Information Assurance Specialist in Derby

Information Assurance Specialist in Derby

Derby Full-Time 50000 - 60000 € / year (est.) No home office possible
Rolls-royce

At a Glance

  • Tasks: Support cyber security initiatives and develop information security policies for cutting-edge technology.
  • Company: Join Rolls-Royce, a leader in innovation and technology.
  • Benefits: Generous leave, retirement savings, share matching, and digital GP access.
  • Other info: Inclusive workplace that values diversity and promotes career growth.
  • Why this job: Make a real impact in cyber security while working with advanced technologies.
  • Qualifications: Strong understanding of information security and compliance, with relevant certifications preferred.

The predicted salary is between 50000 - 60000 € per year.

Why join Rolls-Royce? At Rolls-Royce we are proud to be a business that has truly helped to shape the modern world and are committed to always being a force for progress; powering, protecting, and connecting people everywhere. By joining Rolls-Royce, you'll have the opportunity to work on world-class solutions, supported by a culture that believes individuality is our greatest strength, and all perspectives, experiences and backgrounds help us innovate and enable our high-performance culture.

We have an excellent opportunity for an Information Assurance Specialist to join our Cyber Security, Risk and Compliance team. In this role you will be providing Information Assurance through the application of policy, standards, and best practice to support the IT product teams. You will also be required to work with other IA specialists to ensure a common approach to cyber security issues is developed and documented.

What you will be doing:

  • Support the development and continual improvement of Information Security policies, standards, and procedures in line with ISO/IEC 27000, promoting a secure‑by‑design culture informed by business impact assessments, risk appetite, and regulatory requirements.
  • Serve as the Cyber Security representative on major programmes and product teams, providing authoritative guidance and approvals to ensure secure design, build and operation across IT, OT and AI‑enabled systems.
  • Represent Cyber Security across strategic initiatives—including research collaborations, joint ventures, and supply‑chain engagements—ensuring security requirements and secure‑by‑design principles are embedded from concept through delivery.
  • Assess organisational and technical compliance with security policies and standards, conduct configuration and architecture reviews, and evaluate adherence to legal, regulatory and industry obligations. Prioritise remediation using business impact assessments.
  • Provide expert advice on the selection, implementation, and assurance of security controls, ensuring alignment with NIS2, aerospace standards, export controls and emerging AI regulatory expectations.
  • Advise stakeholders on risk reduction strategies, promote secure behaviours and support security awareness initiatives to strengthen secure‑by‑design engineering and decision‑making.
  • Identify, assess and manage cyber security risks and concessions, ensuring decisions are guided by business impact assessments and integrated into enterprise risk and operational safety processes.
  • