At a Glance
- Tasks: Conduct security assurance reviews and manage security risks across NESO’s systems.
- Company: Join the National Energy System Operator, leading the charge in energy transformation.
- Benefits: Competitive salary, bonus, 26 days leave, and a generous pension scheme.
- Why this job: Make a real impact on the future of energy while developing your career.
- Qualifications: Experience in security assurance and knowledge of risk frameworks required.
- Other info: Flexible working options and a commitment to diversity and inclusion.
The predicted salary is between 48000 - 52000 ÂŁ per year.
As the National Energy System Operator (NESO), we are building a secure, resilient, and digital‑first energy system. Our Security function plays a central role in safeguarding the systems and data that underpin the transformation of the GB energy landscape. We are now seeking a Security Assurance Analyst to help us deliver robust, risk‑based security assurance across NESO’s services and systems. In this role, you will join an expanding & high‑functioning Security team and will assess security controls, identify vulnerabilities, ensure adherence with security standards, and support NESO’s regulatory obligations (including NIS compliance). You will work closely and develop strong relationships with delivery teams, system owners, and cyber specialists to ensure that security risks are identified, communicated, and managed effectively throughout the system lifecycle. This role can be based from Wokingham or Warwick and we continue to offer hybrid working from office and home. We are open to full time and part time applicants, as well as flexible working arrangements.
Key Accountabilities
- Conduct security assurance reviews across NESO systems, services, and projects, ensuring alignment with NESO security policies, control framework, NIS guidance and industry best practice.
- Support the development of metrics and measures for security assurance, including continual maintenance and improvement of those metrics.
- Report on assurance activities, producing clear insights and actionable recommendations.
- Manage and monitor findings from assurance activities, ensuring timely remediation and visibility.
- Support security audits, regulatory submissions and compliance activities relevant to NESO (including NIS and Ofgem reporting).
- Contribute to continuous improvement of NESO’s security assurance methodology, frameworks and tooling.
- Building and maintaining strong working relationships with key internal and external stakeholders.
About You
We’re forging the path, and we know we can’t do it alone. That’s why we need visionary minds like yours to join us on this transformative journey.
- Previous experience in conducting security assurance activities, including testing the design, implementation, and operational effectiveness of security controls.
- Understands and applies recognised security and risk frameworks (e.g., ISO27001, NIST 800-53, NIS CSF, Cyber Essentials).
- Knowledge and understanding of the NCSC Cyber Assessment Framework (CAF) and The Network and Information Systems (NIS) Regulations 2018 and how they apply to operators of CNI.
- Can interpret complex technical documentation, system architectures, SOC processes, risk assessments, and security monitoring capabilities.
- Experience reviewing architectural designs to assess security‑by‑design principles and evaluating risk and threat assessments.
- Experience using GRC tooling.
- Produces clear, concise, evidence‑based assurance reports that articulate findings, risks, good practice, and recommended actions.
- Builds strong working relationships with delivery teams, system owners, control owners, cyber specialists, and senior stakeholders.
- Communicates security risks effectively and ensures they are identified early and managed throughout the system lifecycle.
- Demonstrates analytical thinking, curiosity, and a continuous‑improvement mindset when evaluating control maturity and identifying enhancements.
- Thrives in a dynamic, high‑performing team delivering high‑quality, risk‑based security assurance across diverse technologies, including cloud, physical security, and critical national infrastructure.
- Excellent organisational skills, with an eye for detail.
Qualifications
- Lead Auditor or equivalent Degree‑level qualification or equivalent combination of education and experience with strong background in Risk/Compliance/Assurance.
Research shows that some people may hesitate to apply unless they meet every requirement. At NESO, we believe potential comes in many forms and we’re committed to a fair, inclusive recruitment process where everyone can show their talents. We celebrate the difference people can bring into our organisation, and welcome and encourage applicants with diverse experiences and backgrounds to build a workforce that feels valued and respected and represents the communities we serve.
About What You’ll Get
- A competitive salary between £56,000 – £62,000pa – dependent on experience and capability.
