Head of Cyber Security – Assurance & Compliance
Head of Cyber Security – Assurance & Compliance

Head of Cyber Security – Assurance & Compliance

Preston Full-Time 48000 - 72000 £ / year (est.) No home office possible
Go Premium
BAE Systems.

At a Glance

  • Tasks: Lead cyber security assurance strategy and oversee risk-based activities.
  • Company: BAE Systems is a dynamic leader in defence, committed to innovation and security.
  • Benefits: Enjoy flexible working, competitive pension, health perks, and shopping discounts.
  • Why this job: Make a real impact in national security while thriving in an inclusive culture.
  • Qualifications: Extensive cyber security experience and relevant certifications required.
  • Other info: Roles may require security vetting; apply early as closing dates may change.

The predicted salary is between 48000 - 72000 £ per year.

Location: Warton, Preston or Frimley. We offer a range of hybrid and flexible working arrangements - please speak to your recruiter about the options for this particular role.

What you’ll be doing:

  • Developing and leading a 2nd Line enterprise data, digital & cyber assurance strategy aligned to business objectives, regulatory and customer expectations for BAE Plc.
  • Developing and maintaining a comprehensive assurance framework across cybersecurity (IT & OT), data and digital realms through robust internal controls across the enterprise, supply chain and programme specific requirements.
  • Lead planning and execution of risk-based assurance activities including controls testing, thematic reviews and assurance reporting across federated Lines of Business for BAE Plc.
  • Providing constructive challenge and oversight of first line activities including policy compliance, control implementation and remediation.
  • Producing independent reporting and assurance opinions for stakeholders including Head of GRC, CISO and other cyber and protective security forums within BAE Plc.
  • Monitoring the cyber risk landscape and horizon-scan for emerging risks and regulatory developments including implications for control assurance.
  • Engaging with internal and external audit, regulatory inspections and customer assurance programmes ensuring alignment and minimising duplication.

Your skills and experiences:

  • Extensive experience in cyber security assurance, risk oversight or internal audit within a regulated or government facing sector.
  • Excellent knowledge of working within Cybersecurity GRC, specifically working with national and global cyber security standards and regulatory/compliance frameworks e.g. NIST 800-53, ISO/IEC 27001, DEFSTAN, CIS, NCSC Guidance etc.
  • Deep understanding of the Three Lines of Defence model and 2nd Line responsibilities in a complex enterprise.
  • Proven ability to design and lead risk-based assurance programs across technology and business domains.
  • Experience delivering transformational Cyber or Risk management Programs/Projects.
  • Relevant cybersecurity, IT or business degree, experience in consultancy or people management.
  • Demonstrable experience in cybersecurity or risk management.
  • CISSP, CRISC, CISA ISO 27001 Lead Auditor or other cyber security certification.

As well as a competitive pension scheme, BAE Systems also offers employee share plans, an extensive range of flexible discounted health, wellbeing and lifestyle benefits, including a green car scheme, private health plans and shopping discounts - you may also be eligible for an annual incentive.

The GRC (Government, Risk and Compliance) team:

BAE Systems are seeking an experienced and strategically minded Head of Cyber Security – Assurance & Compliance to lead our second line of defence cyber assurance function. Come and experience the full breadth of a diverse, dynamic business, working at Group level means engaging directly with key stakeholders across every facet of the organization where you will be making a real difference for our UK defence, by helping those who serve and protect us. You will be responsible for oversight, challenge and assurance of cyber, data and digital controls across the enterprise, with a focus on federated Lines of Business/Sectors.

Why BAE Systems?

This is a place where you’ll be able to make a real difference. You’ll be part of an inclusive culture that values diversity of thought, rewards integrity, and merit, and where you’ll be empowered to fulfil your potential. We welcome people from all backgrounds and want to make sure that our recruitment processes are as inclusive as possible. If you have a disability or health condition (for example dyslexia, autism, an anxiety disorder etc.) that may affect your performance in certain assessment types, please speak to your recruiter about potential reasonable adjustments.

