At a Glance
- Tasks: Lead cyber security assurance for IT projects and drive risk assessments.
- Company: Join the trusted and transformative Post Office team.
- Benefits: Enjoy 27.5 days leave, bonuses, and continuous learning opportunities.
- Other info: Be part of an inclusive culture that values diverse perspectives.
- Why this job: Make a real impact in a dynamic environment focused on digital transformation.
- Qualifications: Experience in cyber assurance and knowledge of security frameworks required.
The predicted salary is between 36000 - 60000 £ per year.
Summary
Salary: Competitive plus comprehensive benefits package
Grade: 3A
Reporting Line: Head of Cyber Security Compliance and Assurance
Contract Type: Permanent
Location: London, Hybrid
Closing Date: 27th July 2026
What to expect
As the Cyber Security Assurance Lead, you will undertake a strategic and influential role within the CISO team, providing cyber security guidance across the organisation and ensuring security is embedded into IT projects from design through to delivery.
Working closely with stakeholders across Technology and the wider business, you will influence decision-making, provide expert security advice, support risk and control assessments, contribute to supplier selection and project approvals, and coordinate end-to-end penetration testing to help strengthen our security posture and manage risk effectively.
This is a unique opportunity to make a tangible impact by driving security best practices, supporting secure business change, and contributing to the resilience and future success of Post Office. You will also foster a culture of inclusion, continuous improvement and high performance across teams, delivery and decision-making.
How our people behave is as important to Post Office as what is delivered. As the Cyber Security Assurance Lead, you will role model Post Office behaviours and demonstrate a Postmaster First mindset in everything you do.
What we can do for you
Our business is changing and we understand that attracting the right talent is pivotal in driving the positive change needed, to help us achieve our ambitious goals. Beyond a competitive salary, we offer a comprehensive benefits package that includes:
- 27.5 days annual leave (rising to 30 after 2 years), plus bank holidays
- Up to 18% on target bonus opportunity
- Annual car allowance
- Generous pension scheme with minimum 10% employer contribution
- Access to 24/7 digital GP services and our Employee Assistance Programme
- 6 x Life assurance and income protection after 12 months service
- Over 400 online courses, mentoring, apprenticeships, and development programmes
- Access to our benefits platform for exclusive discounts & savings
Click here for a detailed overview of our benefits
What you'll need to succeed
To be successful in this role you will have
- Proven experience in cyber assurance, risk assessment, architecture or advisory roles within complex, regulated and outsourced technology environments, including oversight of critical systems, third parties, audits and risk assessments.
- Strong knowledge of cyber security assurance principles, risk management, regulatory compliance and industry frameworks, including NCSC CAF, NIST CSF, ISO 27001, PCI DSS and OWASP.
- Broad technical expertise across cyber security technologies and controls, including cloud security (AWS and Azure), SIEM, GRC platforms, vulnerability management, network security, firewalls, VPNs, IDS/IPS, encryption and DevSecOps practices.
- Demonstrable experience leading threat modelling, penetration testing, security reviews and remediation planning, with the ability to produce and review assurance artefacts such as high-level designs, threat models, security management plans and penetration test reports.
- Strong understanding of emerging cyber threats, security trends, data protection requirements and secure delivery practices across agile and hybrid environments.
- Proven ability to build effective cross-functional stakeholder relationships, influence decision-making and communicate complex technical concepts clearly to both technical and non-technical audiences.
- Confident working independently and collaboratively in complex, multi-stakeholder environments, managing competing priorities, deadlines and project deliverables to achieve key objectives.
- Professional, detail-oriented and delivery-focused approach, with a commitment to quality, continuous improvement, equality, diversity and inclusion, and the values and principles of Post Office.
About us
At Post Office Ltd, we're proud to be at the heart of communities across the UK, upheld by the dedication and service of our postmasters. We offer essential services that people rely on every day, from parcels and banking to identity and government services. While we continue to evolve with digital innovation, our commitment to personal, face-to-face service remains core to who we are. Our journey is one of reflection, growth, and meaningful change. We're looking for people who think differently. Those with resilience, purpose, and a deep sense of responsibility to our postmasters, partners and the communities they serve. If you're driven by the chance to make a real impact and help shape a future, built on progress and integrity, we'd love to hear from you.
Cyber Security Assurance Lead employer: Post Office Ltd
At Post Office Ltd, we pride ourselves on being a supportive and inclusive employer, offering a dynamic work culture that values innovation and community impact. As a Branch Change Delivery Specialist in Scotland or the West Midlands, you'll benefit from a competitive salary, generous annual leave, and extensive professional development opportunities, including access to over 400 online courses. Join us in shaping the future of essential services while enjoying a comprehensive benefits package and the chance to make a meaningful difference in the lives of our customers and communities.
StudySmarter Expert Advice🤫
We think this is how you could land Cyber Security Assurance Lead
✨Tip Number 1
Network like a pro! Reach out to folks in the cyber security field, especially those at Post Office. A friendly chat can open doors and give you insights that a job description just can't.
✨Tip Number 2
Prepare for the interview by brushing up on your knowledge of security frameworks like NIST CSF and ISO27001. We want to see your expertise shine, so be ready to discuss how you've applied these in real-world scenarios.
✨Tip Number 3
Showcase your problem-solving skills! Be ready to share examples of how you've tackled cyber risks or led assurance activities. We love hearing about your hands-on experience and how you’ve made a difference.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets noticed. Plus, it shows you're genuinely interested in joining our team at Post Office.
We think you need these skills to ace Cyber Security Assurance Lead
Some tips for your application 🫡
Tailor Your CV:Make sure your CV is tailored to the Cyber Security Assurance Lead role. Highlight your relevant experience in assurance, advisory, or architecture roles, and don’t forget to mention your familiarity with security frameworks and technologies that match what we’re looking for.
Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you’re passionate about cyber security and how your skills align with our mission at Post Office. Show us your personality and let us know how you can contribute to our culture of inclusion and continuous improvement.
Showcase Your Achievements:When detailing your experience, focus on specific achievements rather than just listing duties. Use metrics where possible to demonstrate your impact, like successful risk assessments or improvements in security posture. We love seeing how you’ve made a difference!
Apply Through Our Website:We encourage you to apply through our website for the best chance of getting noticed. It’s straightforward and ensures your application goes directly to us. Plus, you’ll find all the info you need about the role and our values right there!
How to prepare for a job interview at Post Office Ltd
✨Know Your Cyber Security Frameworks
Make sure you brush up on key security frameworks like NCSC CAF, NIST CSF, and ISO27001. Be ready to discuss how you've applied these in past roles, especially in risk assessments and audits.
✨Showcase Your Technical Skills
Familiarise yourself with the latest cyber security technologies such as GRC platforms and SIEM tools. Be prepared to explain your experience with cloud solutions in AWS and Azure, and how you've managed vulnerabilities in those environments.
✨Demonstrate Leadership Experience
Highlight your experience leading cyber assurance activities and working with cross-functional teams. Share specific examples of how you've driven a culture of inclusion and high performance in your previous roles.
✨Prepare for Scenario-Based Questions
Expect questions that assess your problem-solving skills in real-world scenarios. Think about how you would handle risk assessments or coordinate pentests, and be ready to outline your approach to remediation plans.