Cyber Security Contracts Manager (NIS/CAF)

Cyber Security Contracts Manager (NIS/CAF)

Full-Time 192000 - 192000 € / year (est.) No home office possible
Pontoon Solutions

At a Glance

  • Tasks: Oversee and review supplier contracts to ensure compliance with NIS/CAF regulations.
  • Company: Join a leading utilities company focused on cyber security and compliance.
  • Benefits: Competitive daily rate, remote work flexibility, and opportunities for professional growth.
  • Other info: Work in a dynamic environment with a focus on collaboration and stakeholder engagement.
  • Why this job: Make a real impact in the energy sector by enhancing cyber resilience and compliance.
  • Qualifications: Experience in CAF/NIS regulations and contract management is essential.

The predicted salary is between 192000 - 192000 € per year.

Utilities is heavily-regulated and given we work with multiple suppliers we must adhere to certain framework-driven compliances (NIS/CAF). We need someone to oversee and review our current contracts with suppliers and look for gaps that would lead us to fail an audit. The person we need will wear two hats:

  • Strong knowledge around NIS / CAF process and policies, where they apply and how to write scope documents.
  • Experience in reviewing supplier contracts from a Cyber framework perspective.

We appreciate that this is a niche requirement so if you lean more towards NIS / CAF policies with some contract experience then we’re open to a chat; similarly, if you lean more towards contracts management but have reviewed supplier agreements with a focus on cyber then please also apply.

Requirement

We are seeking an additional resource to support the development of our processes, policies and contract documents relating to the Cyber Assessment Framework (CAF) and Network and Information (NIS) Regulations.

Assignment Overview

We are seeking an experienced Cyber Assessment Framework (CAF) and Network and Information (NIS) Regulations professional to undertake a contract assignment focused on updating and enhancing service supplier contracts across four operational sites within the energy sector. Each site supports four to five operational systems, with contracts requiring updates to ensure the provision of services will support and sustain CAF Enhanced Profile compliance.

This role will work closely with operational, technical, and commercial stakeholders to review existing contractual arrangements, identify gaps, and implement updated contract terms aligned with regulatory, operational, and assurance requirements.

Key Responsibilities

  • Review and assess existing service supplier contracts across four operational sites.
  • Identify contractual gaps, risks, and improvement opportunities related to CAF Enhanced Profile compliance.
  • Work with internal stakeholders (operations, engineering, cyber/security, legal, and commercial teams) to validate service requirements and compliance needs.
  • Update and negotiate contract terms, service schedules, KPIs, and obligations to ensure appropriate maintenance, support, and assurance coverage.
  • Engagement and negotiation with service suppliers to agree revised contractual positions.
  • Ensure contractual outputs are practical, measurable, and aligned with operational maintenance realities.
  • Develop and implement a consistent contractual approach across sites while accommodating site-specific requirements.
  • Maintain clear documentation, contract registers, and audit trails to support compliance assurance.
  • Provide regular progress updates and risk assessments to project or commercial leads.

Key Deliverables

  • Updated and agreed service supplier contracts supporting CAF Enhanced Profile compliance.
  • Clear service definitions, KPIs, SLAs, and compliance obligations.
  • A consistent contractual framework across all operational sites.
  • Documented risks, assumptions, and mitigation actions.

Skills and Experience

Essential

  • Proven experience in CAF, cyber resilience, assurance, or compliance-driven contracting environments.
  • Strong experience reviewing, updating, and negotiating supplier contracts.
  • Ability to work in complex, multi-site operational environments.
  • Clear understanding of service-based contracting and supplier management.
  • Strong stakeholder management and communication skills.
  • Detail-oriented approach with strong documentation and governance practices.

Desirable

  • Experience in regulated or operationally critical environments such as energy, utilities, water, rail, MoD or similar sectors.
  • Experience working on contract remediation or compliance uplift programmes.
  • Direct experience of delivering into a security framework (e.g. CAF, 62443, NIST).
  • Direct experience of delivering service contracts for data centres.

