Negotiable
Undetermined
Undetermined
Portsmouth, England, United Kingdom
Summary: The Senior Project Manager for Cyber Security Incident Documentation & Risk Governance will lead the documentation and governance of cyber security incidents and risk management processes. This role is critical in ensuring that clients' cyber security frameworks and compliance measures are effectively documented and operationalized. The ideal candidate will coordinate cross-functional teams and enhance governance structures to align with industry best practices. Strong experience in cybersecurity risk management and project management is essential for success in this position.
Key Responsibilities:
- Lead and oversee cyber security incident documentation, ensuring accuracy, completeness, and compliance with regulatory and internal policies.
- Develop and enhance risk management frameworks, governance processes, and cybersecurity controls to align with industry best practices.
- Implement and maintain governance structures to ensure compliance with security policies, standards, and regulatory requirements.
- Coordinate cross-functional teams, including IT, legal, compliance, and business units, to manage cybersecurity risks and incidents.
- Establish and improve processes for incident response, risk assessments, and mitigation strategies.
- Track and report key performance indicators (KPIs) related to cybersecurity incidents, governance, and risk management.
- Provide expert guidance on cybersecurity risk mitigation strategies and best practices.
- Lead post-incident reviews to identify gaps and areas for improvement in security controls and governance.
- Collaborate with auditors, regulatory bodies, and internal teams to ensure compliance with security frameworks such as NIST, ISO 27001, CIS, and SOC 2.
- Develop training and awareness programs related to cyber security governance and incident response.
Key Skills:
- Bachelor’s or Master’s degree in Cyber Security, Information Technology, Business Administration, or a related field.
- Minimum of 7+ years of experience in cybersecurity risk management, governance, or compliance.
- Strong experience with cybersecurity frameworks, standards, and regulations (e.g., NIST, ISO 27001, GDPR, SOC 2, CIS controls).
- Demonstrated ability to manage cybersecurity incidents and document processes effectively.
- Experience with risk management tools and governance platforms.
- Strong project management skills with experience leading large-scale security projects.
- Excellent written and verbal communication skills, with an ability to present complex security concepts to stakeholders.
- Certifications such as CISSP, CISM, CRISC, PMP, or equivalent are highly desirable.
- Hands-on experience with Security Information and Event Management (SIEM) tools.
- Knowledge of regulatory compliance requirements in financial services, healthcare, or government sectors.
- Familiarity with cloud security governance and controls (AWS, Azure, GCP).
- Strong analytical skills and ability to interpret security data and trends.
Salary (Rate): undetermined
City: Portsmouth
Country: United Kingdom
Working Arrangements: undetermined
IR35 Status: undetermined
Seniority Level: Senior
Industry: IT