Regulatory Cyber Assurance Principal in Cardiff

Regulatory Cyber Assurance Principal in Cardiff

Cardiff Temporary 63443 - 63443 £ / year (est.) Home office (partial)
O

At a Glance

  • Tasks: Lead cyber assurance activities to protect Great Britain's energy infrastructure.
  • Company: Join Ofgem, a key player in ensuring safe and sustainable energy supply.
  • Benefits: Competitive salary, generous pension, flexible working, and 30 days annual leave after 2 years.
  • Other info: Collaborative environment with excellent training and development opportunities.
  • Why this job: Make a real impact on national security while developing your career in cyber regulation.
  • Qualifications: Expertise in cyber security and compliance with NIS Regulations required.

The predicted salary is between 63443 - 63443 £ per year.

12 Month Fixed Term Contract,

Location

Glasgow, Cardiff or London

Salary/Grade

  • Level 3 (Grade 6)
  • SECURITY CLEARANCE REQUIREMENT

Applicants must hold current and active Security Check (SC) clearance at the point of application.

Applications from candidates who do not currently hold SC clearance cannot be considered.

This opportunity is open exclusively to permanent and fixed-term employees currently working within UK Government and the wider Civil Service.

Agency workers, contractors, consultants and other contingent labour workers are not eligible to apply.

Protect Great Britain's Critical Energy Infrastructure

At Ofgem, we work on behalf of energy consumers to ensure every household and business across Great Britain can rely on a safe, affordable and environmentally sustainable energy supply.

As Great Britain's energy system continues to evolve, cyber resilience plays a critical role in maintaining secure and reliable services.

Through our responsibilities under the Network and Information Systems (NIS) Regulations, Ofgem acts as the Competent Authority for the Downstream Gas and Electricity (DGE) sector, helping ensure operational systems and networks remain resilient against cyber and related security threats.

We're looking for an experienced Regulatory Cyber Assurance Principal to join our Cyber Regulation team on a 12-month fixed-term basis.

This is an opportunity to play a leading role in protecting critical national infrastructure, working directly with Operators of Essential Services (OES), government partners and industry stakeholders to strengthen cyber resilience across the energy sector.

The Role

As Ofgem's Cyber Assurance expert, you will lead and maintain relationships across a designated portfolio of Operators of Essential Services (OES).

You will provide leadership on cyber assurance activities across the Downstream Gas and Electricity sector, assessing compliance with the NIS Regulations, making expert compliance determinations and advising on appropriate regulatory responses where concerns or breaches are identified.

Working at the intersection of cyber security, regulation and critical national infrastructure, you will conduct assurance activities including inspections, review audit, exercising and technical testing outcomes, while influencing improvements that help safeguard services relied upon by millions of consumers across Great Britain.

Key Responsibilities

  • Lead and maintain relationships across a designated portfolio of Operators of Essential Services (OES).
  • Provide expert advice and guidance to the DGE sector on compliance with the NIS Regulations.
  • Lead and support regulatory assurance and engagement activities, ensuring alignment with regulatory expectations.
  • Contribute to and lead NIS inspections, including evidence reviews, on-site assessments and the production of high-quality inspection reports.
  • Review and assess compliance documentation, including assurance reports, audit findings, exercising and testing outcomes, remediation plans and incident reports.
  • Assess and make expert determinations on compliance with the NIS Regulations.
  • Document inspection outcomes, assurance findings and regulatory decisions accurately and consistently.
  • Escalate compliance concerns where appropriate and collaborate with Enforcement teams to support the application of regulatory tools and drive improvements.
  • Provide expert advice regarding enforcement action where NIS Regulations have been breached.
  • Lead the development and continuous improvement of cyber assurance policies, products, methodologies and regulatory approaches.
  • Work collaboratively with government departments, other Competent Authorities, industry stakeholders and external assurance providers to support resilience objectives.
  • Provide inclusive leadership through knowledge sharing, coaching and support across the Cyber Regulation team, contributing to Ofgem's values and culture.
  • Relevant professional qualification in cyber security, such as: CISSP, CISA, CISM, ISO 27001 Lead Auditor, GICSP, ISA/IEC 62443 Cybersecurity Expert, or a related degree.

Equivalent experience in a cyber regulatory environment will also be considered.

  • LEAD CRITERIA
  • Expert in understanding cyber risk assessments and methodologies in relation to OT and IT of Critical National Infrastructure environments, and the application of appropriate and proportionate controls across people, process, and technology to mitigate risk.
  • LEAD CRITERIA
  • Proven experience of inspecting, auditing, or testing within an information security role.
  • Good understanding of the NIS Regulations and the NCSC Cyber Assessment Framework (CAF), with practical experience applying these in either policy, process, assurance, inspection, and/or enforcement activities.
  • Strong technical author skills.
  • This opportunity is open exclusively to permanent and fixed-term employees currently working within UK Government and the wider Civil Service.
  • Agency workers, contractors, consultants and other contingent labour workers are not eligible to apply.
  • Applicants must hold current and valid Security Check (SC) Clearance at the point of application.
  • SC Clearance must remain valid for the duration of the appointment.
  • Applicants who do not currently hold SC Clearance will not be considered for this role.
  • Eligibility

This role requires the successful candidate to hold current and valid Security Check (SC) Clearance at the point of appointment.

