At a Glance
- Tasks: Protect critical business services through effective cyber risk management and security practices.
- Company: Join NATS, the UK's leading air navigation service provider, keeping skies safe.
- Benefits: Flexible working arrangements, competitive salary, and a supportive team environment.
- Other info: Embrace a diverse workplace that values different perspectives and promotes personal growth.
- Why this job: Make a real impact in aviation safety while advancing your cybersecurity career.
- Qualifications: Degree in Cybersecurity or related field, with relevant certifications and experience.
The predicted salary is between 63000 - 77000 £ per year.
- Senior Cyber Security Analyst (Governance, Risk and Compliance)
- Closing Date - Sunday 16th August 2026
NATS is the UK’s leading air navigation service provider, handling over 2.4 million flights each year.
We provide air traffic control services from two control centres and at airports around the UK.
We also provide a wide range of commercial products and solutions internationally.
Our people are at the heart of our purpose to advance aviation and keep the skies safe.
Job Purpose
Our Governance, Risk and Compliance Team are looking for a Senior Cyber Security Analyst to play a key role in protecting critical business services through effective cyber risk management.
You’ll bring proven experience in identifying, evaluating and managing risks using established cyber risk management frameworks, alongside a strong understanding of the methodologies and governance approaches used to assess, prioritise and mitigate cyber threats.
Working with a diverse range of stakeholders, you’ll provide expert guidance, challenge assumptions, and help embed a risk-based approach to cyber security across the organisation.
Our Senior Cyber Security Analysts are responsible for assessing, delivering, maintaining and maturing the security practices within the organisation, ensuring that security plans, policies and practices reflect corporate standards and good practices, support the business functions, with focus on continuous improvement.
This role will support and develop Cyber Security Analysts, initiating and managing their own work items and acting as a subject matter expert in their focus security domains.
Key Responsibilities
- Identify threats and risks, to shape and inform the development and implementation of mitigating strategies that strengthen NATS' security levels.
- Develop and maintain security standards, policies, and procedures to ensure alignment with recognised frameworks e. g. ISO 27001 and NIST.
- Develop and maintain the risk assessment framework and risk register, to support risk assessment activities across the organisation.
- Collaborate with business units to identify and design changes and improvements, to address their security needs and promote compliance and capability development.
- Conduct assurance and measurement processes for organisational security capabilities, to produce insightful reports and guide remedial actions across relevant business areas.
- Plan and execute security improvement initiatives across business areas, to ensure consistent delivery and alignment with organisational security objectives.
- Provide technical guidance, support development to other members of the team, to ensure consistency in security practices.
- Monitor developments in security frameworks, regulation, and legislation, to advise on their implications and influence improvements to NATS' security processes.
About You
You’ll ideally have
- Degree in Cybersecurity, Information Security / related field (or equivalent experience).
- CISMP, ISO 27001 Lead Implementer or equivalent professional certification or experience.
- Demonstrated experience in delivering initiatives which develop capability and promote compliance with security obligations.
- Experience in evaluating complex security challenges across technical, process, and business domains, applying sound judgement to deliver pragmatic and effective solutions.
- Experience identifying, developing and implementing, risk mitigation plans, policies, processes and technical controls.
- Understanding and experience of applying industry standards e. g. ISO27001 and NIST.
- Demonstrates a solid understanding of security controls required to identify, assess and address information security or cyber vulnerabilities across the organisation.
- Works collaboratively across teams and disciplines, supporting colleagues and contributing to a positive team environment. Provides guidance and mentoring where appropriate.
- Communicates confidently and effectively with stakeholders at all levels, translating complex information into clear, actionable messages.
- Proactively takes ownership of personal development, setting goals and seeks opportunities to learn. Encourages and supports team growth through knowledge sharing and mentoring.
Additional Vacancy Information
We are proud to offer a fantastic total reward package to help you thrive both personally and professionally - for more information on what NATS can offer you please visit - Why NATS?
We have adopted agile working to provide greater flexibility and increased choice over working arrangements, with the opportunity for this role to work in our modern office facilities as well as remotely.
Find out more here .
If you share our passion to advance aviation and keep the skies safe – we would like to hear from you whatever your age, sex, race, faith, sexual orientation, gender identity, gender expression, visible or invisible disability.
Individuals that bring different perspectives, skills, life experiences and backgrounds help us be at the forefront of our industry.
#J-18808-Ljbffr
Senior Cyber Security Analyst (Governance, Risk and Compliance) employer: NATS Ltd
NATS Ltd is an exceptional employer, offering a dynamic work culture that prioritises innovation and collaboration in the safety-critical sector. With a strong commitment to employee growth, we provide ample opportunities for professional development and continuous learning, all while working remotely in a supportive environment that values your contributions and expertise.
StudySmarter Expert Advice🤫
We think this is how you could land Senior Cyber Security Analyst (Governance, Risk and Compliance)
✨Get Involved in the Cybersecurity Community
Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!
✨Show Off Your Skills with Capture the Flag Competitions
Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including NATS Ltd, love seeing candidates who actively engage in these challenges.
✨Tailor Your Online Presence
Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!
✨Apply Directly Through NATS Ltd
Don’t forget to head straight to our website and check out any openings for cybersecurity roles at NATS Ltd. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.
We think you need these skills to ace Senior Cyber Security Analyst (Governance, Risk and Compliance)
Some tips for your application 🫡
Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!
Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!
Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at NATS Ltd insight into your practical problem-solving abilities and makes your application memorable.
Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to NATS Ltd that you’re committed to staying ahead in the game.
How to prepare for a job interview at NATS Ltd
✨Sharpen Your Technical Skills
For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.
✨Prepare for Scenario-Based Questions
Expect the interviewers at NATS Ltd to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.
✨Highlight Your Certifications
Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at NATS Ltd.
✨Show Your Passion for Cybersecurity
Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.