Cyber Human Factors Manager in Manchester

Cyber Human Factors Manager in Manchester

Manchester Full-Time 60000 - 80000 £ / year (est.) Home office (partial)
Canopius Group

At a Glance

  • Tasks: Lead cybersecurity initiatives focusing on human behaviour and risk management.
  • Company: Join Canopius, a leading global insurer with a positive workplace culture.
  • Benefits: Enjoy hybrid working, competitive salary, health cover, and a supportive environment.
  • Other info: Diverse and inclusive workplace with excellent career growth opportunities.
  • Why this job: Make a real impact on cybersecurity by aligning it with human behaviour.
  • Qualifications: Degree in cybersecurity or related field; experience in human factors and behaviour analysis.

The predicted salary is between 60000 - 80000 £ per year.

As a member of the Information Security team, the Cyber Human Factors Manager designs and operates a framework and methodology to manage risks related to cyber security human factors and behaviour, leads the lifecycle management of Information Security policies, and defines and reports metrics that enable decision-making on cyber behaviours and culture across the organisation. This role is crucial in ensuring cybersecurity efforts are aligned with human behaviour and organisational culture, strengthening the overall security posture and reducing human-related cyber risk.

Responsibilities

  • Human Factors Policy & Governance: Develop, maintain, and continuously improve policies related to human factors in cybersecurity, aligned to recognised good practice (including the NIST Cybersecurity Framework). Ensure policies are comprehensive, current, and effectively communicated across the organisation. Partner with Legal and Compliance to ensure policy content meets relevant regulatory and organisational requirements.
  • Security Awareness, Training & Behavioural Change: Design, implement, and manage cybersecurity training programmes for employees at all levels, ensuring content is engaging, role-appropriate, and effective. Operate defensive phishing campaigns and other human-factors security testing activities to measure and improve user behaviour. Coordinate with departmental leaders to tailor training and interventions based on role-specific risk profiles and business needs. Monitor training outcomes and continuously improve methodologies based on feedback, metrics, and evolving threats.
  • Cyber Behaviour Metrics, MI & Reporting: Define key metrics to assess cyber behaviours and security culture across the organisation. Implement methods to collect and analyse data on employee compliance, training completion, policy adherence, and human-related security incidents. Produce regular dashboards and reports that identify trends, vulnerabilities, and improvement actions for leadership audiences (including the CISO). Collaborate with IT and Security teams to integrate behavioural metrics into overall cyber risk assessments and reporting.
  • Human-Related Risk Identification & Mitigation: Identify and assess human-related cybersecurity risks and vulnerabilities across the business. Develop mitigation strategies using a combination of technology controls, policy, process, and training interventions. Conduct regular reviews, risk assessments, and assurance activities to evaluate the effectiveness of human-risk mitigations and recommend improvements.
  • Cross-Functional Collaboration & Incident Learnings: Work closely with IT, HR, Operational Resilience, Governance and other relevant teams to embed human factors into security initiatives and organisational change. Partner with incident response teams to analyse human-related contributors to incidents and ensure lessons learned are translated into sustainable behavioural improvements. Participate in cross-functional projects to ensure human-centric security requirements are addressed from design through to adoption.

Qualifications Skills and Experience

  • Bachelor's degree in cybersecurity, psychology, human factors, or related field, or demonstrable equivalent knowledge.
  • Proven experience in cybersecurity, with a focus on human factors, behaviour analysis, or organizational psychology.
  • In-depth knowledge of the NIST Cybersecurity Framework and other relevant industry standards.
  • Strong understanding of human behaviour, cognition, and decision-making processes in the context of cybersecurity.
  • Experience developing and implementing cybersecurity policies and training programs.
  • Proficiency in data analysis and the ability to derive insights from complex datasets.
  • Excellent communication and interpersonal skills, with the ability to engage with stakeholders at all levels of the organization.
  • Desirable to have relevant certifications such as CISSP, CISM, or CIPM.

Our Benefits

We offer all employees a comprehensive benefits package that focuses on their whole wellbeing. This includes hybrid working, a competitive base salary, non-contributory pension, discretionary bonus, insurances including health (family) and dental cover, and many other benefits to enhance financial, physical, social and psychological health. We are fully committed to equal employment opportunities for all applicants and providing employees with a work environment free of discrimination and harassment. All employment decisions are made regardless of age, sex, gender identity, ethnicity, disability, sexual orientation, socio-economic background, religion or beliefs, marital or caring status, or any other status protected by the laws or regulations in the locations where we operate. We encourage and welcome applicants from all diverse backgrounds. We make reasonable adjustments throughout the recruitment process and during employment. Please let us know if you require any information in an alternate format or any other reasonable adjustments.

About Canopius

Canopius is a global specialty lines (re)insurer. We are one of the leading insurers in the Lloyd’s of London insurance market with offices in the UK, US, Singapore, Australia and Bermuda. At Canopius we foster a distinctive, positive culture which enables us to bring our whole selves to work to flourish as people, and build a business which delivers profitable, sustainable results. Based in incredible new offices in the heart of the City of London, Canopius operates a flexible, hybrid working model and is committed to an environment that challenges employees to be their best and where everyone's unique contributions are recognised, valued and respected.

Cyber Human Factors Manager in Manchester employer: Canopius Group

Canopius is an exceptional employer, offering a dynamic work environment in the heart of London that promotes flexibility and inclusivity. With a strong focus on employee wellbeing, we provide a comprehensive benefits package, including hybrid working options, competitive salaries, and extensive health coverage. Our commitment to fostering a positive culture encourages personal and professional growth, making it an ideal place for those looking to make a meaningful impact in cybersecurity.

Canopius Group

Contact Details:

Canopius Group Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Cyber Human Factors Manager in Manchester

Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Canopius Group, love seeing candidates who actively engage in these challenges.

Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

Apply Directly Through Canopius Group

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Canopius Group. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace Cyber Human Factors Manager in Manchester

Cybersecurity Policy Development
Human Factors Analysis
Behavioural Change Strategies
NIST Cybersecurity Framework
Data Analysis
Training Programme Design
Risk Assessment

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Canopius Group insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Canopius Group that you’re committed to staying ahead in the game.

How to prepare for a job interview at Canopius Group

Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

Prepare for Scenario-Based Questions

Expect the interviewers at Canopius Group to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Canopius Group.

Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.