Personal Attributes

  • Pragmatic and solutions-focused.
  • Comfortable working autonomously within a defined assignment scope.
  • Able to balance commercial, operational, and compliance considerations.
  • Confident engaging with both technical and non-technical stakeholders.

Candidates will ideally show evidence of the above in their CV in order to be considered.

Please be advised if you haven't heard from us within 48 hours then unfortunately your application has not been successful on this occasion, we may however keep your details on file for any suitable future vacancies and contact you accordingly.

Pontoon is an employment consultancy and operates as an equal opportunities employer. We use generative AI tools to support our candidate screening process. This helps us ensure a fair, consistent, and efficient experience for all applicants. Rest assured, all final decisions are made by our hiring team, and your application will be reviewed with care and attention.

Cyber Security Contracts Manager (NIS/CAF) employer: Pontoon Solutions

As a Cyber Security Contracts Manager with us, you'll join a forward-thinking team dedicated to enhancing compliance within the energy sector. We offer a flexible remote working environment with rare travel to Warwick, fostering a culture of collaboration and innovation. Our commitment to employee growth is evident through ongoing training opportunities and a supportive atmosphere that values your expertise in navigating complex regulatory frameworks.

Pontoon Solutions

Contact Detail:

Pontoon Solutions Recruiting Team

StudySmarter Expert Advice🤫

We think this is how you could land Cyber Security Contracts Manager (NIS/CAF)

Tip Number 1

Network like a pro! Reach out to your connections in the cyber security and utilities sectors. Attend industry events or webinars, and don’t be shy about asking for introductions. The more people you know, the better your chances of landing that dream job.

Tip Number 2

Prepare for interviews by brushing up on NIS/CAF policies and frameworks. Make sure you can discuss how your experience aligns with the role. We want to see you confidently explaining how you can identify gaps in contracts and ensure compliance.

Tip Number 3

Showcase your contract management skills! Bring examples of past contracts you've reviewed or negotiated, especially those related to cyber security. This will help us see your practical experience and how you can add value to our team.

Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets the attention it deserves. Plus, we love seeing candidates who take the initiative to connect directly with us.

We think you need these skills to ace Cyber Security Contracts Manager (NIS/CAF)

NIS Regulations
CAF Process Knowledge
Contract Management
Supplier Contract Review
Cyber Resilience
Compliance Assurance
Stakeholder Management

Some tips for your application 🫡

Tailor Your CV:Make sure your CV highlights your experience with NIS/CAF processes and contract management. We want to see how your skills align with the role, so don’t be shy about showcasing relevant projects or achievements!

Showcase Your Knowledge:In your cover letter, demonstrate your understanding of the Cyber Assessment Framework and Network and Information Regulations. We’re looking for someone who can speak our language, so use specific examples to illustrate your expertise.

Be Clear and Concise:When writing your application, keep it straightforward and to the point. We appreciate clarity, especially when it comes to complex topics like compliance and contracts. Make it easy for us to see your qualifications!

Apply Through Our Website:Don’t forget to submit your application through our website! It’s the best way for us to receive your details and ensures you’re considered for this exciting opportunity. We can’t wait to hear from you!

How to prepare for a job interview at Pontoon Solutions

Know Your NIS/CAF Inside Out

Make sure you brush up on the NIS and CAF regulations before your interview. Understand how they apply to the role and be ready to discuss specific examples of how you've navigated these frameworks in past positions.

Showcase Your Contract Management Skills

Prepare to talk about your experience with supplier contracts, especially in a cyber context. Have examples ready that demonstrate your ability to identify gaps and negotiate terms effectively.

Engage with Stakeholders

Highlight your experience working with various stakeholders. Be prepared to discuss how you've collaborated with technical and non-technical teams to ensure compliance and operational needs are met.

Be Detail-Oriented

Since this role requires a strong focus on documentation and governance, come equipped with examples that showcase your attention to detail. Discuss how you've maintained clear records and audit trails in previous roles.