At a Glance
- Tasks: Conduct risk assessments and provide secure design guidance for digital projects.
- Company: Join a government client focused on cyber security assurance.
- Benefits: Competitive hourly rate, hybrid work model, and potential contract extension.
- Other info: Opportunity for career growth and a referral bonus for successful candidates.
- Why this job: Make a real impact in cyber security while working with cutting-edge technologies.
- Qualifications: Experience in risk assessment methodologies and strong communication skills.
The predicted salary is between 36000 - 44000 £ per year.
We are currently looking for a Cyber Security Assurance Specialist for our government client. This role is hybrid, based between working 3 days per week on site in Abingdon, Oxfordshire and the remainder of the week working remotely. The contract for this position is until December 2026, with potential to extend, operating inside IR35.
Security Clearance: eligible for Security Check ("SC Clearance")
- Proven experience with risk assessment methodologies and maintaining enterprise risk registers.
- Working knowledge of risk assessment methodologies (e.g. ISO 31000, FAIR, OWASP risk rating).
- Proficiency in assessing and securing platforms such as Entra ID (Azure AD), Microsoft 365 E5, Azure IaaS/PaaS, Windows/Linux/Unix.
- Hands-on experience with policy development, access control models and logging standards.
- Experience designing or reviewing secure software supply chain and CI/CD security.
- Ability to interpret CVEs, CVSS scores, and threat intelligence feeds.
- Strong stakeholder engagement and communication skills with an ability to produce technical reports and articulate risk to non-specialists.
- Conduct technical risk assessments on IT/OT/cloud systems.
- Provide secure design guidance to digital projects (cloud/infra/app).
- Maintain and update the security risk register quarterly.
- Evaluate 2 critical technical changes for architectural risk (e.g., network reconfig, app onboarding).
- Document evidence gathering and remediation planning for Secure-by-design, CAF and GovAssure.
- Evaluate Suppliers against internal and external risk criteria for Assurance.
- Define security control templates for new deployments (e.g., Develop secure configuration guidance for platforms (e.g. Entra ID, Linux, M365).
- Represent Cyber Security in architecture/design authorities.
- Support cyber input for IT, research or OT programmes.
- Work with IT teams to co-author and test secure configuration standards and playbooks.
- Support security policy application in hybrid cloud, infra, and app settings.
Specialist Security Advisor in Oxford employer: Circle Recruitment
Contact Detail:
Circle Recruitment Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Specialist Security Advisor in Oxford
✨Tip Number 1
Network like a pro! Reach out to your connections in the cyber security field and let them know you're on the hunt for a Specialist Security Advisor role. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Prepare for interviews by brushing up on your technical knowledge and risk assessment methodologies. Be ready to discuss your hands-on experience with platforms like Azure AD and Microsoft 365 E5, as well as how you've tackled security challenges in the past.
✨Tip Number 3
Showcase your communication skills! When discussing your experience, make sure you can explain complex concepts in simple terms. This will help you connect with non-specialists and demonstrate your ability to engage stakeholders effectively.
✨Tip Number 4
Don't forget to apply through our website! We’ve got plenty of opportunities that match your skills, and applying directly can give you an edge. Plus, if you refer someone else who lands a job, you could earn a sweet referral bonus!
We think you need these skills to ace Specialist Security Advisor in Oxford
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Cyber Security Assurance Specialist role. Highlight your experience with risk assessment methodologies and any relevant platforms like Azure AD or Microsoft 365. We want to see how your skills match what we're looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're the perfect fit for this role. Mention your hands-on experience with policy development and stakeholder engagement, and don't forget to show your enthusiasm for working with us at StudySmarter.
Showcase Your Technical Skills: In your application, be sure to showcase your technical skills clearly. Talk about your experience with secure software supply chains, CI/CD security, and interpreting CVEs. We love seeing candidates who can articulate their technical expertise in a way that even non-specialists can understand!
Apply Through Our Website: We encourage you to apply through our website for the best chance of getting noticed. It’s super easy, and you’ll be able to provide all the necessary information we need to assess your application. Plus, it helps us keep everything organised!
How to prepare for a job interview at Circle Recruitment
✨Know Your Risk Assessment Methodologies
Make sure you brush up on risk assessment methodologies like ISO 31000 and FAIR. Be ready to discuss how you've applied these in your previous roles, as this will show your expertise and understanding of the field.
✨Showcase Your Technical Skills
Prepare to talk about your hands-on experience with platforms like Entra ID and Microsoft 365 E5. Bring examples of how you've secured these systems and any challenges you faced, as this will demonstrate your practical knowledge.
✨Communicate Clearly with Non-Specialists
Since strong communication skills are key, practice explaining complex technical concepts in simple terms. Think of scenarios where you've had to present technical reports to non-specialists and how you made those discussions effective.
✨Engage with Stakeholders
Be ready to discuss your experience in stakeholder engagement. Prepare examples of how you've collaborated with different teams or clients, and how you ensured their needs were met while maintaining security standards.