance, Risk & Compliance role is responsible for leading cyber risk governance and maintaining relationships with senior stakeholders. The position involves developing policies and processes for cyber risk management, conducting assessments, and ensuring compliance with regulatory standards. Additionally, the role includes reporting on metrics and supporting threat mitigation strategies within the organization.

Key Responsibilities:

  • Acts as the authoritative point of contact for senior stakeholders regarding cyber risk governance.
  • Maintains strong relationships with senior business leaders across the organization.
  • Develops plans, policies, and processes for cyber risk and governance services.
  • Coordinates the promotion and implementation of cyber governance services.
  • Facilitates the development of tools and documentation related to cyber risk and governance.
  • Conducts regular service reviews for continuous improvement opportunities.
  • Develops and manages the Air Cyber Risk Management and Assessment Methodologies.
  • Ensures services operate in line with processes, policies, and regulatory standards.
  • Supports the business in defining risk tolerances for systems and processes.
  • Reports on and analyses metrics, KPIs, and performance indicators.
  • Produces inputs for key reporting projects across the sector.
  • Supports the development of corporate threat assessment methodologies.
  • Maintains high standards of Safety, Health & Environment (SHE).

Key Skills:

  • Strong understanding of emerging cyber requirements and evolving cyber security threats.
  • Broad technical knowledge of IT infrastructure and technologies.
  • Excellent understanding of government and industry security policies and standards.

Salary (Rate): £64.07 per hour

City: Lancashire

Country: United Kingdom

Working Arrangements: undetermined

IR35 Status: undetermined

Seniority Level: undetermined

Industry: IT

Detailed Description From Employer:

Key Responsibilities

  • Strategic Leadership & Stakeholder Engagement
  • Acts as the authoritative point of contact for senior stakeholders and influencers regarding cyber risk governance.
  • Maintains strong, trusted relationships with senior business leaders across the organisation.
  • Maintains a broad understanding of internal and external security environments, including emerging threats and industry trends.
  • Policy, Process & Service Development
  • Develops plans, policies, and processes for the delivery and management of cyber risk and governance services.
  • Coordinates the promotion, development, and implementation of cyber governance services in collaboration with management and strategy teams.
  • Facilitates the development of tools, documentation, and supporting materials related to cyber risk and governance.
  • Conducts regular service reviews to identify and implement continuous improvement opportunities.
  • Risk Management & Assessment
  • Develops, maintains, tests, deploys, and manages the Air Cyber Risk Management and Assessment Methodologies.
  • Ensures cyber risk and governance services operate in line with agreed processes, policies, and regulatory standards.
  • Supports the business in defining risk tolerances and appetites for systems and processes.
  • Ensures cyber risk and governance principles are embedded throughout the full system and project lifecycle.
  • Reporting & Metrics
  • Reports on and analyses metrics, KPIs, and performance indicators across cyber risk and governance activities.
  • Produces inputs for key reporting projects across the sector.
  • Ensures Air Cyber risks are accurately reflected in the corporate risk framework and prioritised appropriately.
  • Threat & Mitigation Support
  • Supports the development of corporate threat assessment methodologies.
  • Works with Group IM&T to enhance risk mitigation strategies and ensure alignment with organisational priorities.
  • Safety Responsibilities
  • The role holder is responsible for maintaining high standards of Safety, Health & Environment (SHE), including:
  • Taking reasonable care of their own health and safety.
  • Following all instructions, information, and training provided.
  • Reporting hazards, incidents, or unsafe conditions.
  • Using all equipment correctly and for its intended purpose.
  • Responsibilities are further detailed in:
  • Company Health & Safety Policy (759/OF/016)
  • Company Environmental Policy (759/OF/029)