Applicants who do not already hold SC Clearance will not be considered.

Clearance must remain valid for the duration of employment in this role.

  • Behaviours
  • We'll assess you against these behaviours during the selection process:
  • Making Effective Decisions
  • Communicating and Influencing
  • Delivering at Pace

Alongside your salary of £63,443, OFGEM contributes £18,379 towards you being a member of the Civil Service Defined Benefit Pension scheme.

Find out what benefits a Civil Service Pension provides (opens in a new window).

Ofgem can offer you a comprehensive and competitive benefits package which includes; 30 days annual leave after 2 years; Excellent training and development opportunities; The opportunity to join the generous Civil Service pension which also includes a valuable range of benefits; hybrid working (currently 1 day a week in the office but this is kept under review), flexible working hours and family friendly policies.

Plus lots of other benefits including clean and bright offices based centrally, engaged networks and teams and an opportunity to contribute to our ambitious and important targets of establishing a Net Zero energy system by 2050.

This exciting blend of professional challenge and personal reward identifies career opportunities at Ofgem as something to get excited about.

#J-18808-Ljbffr

Regulatory Cyber Assurance Principal in Cardiff employer: Ofgem

Ofgem is an exceptional employer that prioritises a collaborative and inclusive work culture, empowering employees to tackle complex regulatory challenges in the energy sector. With a strong focus on professional development and support, staff are encouraged to grow their skills while contributing to impactful government energy programmes. Located in the UK, Ofgem offers a unique opportunity to be part of a mission-driven organisation dedicated to fairness and effectiveness in energy regulation.

O

Contact Details:

Ofgem Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Regulatory Cyber Assurance Principal in Cardiff

Get Engaged in Cybersecurity Communities

Dive into online forums or local meetups, like OWASP events or Cybersecurity conferences. These spaces are packed with pros who can share insights and might even know about temporary roles at places like Ofgem.

Showcase Your Skills Publicly

Link your GitHub or create a series of blogs sharing your knowledge on cybersecurity topics. It’s a great way to demonstrate your expertise and attract attention from hiring managers, especially when they see your passion in action.

Stay On Top of Temp Opportunities

Keep an eye on platforms that list temporary positions specifically in tech. Websites focusing on contract roles in cybersecurity can lead straight to employers like Ofgem.

Make Contact with Recruiters Specialising in Cybersecurity

Reach out to recruitment agencies that focus on cybersecurity roles. They often have insights into temporary roles before they’re advertised and can put your name forward to companies like Ofgem.

We think you need these skills to ace Regulatory Cyber Assurance Principal in Cardiff

Cyber Security Expertise
Regulatory Compliance Knowledge
NIS Regulations Understanding
Technical Author Skills
Risk Assessment Methodologies
Inspection and Auditing Experience
Stakeholder Engagement

Some tips for your application 🫡

Show Off Your Technical Skills:In cybersecurity, it's vital to highlight your skills with relevant tools and technologies. Make sure your CV showcases your experience with firewalls, intrusion detection systems, and any cybersecurity frameworks you've worked with. This gives Ofgem a clear view of your capabilities right off the bat.

Certifications Matter:If you’ve got any cybersecurity certifications, like CompTIA Security+ or CISSP, flaunt them! These not only validate your skills but also show that you’re committed to the field. Add a section to your CV specifically for this, because in a temporary role like this, those credentials can really set you apart.

Tailor Your Cover Letter to the Role:For a temporary position, we want to see your willingness to learn and adapt quickly. Make your cover letter specific to the role at Ofgem; mention why you’re excited about the opportunity and how it fits your career goals. A personal touch can make a big difference!

Don’t Forget the Soft Skills:In cybersecurity, technical skills are crucial, but so are soft skills like teamwork and communication. Make sure to weave examples of how you've collaborated with teams or communicated complex ideas into your application. This shows that you're not just a tech whizz but also a great team player, perfect for a temporary role at Ofgem.

How to prepare for a job interview at Ofgem

Brush Up on Technical Skills

Make sure you’re familiar with the latest cybersecurity tools and techniques, like firewalls, intrusion detection systems, and malware analysis. During the interview with Ofgem for the Regulatory Cyber Assurance Principal, be prepared to discuss specific scenarios where you tackled security threats or vulnerabilities.

Show Your Problem-Solving Prowess

Cybersecurity is all about thinking on your feet. Expect technical questions that require you to demonstrate your problem-solving abilities. You might be presented with a mock security breach scenario, so practising your responses to potential threats can be a game changer!

Demonstrate Your Adaptability

As this is a temporary role, showing that you're adaptable and quick to learn is crucial. Talk about times you've picked up new skills or reacted to changing situations quickly. Employers want to know you can hit the ground running and keep things secure during your short stay at Ofgem.

Bring Relevant Certifications

If you have any relevant cybersecurity certifications, like CompTIA Security+ or CEH, be sure to mention them. This can really help you stand out during a temporary hiring process, as it showcases your commitment to the field and your readiness to take on the Regulatory Cyber Assurance Principal role at Ofgem.