- As well as your base salary, you will receive a bonus based on company performance, 26 days annual leave as standard and a competitive contributory pension scheme where we will double match your contribution to a maximum company contribution of 12%.
- Full support and career‑development resources to expand your skills, enhance your expertise, and maximise your potential along your career journey.
- A diverse and inclusive community of belonging, where teammates are empowered to bring ideas to the table.
- Generous Total Rewards Plan – comprising of health, finance and wealth, work/life balance, and career benefits.
About Us
National Energy System Operator’s (NESO) mission is to facilitate the decarbonisation of Great Britain’s energy network and ensure the delivery of reliable, affordable, and clean electricity for consumers. We work with stakeholders across the whole energy industry to plan for future network needs, using a wider adoption of technology and changes in consumer behaviour, as well as ensuring we have the right markets, networks, and frameworks in place, to transform the way we operate tomorrow. Join us, and let’s energise progress. Your energy, our future, together.
More Information
This role closes on 10th February 2026 at 23:59, however we encourage candidates to submit their application as early as possible and not wait until the published closing date as this can vary. We work towards the highest standards in everything we do, including how we support, value and develop our people. Our aim is to encourage and support employees to thrive and be the best they can be. We celebrate the difference people can bring into our organisation, and welcome and encourage applicants with diverse experiences and backgrounds, and offer flexible and tailored support, at home and in the office. We’re committed to building a workforce that represents the communities we serve, and a working environment in which each individual feels valued, respected, fairly treated, and able to reach their full potential.
Senior Security Assurance Analyst - NESO in Wokingham employer: National Grid
Contact Detail:
National Grid Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Senior Security Assurance Analyst - NESO in Wokingham
✨Tip Number 1
Network like a pro! Reach out to current employees at NESO on LinkedIn or other platforms. Ask them about their experiences and any tips they might have for the interview process. Building connections can give you insider knowledge and make you stand out.
✨Tip Number 2
Prepare for the interview by brushing up on your knowledge of security frameworks like ISO27001 and NIST 800-53. Be ready to discuss how you've applied these in past roles. Showing that you understand the technical side will impress the hiring team.
✨Tip Number 3
Practice your communication skills! You’ll need to articulate complex security risks clearly. Consider doing mock interviews with friends or using online resources to refine your ability to explain technical concepts in simple terms.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, it shows you’re genuinely interested in joining NESO and being part of our mission to transform the energy landscape.
We think you need these skills to ace Senior Security Assurance Analyst - NESO in Wokingham
Some tips for your application 🫡
Tailor Your Application: Make sure to customise your CV and cover letter to highlight your experience in security assurance. Use keywords from the job description to show that you understand what NESO is looking for.
Showcase Your Skills: Don’t just list your qualifications; demonstrate how your skills align with the role. Talk about your experience with security frameworks like ISO27001 or NIST 800-53, and how you've applied them in real-world scenarios.
Be Clear and Concise: When writing your application, keep it straightforward. Use clear language and structure your thoughts logically. This will help us quickly see your strengths and how you can contribute to our team.
Apply Early!: We encourage you to submit your application as soon as possible. Don’t wait until the deadline! Applying early shows your enthusiasm and gives you a better chance of standing out.
How to prepare for a job interview at National Grid
✨Know Your Security Frameworks
Make sure you brush up on recognised security and risk frameworks like ISO27001 and NIST 800-53. Be ready to discuss how these frameworks apply to the role and how you've used them in past experiences.
✨Prepare for Technical Questions
Expect to dive deep into technical documentation and system architectures. Practise explaining complex concepts clearly, as you'll need to communicate security risks effectively to various stakeholders.
✨Showcase Your Analytical Skills
Demonstrate your analytical thinking by preparing examples of how you've evaluated control maturity and identified enhancements in previous roles. Highlight your curiosity and continuous improvement mindset.
✨Build Relationships
Emphasise your ability to build strong working relationships with delivery teams and cyber specialists. Think of examples where you've successfully collaborated to manage security risks throughout a project lifecycle.