To lead the governance of cyber security projects, ensuring effective governance, budget control, risk management, and stakeholder engagement. The role will drive the implementation of cyber security capabilities and controls across the organisation, balancing business priorities, regulatory obligations, and security requirements to deliver measurable risk reduction.
-
Play an active role in the end-to-end delivery of complex cyber security projects and initiatives, ensuring alignment to organisational security strategy and objectives.
- Establish and maintain robust project governance, reporting, budget management, and delivery controls.
- Manage project risks, issues, dependencies, and mitigations, ensuring security and business impacts are clearly understood and addressed.
- Engage and influence a broad range of senior business, technology, and security stakeholders within a complex organisational environment.
- Coordinate cross-functional teams to deliver cyber security capabilities, controls, and improvements to agreed timelines and quality standards.
- Provide clear and concise updates to programme leadership, governance forums, and executive stakeholders.
- Support compliance with regulatory and industry frameworks, with RIIO knowledge considered advantageous.
Technical Skills:
- Significant experience working with projects within IT or preferably OT, with cyber security project delivery experience strongly preferred.
- Good understanding of cyber security principles, controls, and risk management practices.
- Experience delivering security initiatives such as identity and access management, security operations, vulnerability management, cloud security, or regulatory compliance programmes.
- Working knowledge of JIRA and associated delivery management tools (desirable).
- Understanding of RIIO and the regulatory landscape within critical national infrastructure or regulated industries (beneficial but not essential).
Functional Skills
- Some project management experience with a proven track record of delivering large-scale cyber security or technology transformation project
- Demonstrable expertise in project governance, financial management, and executive reporting.
- Excellent stakeholder management and influencing skills, with the ability to navigate organisational complexity and competing priorities.
- Strong leadership capability, driving collaboration across business, technology, and security teams.
- Proven experience managing risk, dependencies, and change within projects.
Desirables
- Understanding of 62443
- Understanding of Energy Sector
- Understanding of RIIO submissions
- Understanding of NCSC CAF
- Understanding of NIS regulations
We have a high-performance culture which is balanced evenly with world-class well-being initiatives and benefits:
- Flexible Working: Balance your work and personal life with our flexible working options.
- Generous Holiday Allowance: Enjoy 25 days of holiday, plus bank holidays, with the option to buy up to 5 additional days of annual leave.
- Medicash & Critical Illness Scheme
- Financial & Investment Benefits: Enjoy peace of mind with our Pension, Life Assurance, and Share Save Scheme.
- Community & Volunteering Programmes: Make a difference in your community with our volunteering opportunities.
- Green Car Scheme: Drive green and save money with our eco-friendly car scheme.
- Cycle Scheme: Stay fit and healthy with our cycle-to-work scheme.
- Special Time Off: Take time off for those big moments in life, like getting married/entering into a civil partnership, becoming a grandparent, and welcoming home a new pet.
- Family Planning: Benefit from our generous maternity and paternity leave, as well as time off and support for those undergoing fertility treatments.
We assess, develop and manage cyber threats across our increasingly connected society. We advise global technology, manufacturers, financial institutions, critical national infrastructure providers, retailers and governments on the best way to keep businesses, software and personal data safe.
With our knowledge, experience and global footprint, we are best placed to help businesses identify, assess, mitigate & respond to the risks they face.
We are passionate about making the Internet safer and revolutionising the way in which organisations think about cyber security.
Headquartered in Manchester, UK, with over 35 offices across the world, NCC Group employs more than 2,000 people and is a trusted advisor to 15,000 clients worldwide.
We review every application received and will get in touch if your skills and experience match what we’re looking for. If you don’t hear back from us within 10 days, please don’t be too disappointed – we may keep your CV on our database for any future vacancies and we would encourage you to keep an eye on our career opportunities as there may be other suitable roles.
If you do not want us to retain your details, you can utilise the Manage Your Data tool provided by Pinpoint or contact us directly at:
[email protected]. All personal data is held in accordance with the NCC Group Privacy Notice.
We are committed to diversity and flexibility in the workplace. If you require any reasonable adjustments to support you during the application process, please tell us at any stage.
Please note that this role involves mandatory pre-employment background checks due to the nature of the work NCC Group does. To apply, you must be willing and able to undergo the vetting process.