UK Cyber Security & Risk Senior Manager

UK Cyber Security & Risk Senior Manager

Full-Time 70000 - 90000 £ / year (est.) No working from home possible
P

At a Glance

  • Tasks: Lead UK cyber risk initiatives and drive collaboration across teams for operational resilience.
  • Company: Join a leading tech company committed to security and innovation.
  • Benefits: Competitive salary, flexible working, and opportunities for professional growth.
  • Other info: Dynamic role with excellent career advancement opportunities in a supportive environment.
  • Why this job: Make a real impact on cyber security strategies and enhance operational efficiency.
  • Qualifications: 8+ years in cyber risk or security governance; strong leadership skills required.

The predicted salary is between 70000 - 90000 £ per year.

Provide strong UK cyber/technology risk operational leadership in support of the UK Entity CISO. The role leads day-to-day execution of agreed UK cyber risk activities across key workstreams including cloud modernisation and operational resilience; co‑develops committee packs with the UK Entity CISO; drives collaboration across PCIS, ICR and technology teams; and leads UK cyber security awareness activity. The role also contributes to progressing UK regulatory and cyber/technology security strategy and maturity, aligned to UK and PCIS priorities.

Essential Responsibilities

  • Recognized as a security governance, risk, and compliance expert, independently addressing the most complex security risks and providing strategic direction on risk mitigation and governance practices across the security domain.
  • Define methods and procedures for new or special assignments, collaborating with cross-functional teams to drive security risk and governance initiatives that align with business needs and objectives.
  • Lead complex, high-impact security governance and risk management initiatives, leveraging a deep understanding of business trends and security challenges to develop innovative risk mitigation strategies and solutions.
  • Possess a keen awareness of the broader impact of decisions, with initiatives driving enterprise-wide improvements in risk management and security governance, enhancing overall security practices and operational efficiency.
  • Lead a security risk and governance team; set clear priorities and define actionable plans, ensuring alignment with organizational goals.
  • Guide team members through complex challenges, fostering their growth and development while maintaining a focus on high-impact results.

Minimum Qualifications

  • 8+ years relevant experience and a Bachelor’s degree OR any equivalent combination of education and experience.

Additional Responsibilities & Preferred Qualifications

  • Maintain a UK-focused view of priority cyber/technology risk items across change, issues, and assurance activity.
  • Run an operating rhythm (cadence, trackers, prioritisation) to keep UK topics current and decision-ready.
  • Translate UK Entity CISO priorities into defined workstreams with clear ownership, timelines, and outcomes.
  • Maintain visibility of UK-relevant cloud modernisation activity (migrations, platform changes, decommissioning, architecture shifts) and provide concise UK-focused updates.
  • Actively participate in highlighting regulatory requirements and cyber security opportunities for cloud modernisation.
  • Partner with technology and programme leads to ensure UK scope is represented in plans and that regulatory/security considerations are addressed early.
  • Joint‑lead the ICR OKR initiative to accelerate cloud regulatory assessment and sign‑off.
  • Participate in and support technical assessment processes by clarifying UK regulatory expectations, reviewing outputs for completeness of narrative/evidence, and helping package the results for governance decision‑making.
  • Highlight items that require UK Entity CISO attention or leadership support to unblock.
  • Maintain visibility of UK operational resilience workstreams impacting Important Business Services (IBS), including technology dependencies, material issues, and remediation actions.
  • Ensure actions have clear ownership and progress, and that evidence is available for governance needs.
  • Support timely awareness of IBS‑impacting events and ensure follow‑up actions are progressed through to closure.
  • Co‑develop committee packs with the UK Entity CISO: propose structure, draft sections, integrate inputs, and ensure readiness to deadline.
  • Produce executive‑ready content: clear status snapshots, key messages, decision points for consideration, and evidence links.
  • Plan agendas and pre‑reads, capture actions/decisions, and drive follow‑through so governance translates into delivery.
  • Build and sustain working relationships across PCIS/ICR and technology/service owners to progress UK priorities.
  • Remove blockers, clarify ownership, and ensure follow‑up actions are completed.
  • Represent UK cyber risk operational needs in working forums as agreed with the UK Entity CISO.
  • Contribute to the development and progression of UK regulatory, cyber and technology security strategy and maturity objectives, aligned with UK Entity needs and PCIS priorities.
  • Contribute to the delivery of practical initiatives and measurable outcomes.
  • Maintain a UK-focused view of priority maturity opportunities and provide concise updates, options and recommendations for UK Entity CISO consideration.
  • Use Firefly, Jira, Confluence, ServiceNow, Archer, AuditBoard (and related tooling) to source, validate, and maintain evidence for UK governance and risk needs.
  • Improve traceability to support rapid briefing and escalation when required.
  • Own the UK cyber security awareness plan aligned to PCIS strategy.
  • Deliver UK‑tailored comms and reusable materials and run local events/awareness moments.

