Enable job alerts via email!
Boost your interview chances
Create a job specific, tailored resume for higher success rate.
An established industry player is seeking a dynamic Cyber Governance, Risk & Assurance Lead to spearhead their cyber security initiatives. This role offers the chance to lead a dedicated team, manage critical operations, and enhance the organization's cyber security posture. You will work on compliance, risk management, and incident response while collaborating with international teams. With a competitive salary and a range of attractive benefits, this position is perfect for those looking to make a significant impact in a forward-thinking company committed to sustainability and innovation in the energy sector.
Cyber Governance, Risk & Assurance Lead
ScottishPower HQ, Glasgow - hybrid working
Salary: £46-57K (plus up to 10% bonus)
Permanent, Full Time
Help us create a better future, quicker
We are seeking a dynamic Cyber Governance, Risk & Assurance Lead, to lead and manage our cyber security initiatives. This role involves planning, directing, and controlling cyber security business operations, while working alongside a team of dedicated security professionals.
What you'll be doing
The successful candidate will lead and manage cyber security initiatives and operational staff, oversee resource utilization, and initiate corrective actions for the cyber security function. They will collaborate on various cyber security functions, including third-party management, data management (Data Loss Prevention), control assurance, response & recovery, and training & awareness programs. Additionally, they will contribute to the global cyber security function, enhancing our cyber security posture and protecting systems and data against threats. The role also involves supporting the cyber security function to reduce risk, achieve compliance with industry standards, and ensure business resilience.
The role requires identifying, assessing, quantifying, reporting, communicating, mitigating, and monitoring incidents. Ensuring compliance with policies, processes, and procedures, and driving process improvements is essential. The candidate will revise and develop processes to strengthen the cyber security posture, review third-party supplier arrangements, and address security challenges. They will manage data and risk activities, maintaining assurance frameworks for control effectiveness, and integrate and optimize security services and platforms.
The Lead will support regulatory and industry compliance standards and risk reporting. They will collaborate with international companies within the Iberdrola Group (e.g., Scottish Power, Corporate IT, Iberdrola Cyber Fusion Centre) and external clients providing cyber services. Promoting good cyber security practices and supporting business activities across the organization is also a key aspect of the role.
What you'll bring
The ideal candidate will have proven experience in managing cyber security, with or working towards certifications like CISSP, CISM, BCS ISMP, or equivalent. Experience in managing cyber security in IT environments with internal and external service provision, especially in continuous monitoring and incident response, is crucial. Knowledge of ISO/IEC 27001/27002 and ISMS creation/maintenance is advantageous. Familiarity with security platforms such as SIEM/SOAR, XDR, and Vulnerability Management is also beneficial. Experience in the energy utilities sector, particularly in electricity distribution and transmission, is a plus.
What's in it for you
As well as a competitive salary which is reviewed annually, you can also enjoy a number of other benefits. With our pension scheme, we'll double match your contribution up to a company contribution of 10%.
At ScottishPower, we believe it's the little things we do in life that make a big difference. From helping you look after your family's wellbeing, save for your future and take personal steps for climate action - our benefits are designed to help you do just that - so that you have everything you need to take care of your world - today and tomorrow. That's why our benefits include: