Programme Manager - Cyber Security, ISO 27001 - Outside IR35

Programme Manager - Cyber Security, ISO 27001 - Outside IR35

Posted 2 days ago by 1770519234

Negotiable
Outside
Hybrid
England

Summary: The role of IT Programme Manager focuses on overseeing a comprehensive cyber security programme, particularly in Cyber Risk Reduction and ISO27001 compliance. The position requires strategic alignment with business objectives while managing multiple projects and stakeholder expectations. Candidates should be based in or near Yorkshire for easy commuting. The role is classified as outside IR35, indicating a flexible working arrangement in a fast-paced environment.

Key Responsibilities:

  • Cyber Planning & Governance: Defining the overall cybersecurity strategy and roadmap, prioritising workstreams based on risk and business value, and establishing the governance framework, reporting structures, and decision-making processes.
  • Delivery Oversight: Leading the end-to-end delivery of complex cyber programmes across multiple business units, ensuring all projects within the programme meet agreed time, budget, and quality constraints.
  • ISO 27001 (Information Security Management): Identifying, tracking, escalating, and mitigating programme-level risks, issues, and interdependencies, and ensuring alignment with regulatory obligations and control frameworks.
  • Stakeholder Engagement: Acting as the primary point of contact for senior stakeholders (CISO, CIO, HR, etc.), managing expectations, and communicating progress, risks, and decisions clearly to executive leadership.
  • Resource & Vendor Management: Managing programme budgets, resource allocation, and relationships with third-party suppliers and vendors to ensure cost-effective delivery.
  • Change Management: Coordinating activities between IT, security, and business teams, ensuring seamless integration of technology solutions and alignment with organisational change initiatives.

Key Skills:

  • Extensive experience in IT governance and cyber security.
  • Strong background in Cyber Risk Reduction and ISO27001 compliance.
  • Proven track record in programme management and delivery oversight.
  • Excellent stakeholder management and communication skills.
  • Ability to manage budgets and vendor relationships effectively.
  • Experience in change management and coordinating cross-functional teams.

Salary (Rate): undetermined

City: undetermined

Country: England

Working Arrangements: hybrid

IR35 Status: outside IR35

Seniority Level: undetermined

Industry: IT

Detailed Description From Employer:

Outside IR35, Programme Manager, Yorkshire, Hybrid Working , Fast paced environment, meticulous IT governance background, Cyber Risk Reduction, IT planning, Risk Management, Stakeholder Management, ISO27001

We are looking for a to recruit an IT Programme Manager for a Cyber workstream specifically around Cyber Risk Reduction / ISO27001 is a high-level professional responsible for defining, planning, and overseeing the execution of an organisation's entire cyber security programme, which is comprised of multiple related projects workstreams. This role focuses on strategic alignment with business needs and managing big-picture outcomes together with balancing more shorter term incentives and actions along a strategic road map. I am really focused on candidates who are based in easy commute into the Yorkshire area.

Key Responsibilities

  • Cyber Planning & Governance: Defining the overall cybersecurity strategy and roadmap, prioritising workstreams based on risk and business value, and establishing the governance framework, reporting structures, and decision-making processes.
  • Delivery Oversight: Leading the end-to-end delivery of complex cyber programmes across multiple business units, ensuring all projects within the programme meet agreed time, budget, and quality constraints.
  • ISO 27001 (Information Security Management)- Identifying, tracking, escalating, and mitigating programme-level risks, issues, and interdependencies, and ensuring alignment with regulatory obligations and control frameworks
  • Stakeholder Engagement: Acting as the primary point of contact for senior stakeholders (CISO, CIO, HR, etc.), managing expectations, and communicating progress, risks, and decisions clearly to executive leadership.
  • Resource & Vendor Management: Managing programme budgets, resource allocation, and relationships with third-party suppliers and vendors to ensure cost-effective delivery.
  • Change Management: Coordinating activities between IT, security, and business teams, ensuring seamless integration of technology solutions and alignment with organisational change initiatives.

If this sounds of interest and you are available immediately and in the geographic catchment, please apply