What Success Looks Like

  • Cloud modernisation activity is UK‑ready: regulatory requirements are surfaced early, evidence is reusable, and the cloud regulatory assessment/sign‑off cycle time improves.
  • Operational resilience topics are visible, well‑managed, and supported with clear evidence for governance.
  • Committee packs are delivered on time with strong narrative, clean evidence, and clear decision points.
  • UK regulatory and security maturity objectives progress in line with UK and PCIS priorities, with clear initiatives and evidence of improvement.
  • UK awareness activity is embedded and delivered as part of a predictable annual rhythm.

Skills And Experience

  • Experience in cyber/technology risk, security governance, cloud governance/assurance, operational resilience support, or similar roles.
  • Strong executive writing skills.
  • Proven ability to lead cross‑functional delivery and influence stakeholders.
  • Confident using Jira/Confluence (or equivalents) and reporting/risk tooling.

Equal Employment Opportunity

PayPal provides equal employment opportunity (EEO) to all persons irrespective of age, color, national origin, citizenship status, physical or mental disability, race, religion, creed, gender, sex, pregnancy, sexual orientation, gender identity and/or expression, genetic information, marital status, status with regard to public assistance, veteran status, or any other characteristic protected by federal, state, or local law. In addition, PayPal will provide reasonable accommodations for qualified individuals with disabilities.

UK Cyber Security & Risk Senior Manager employer: PayPal

At PayPal, we pride ourselves on being an exceptional employer, offering a dynamic work culture that fosters innovation and collaboration. Our commitment to employee growth is evident through comprehensive training programs and career advancement opportunities, all while working in the vibrant and diverse environment of the UK & EU. Join us to be part of a forward-thinking team that values your expertise and contributions in the fast-paced world of payment processing.

P

Contact Details:

PayPal Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land UK Cyber Security & Risk Senior Manager

Tip Number 1

Network like a pro! Get out there and connect with folks in the cyber security field. Attend industry events, webinars, or even local meetups. You never know who might have the inside scoop on job openings or can put in a good word for you.

Tip Number 2

Show off your expertise! When you get the chance to chat with potential employers, don’t hold back on sharing your knowledge about cyber risk and governance. Bring up recent trends or challenges in the industry to demonstrate your passion and insight.

Tip Number 3

Prepare for interviews by practising common questions related to cyber security and risk management. Think about how your experience aligns with the role and be ready to discuss specific examples of your past work that showcase your skills.

Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining our team and contributing to our mission in cyber security.

We think you need these skills to ace UK Cyber Security & Risk Senior Manager

Cyber Security Expertise
Risk Management
Security Governance
Cloud Governance
Operational Resilience
Executive Writing
Cross-Functional Collaboration

Some tips for your application 🫡

Tailor Your Application:Make sure to customise your CV and cover letter to highlight your experience in cyber security and risk management. Use keywords from the job description to show that you understand what we're looking for.

Showcase Your Leadership Skills:Since this role involves leading teams and initiatives, be sure to include examples of how you've successfully managed projects or guided teams in the past. We want to see your ability to drive results!

Be Clear and Concise:When writing your application, keep it straightforward. Use bullet points where possible and avoid jargon. We appreciate clarity, especially when it comes to complex topics like cyber risk.

Apply Through Our Website:Don't forget to submit your application through our official website! This ensures that your application gets to the right people and is considered promptly. We can't wait to hear from you!

How to prepare for a job interview at PayPal

Know Your Cyber Security Stuff

Make sure you brush up on the latest trends and challenges in cyber security, especially those relevant to the UK. Be ready to discuss your experience with risk management and governance practices, as well as how you've tackled complex security issues in the past.

Showcase Your Leadership Skills

This role requires strong leadership, so think of examples where you've led teams through challenges. Prepare to discuss how you've set priorities, defined actionable plans, and guided team members to achieve high-impact results.

Be Ready for Cross-Functional Collaboration

Since this position involves working with various teams, come prepared with examples of how you've successfully collaborated across departments. Highlight your ability to remove blockers and clarify ownership to ensure smooth project delivery.

Master the Art of Executive Writing

You'll need to produce clear and concise committee packs, so practice summarising complex information into digestible formats. Bring samples of your previous work if possible, and be ready to discuss how you ensure your content is executive-ready.