Please be aware that many roles at BAE Systems are subject to both security and export control restrictions. These restrictions mean that factors such as your nationality, any nationalities you may have previously held, and your place of birth can restrict the roles you are eligible to perform within the organisation. All applicants must as a minimum achieve Baseline Personnel Security Standard. Many roles also require higher levels of National Security Vetting where applicants must typically have 5 to 10 years of continuous residency in the UK depending on the vetting level required for the role, to allow for meaningful security vetting checks.

Closing Date: 1st July 2025. We reserve the right to close this vacancy early if we receive sufficient applications for the role. Therefore, if you are interested, please submit your application as early as possible.

Head of Cyber Security – Assurance & Compliance employer: BAE Systems.

BAE Systems is an exceptional employer that offers a dynamic and inclusive work environment where you can truly make a difference in the UK defence sector. With a strong focus on employee growth, we provide extensive training opportunities, competitive benefits including flexible working arrangements, and a culture that values diversity and integrity. Join us in Warton, Preston or Frimley, and be part of a team that empowers you to fulfil your potential while contributing to critical national security efforts.
BAE Systems.

Contact Detail:

BAE Systems. Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Head of Cyber Security – Assurance & Compliance

Tip Number 1

Familiarise yourself with the specific cybersecurity frameworks mentioned in the job description, such as NIST 800-53 and ISO/IEC 27001. Understanding these standards will not only help you in interviews but also demonstrate your commitment to the role.

Tip Number 2

Network with professionals in the cybersecurity field, especially those who have experience in assurance and compliance. Engaging with industry experts can provide insights into the role and may even lead to referrals.

Tip Number 3

Stay updated on the latest trends and emerging risks in the cyber landscape. Being knowledgeable about current threats and regulatory changes will position you as a proactive candidate during discussions.

Tip Number 4

Prepare to discuss your experience with the Three Lines of Defence model and how you've implemented risk-based assurance programmes in previous roles. This will showcase your relevant expertise and strategic thinking.

We think you need these skills to ace Head of Cyber Security – Assurance & Compliance

Cybersecurity Assurance
Risk Management
Internal Audit
Regulatory Compliance
Knowledge of Cybersecurity GRC
NIST 800-53
ISO/IEC 27001
DEFSTAN
CIS
NCSC Guidance
Three Lines of Defence Model
Risk-Based Assurance Programs
Stakeholder Engagement
Transformational Cyber Programs
People Management
CISSP Certification
CRISC Certification
CISA Certification
ISO 27001 Lead Auditor Certification
Analytical Skills
Communication Skills

Some tips for your application 🫡

Tailor Your CV: Make sure your CV highlights your extensive experience in cyber security assurance and risk oversight. Emphasise your familiarity with regulatory frameworks like NIST 800-53 and ISO/IEC 27001, as well as any relevant certifications you hold.

Craft a Strong Cover Letter: In your cover letter, clearly articulate your understanding of the Three Lines of Defence model and how your leadership can enhance BAE Systems' cyber assurance function. Use specific examples from your past experiences to demonstrate your capabilities.

Showcase Relevant Skills: Highlight your ability to design and lead risk-based assurance programmes. Mention any transformational Cyber or Risk management projects you've delivered, focusing on outcomes and impacts that align with the job description.

Proofread and Edit: Before submitting your application, thoroughly proofread your documents for any spelling or grammatical errors. A polished application reflects your attention to detail, which is crucial in the field of cyber security.

How to prepare for a job interview at BAE Systems.

Understand the Cybersecurity Landscape

Familiarise yourself with the latest trends and challenges in cybersecurity, especially those relevant to BAE Systems. Be prepared to discuss how emerging risks could impact assurance frameworks and compliance.

Demonstrate Your Knowledge of Regulatory Standards

Showcase your understanding of key regulatory frameworks such as NIST 800-53 and ISO/IEC 27001. Be ready to explain how you have applied these standards in previous roles to enhance cybersecurity assurance.

Highlight Your Leadership Experience

As a Head of Cyber Security, you'll need to lead teams effectively. Share examples of how you've successfully managed teams or projects, particularly in risk management or cybersecurity assurance.

Prepare for Scenario-Based Questions

Expect questions that assess your problem-solving skills in real-world scenarios. Think about past experiences where you had to navigate complex compliance issues or implement risk-based assurance activities.

Head of Cyber Security – Assurance & Compliance
BAE Systems.
Location: Preston
Go Premium

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>