Cyber Security Assurance Specialist in Abingdon

Cyber Security Assurance Specialist in Abingdon

Abingdon Temporary 55000 - 65000 £ / year (est.) Home office (partial)
Go Premium
Alexander Mann Solutions - Public Sector Resourcing

At a Glance

  • Tasks: Conduct cyber security risk assessments and provide secure-by-design assurance across digital projects.
  • Company: Join UKAEA, a leader in sustainable fusion energy and innovative digital solutions.
  • Benefits: Competitive pay, hybrid work model, and opportunities for professional growth.
  • Other info: Exciting role with potential for career advancement in a dynamic field.
  • Why this job: Make a real impact on cyber security in cutting-edge technology environments.
  • Qualifications: Experience in cyber security, risk assessment, and strong stakeholder engagement skills.

The predicted salary is between 55000 - 65000 £ per year.

On behalf of UKAEA (UK Atomic Energy Authority) we are looking for a Cyber Security Assurance Specialist (INSIDE IR35) for an 8-month contract based Hybrid in the Abingdon, Oxford office.

Overall Purpose: UKAEA's mission is to lead the delivery of sustainable fusion energy and maximise scientific and economic impact. The Computing Division underpins this mission by delivering secure, scalable, and innovative digital solutions. The Cyber Security Assurance Specialist plays a pivotal role in advancing UKAEA's hybrid digital estate, encompassing enterprise IT, operational technology (OT), and research platforms. This role sits within the Information & Cyber Security Group and provides subject matter expertise in security architecture, cyber risk governance, and assurance frameworks.

This is a cross-functional role with both advisory and hands-on responsibilities, focusing on security assurance, risk management and supporting architecture reviews, vulnerability management, risk assessments, cyber defence posture, driving technical assurance, and embedding risk-aligned security controls across IT and OT systems and secure-by-design practices. You will work across hybrid environments including cloud, infrastructure, applications, and OT systems.

You will be responsible for:

  • Reviewing and advising on security architecture patterns.
  • Reviewing and maintaining risk registers.
  • Leading assurance assessments.
  • Embedding security controls across infrastructure and platforms.
  • Guiding teams in applying secure-by-design principles.
  • Supporting both internal audit and external compliance efforts including Gov Assure, CAF, ISO 27001, and Cyber Essentials (CE and CE+).

The role requires strong stakeholder engagement, technical depth, and a sound understanding of UK-specific cyber risk frameworks. You will help shape and maintain a secure posture across UKAEA.

As a Cyber Security Assurance Specialist your main responsibilities will be to:

  • Conduct cyber security risk assessments across IT, cloud and OT environments, including the evaluation of significant technical and architectural changes (e.g. network reconfiguration and application onboarding).
  • Provide secure-by-design assurance and guidance to digital projects across cloud, infrastructure and application initiatives.
  • Maintain, update and govern the cyber security risk register.
  • Represent Cyber Security within governance forums and cyber design/architecture authorities.
  • Lead internal technical assurance reviews aligned to Gov Assure, CAF and ISO 27001, including documentation of evidence gathering and remediation plans.
  • Support compliance activities and audit evidence packs for Gov Assure, CAF, Cyber Essentials (CE/CE+) and ISO 27001.
  • Maintain traceability of security controls to relevant frameworks (e.g. NIST, NCSC and Cyber Essentials).
  • Evaluate suppliers and third-party services against internal and external cyber risk and assurance criteria.
  • Develop, update and maintain security standards and documentation, including threat modelling, vulnerability management and control guidance.
  • Work with IT and platform teams to co-author, test and maintain secure configuration standards and playbooks (e.g. SaaS, Azure services, Entra ID, Linux, Microsoft 365 and OT upgrades).
  • Contribute to the adoption of Zero Trust principles within platform and service design.
  • Produce technical assurance reports, deliver knowledge-sharing sessions, and support cyber input across IT, research and OT programmes.

Essential:

  • Demonstrable experience reviewing or contributing to secure infrastructure or cloud architecture designs.
  • Proven experience with risk assessment methodologies and maintaining enterprise risk registers.
  • Working knowledge of risk assessment methodologies (e.g. ISO 31000, FAIR, OWASP risk rating).
  • Strong understanding of Gov Assure, CAF, ISO 27001, Cyber Essentials, and NIST frameworks.
  • Experience conducting or supporting security audits and implementing remediation plans.
  • Proficiency in assessing and securing platforms such as Entra ID (Azure AD), Microsoft 365 E5, Azure IaaS/PaaS, Windows/Linux/Unix.
  • Strong knowledge of security tooling such as SIEM, endpoint detection (EDR/XDR), and vulnerability management platforms.
  • Hands-on experience with policy development, access control models (RBAC, ABAC), and logging standards.
  • Experience supporting assurance activities or government-mandated reviews (e.g. GovAssure, Secure by Design).
  • Knowledge of Incident Management, Vulnerability Assessments, SIEM & SOC Systems.
  • Familiarity with ITSM workflows and change control procedures.
  • Experience designing or reviewing secure software supply chain and CI/CD security.
  • Ability to interpret CVEs, CVSS scores, and threat intelligence feeds.
  • Strong stakeholder engagement and communication skills with an ability to produce technical reports and articulate risk to non-specialists.

