Cyber Governance Specialist - Ref 2863 UK Aberdeen

Cyber Governance Specialist - Ref 2863 UK Aberdeen

Full-Time 63000 - 77000 £ / year (est.) No working from home possible
Prosource

At a Glance

  • Tasks: Support cyber governance processes and conduct security reviews across the organisation.
  • Company: Join a people-centred tech team at prosource.it, focused on innovation and collaboration.
  • Benefits: Competitive salary, comprehensive benefits, and support for professional development.
  • Other info: Opportunities for career growth and learning across multiple industries.
  • Why this job: Make a real impact in cyber security while developing your skills in a dynamic environment.
  • Qualifications: Experience in cyber governance and strong communication skills are essential.

The predicted salary is between 63000 - 77000 £ per year.

Join a people-centred technology team that thrives on innovation, collaboration, and delivering meaningful outcomes. We are seeking a talented and motivated Cyber Governance Specialist to join a growing Cyber Security team. In this role, you will play a key part in supporting the effective operation of a cyber governance programme, helping to translate cyber security strategy, policies, and standards into structured, repeatable governance processes across the organisation.

Working closely with stakeholders across enterprise IT, operational technology, and supply chain environments, you will support security reviews, track remediation activities, monitor performance metrics, and deliver insightful reporting to senior leadership and governance forums. If you enjoy bringing structure to complex environments, influencing positive security outcomes, and contributing to a strong culture of governance and continuous improvement, we'd love to hear from you.

What you’ll do:

  • Operate the governance processes and calendar — review gates, reporting cycles, forum cadences, and evidence deadlines — that give effect to the Cyber Security Standard and its supporting policy suite.
  • Conduct cyber security reviews of IT and business projects at defined lifecycle gates in line with agreed process and approach, agreeing proportionate remediation actions with project owners and tracking them to closure.
  • Maintain the central registers of security actions and policy exceptions, validating evidence of completion to a standard suitable for internal audit and regulatory inspection.
  • Support cyber security risk management processes, including risk register administration and associated reporting.
  • Collect, validate, and trend cyber security KPIs and KRIs, and produce recurring report packs for the security steering group, executive risk committee, and project and portfolio boards.
  • Support the Assurance function in collating evidence for CAF self-assessment and regulatory inspection preparation; ownership of regulatory evidence and regulator engagement remains with Assurance.
  • Operate the supplier cyber assessment procedure and maintain the supplier assurance record.
  • Contribute to the selection and administration of GRC tooling, and refine governance processes and templates as the programme matures.

Accountabilities:

  • The role holder is accountable for governance forums receiving accurate, complete report packs on time, every cycle.
  • Cyber reviews of projects are completed within agreed service levels and recorded consistently.
  • The action and evidence registers are current, complete, and audit-ready at all times.
  • KPI and KRI data presented to governance forums is accurate and traceable to source.
  • The exception register is current, with expiring exceptions escalated before lapse.
  • Governance processes are documented such that they can be operated by others, with no key-person dependency.
  • Risks, blockers, and material non-compliance identified through governance activity are escalated promptly.

What to bring:

  • Demonstrable experience operating cyber or information security governance processes.
  • Experience conducting security reviews or assessments of projects and change against defined policies and standards.
  • Working knowledge of at least one recognised security framework: NCSC Cyber Assessment Framework, ISO/IEC 27001, or NIST CSF.
  • Experience producing governance reporting.
  • Strong communication and stakeholder management skills.
  • Ability to work collaboratively across teams.
  • Strong analytical and problem-solving skills.
  • Ability to manage competing priorities effectively.
  • Commitment to continuous improvement and organisational values.
  • Experience within an Operator of Essential Services or organisation subject to the NIS Regulations.
  • Experience of supplier or third-party cyber risk assessment.
  • Experience administering GRC tooling.

Why prosource.it?

Technology is constantly evolving, and so are we. Since our beginnings as a managed IT services provider, prosource.it has grown alongside the organisations we support, adapting to changing technologies and business needs. Today, we deliver a broad range of technology and business services that help clients plan, implement and embrace change successfully.

While technology is at the heart of what we do, we know that delivering lasting value takes more than technical expertise alone. By combining innovative thinking with practical experience and strong client partnerships, we help organisations realise the full potential of their technology investments. From adopting emerging technologies and delivering complex transformation programmes to improving day-to-day operations, we focus on achieving outcomes that make a measurable difference.

As technology continues to evolve, we're committed to staying at the forefront of change, helping our clients embrace new opportunities and shape what's next. We've built our reputation on being knowledgeable, approachable and easy to work with. Our people bring a wealth of skills and experience, united by a shared commitment to doing the right thing for our customers. With a culture built on teamwork, accountability and trust, our people are empowered to work in a way that makes a meaningful impact.

If you're looking for a role where you can make a difference, develop professionally and be part of a team that's helping organisations navigate an ever-changing technology landscape, we'd love to hear from you.

What You’ll Get in Return:

Our people are central to our success, and we're committed to creating an environment where they can thrive. As a business with a broad and varied client base, we can offer opportunities to gain experience across multiple industries, take on new challenges and continue developing your skills. Whether you're looking to deepen your expertise or broaden your experience, we'll support you in building a rewarding career.

We're also committed to helping our people continue to learn and progress. For those pursuing professional qualifications, we'll fund approved self-study materials and exam fees, and reward successful exam passes with an incentive bonus. Alongside a competitive salary, we offer a comprehensive benefits package including a Company Pension Scheme, Private Medical and Dental Insurance, Group Income Protection, Group Life Assurance, and salary sacrifice schemes for both Cycle to Work and Electric Vehicles.

prosource.it. Building careers, not just jobs.

We’re committed to creating an inclusive and accessible recruitment process. If you have any access needs or require adjustments at any stage of the application or assessment process, please let us know — we’re happy to support you. All offers of employment will be subject to background checks and confirmation of the right to work in the UK.

Cyber Governance Specialist - Ref 2863 UK Aberdeen employer: Prosource

Prosource is an excellent employer, offering a dynamic work culture that prioritises employee development and collaboration. With a competitive salary and a comprehensive benefits package, employees are encouraged to grow through training incentives while working on impactful technology projects in a supportive remote environment.

Prosource

Contact Details:

Prosource Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Cyber Governance Specialist - Ref 2863 UK Aberdeen

Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Prosource, love seeing candidates who actively engage in these challenges.

Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

Apply Directly Through Prosource

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Prosource. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace Cyber Governance Specialist - Ref 2863 UK Aberdeen

Cyber Security Governance
Security Framework Knowledge (NCSC Cyber Assessment Framework, ISO/IEC 27001, NIST CSF)
Security Reviews and Assessments
Governance Reporting
Stakeholder Management
Analytical Skills
Problem-Solving Skills

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Prosource insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Prosource that you’re committed to staying ahead in the game.

How to prepare for a job interview at Prosource

Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

Prepare for Scenario-Based Questions

Expect the interviewers at Prosource to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Prosource.

Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.