SC Clearance is an essential requirement for this role; as a minimum you must be willing & eligible to undergo checks. Please note, due to the exceptional requirements of this position (short-term nature of this role and speed at which we require a postholder in situ) preference may be given to candidates who meet all of the essential criteria and hold active security clearance.

Desirable:

  • A degree in Cybersecurity, Information Technology, or a STEM subject (or equivalent experience).
  • Security Assurance certifications such as CCP, SIRA.
  • Security certifications such as CISSP, SSCP, CISM, CRISC, CCSP, SABSA, or SANS GIAC (GSEC, GCCC, GCPM).

Cyber Security Assurance Specialist in Abingdon employer: Alexander Mann Solutions - Public Sector Resourcing

UKAEA is an exceptional employer, offering a dynamic work environment in Abingdon, Oxford, where innovation meets sustainability. As a Cyber Security Assurance Specialist, you will be part of a mission-driven team dedicated to advancing secure digital solutions for sustainable fusion energy, with ample opportunities for professional growth and development. The collaborative culture fosters knowledge sharing and technical excellence, ensuring that employees are well-supported in their roles while contributing to impactful projects that shape the future of energy.
Alexander Mann Solutions - Public Sector Resourcing

Contact Detail:

Alexander Mann Solutions - Public Sector Resourcing Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Cyber Security Assurance Specialist in Abingdon

✨Tip Number 1

Network like a pro! Attend industry events, webinars, and meetups to connect with professionals in the cyber security field. Don't be shy—introduce yourself and share your passion for cyber security; you never know who might have a lead on your dream job!

✨Tip Number 2

Show off your skills! Create a portfolio or GitHub repository showcasing your projects, especially those related to secure infrastructure or cloud architecture. This gives potential employers a tangible look at what you can do and sets you apart from the crowd.

✨Tip Number 3

Prepare for interviews by brushing up on key frameworks like ISO 27001 and Cyber Essentials. Be ready to discuss how you've applied these in past roles or projects. Confidence in your knowledge will impress interviewers and show you're the right fit for the Cyber Security Assurance Specialist role.

✨Tip Number 4

Apply through our website! We make it easy for you to find and apply for roles that match your skills. Plus, it shows you're genuinely interested in working with us at UKAEA. Don’t miss out on the chance to be part of something big in sustainable fusion energy!

We think you need these skills to ace Cyber Security Assurance Specialist in Abingdon

Cyber Security Risk Assessments
Secure-by-Design Principles
Risk Assessment Methodologies
Gov Assure
CAF
ISO 27001
Cyber Essentials
NIST Frameworks
Security Audits
Vulnerability Management
Security Tooling (SIEM, EDR/XDR)
Policy Development
Access Control Models (RBAC, ABAC)
Incident Management
Stakeholder Engagement

Some tips for your application 🫡

Tailor Your CV: Make sure your CV is tailored to the Cyber Security Assurance Specialist role. Highlight your experience with risk assessments, security architecture, and compliance frameworks like ISO 27001 and Cyber Essentials. We want to see how your skills align with what UKAEA is looking for!

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about cyber security and how your background makes you a perfect fit for this role. Don’t forget to mention your hands-on experience and stakeholder engagement skills – they’re key for this position!

Showcase Relevant Experience: When filling out your application, be sure to showcase any relevant projects or roles that demonstrate your expertise in cyber security. Whether it's conducting audits or developing security standards, we want to see concrete examples of your work that relate to the job description.

Apply Through Our Website: We encourage you to apply through our website for a smoother process. It helps us keep track of your application and ensures you don’t miss out on any important updates. Plus, it’s super easy – just follow the prompts and submit your materials!

How to prepare for a job interview at Alexander Mann Solutions - Public Sector Resourcing

✨Know Your Frameworks

Familiarise yourself with the key frameworks mentioned in the job description, like Gov Assure, CAF, ISO 27001, and Cyber Essentials. Be ready to discuss how you've applied these in your previous roles, as this will show your understanding of the requirements and your ability to contribute effectively.

✨Showcase Your Technical Skills

Prepare to demonstrate your hands-on experience with security tooling and platforms such as Azure, Microsoft 365, and vulnerability management systems. Bring examples of how you've implemented secure configurations or conducted risk assessments to highlight your technical depth.

✨Engage Stakeholders

Since strong stakeholder engagement is crucial for this role, think of instances where you've successfully communicated complex security concepts to non-specialists. Practise articulating risks clearly and concisely, as this will be key during your interview.

✨Prepare for Scenario Questions

Expect scenario-based questions that assess your problem-solving skills in real-world situations. Think about past experiences where you had to lead assurance assessments or manage vulnerabilities, and be ready to explain your thought process and the outcomes.

Cyber Security Assurance Specialist in Abingdon
Alexander Mann Solutions - Public Sector Resourcing
Location: Abingdon
Go Premium

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>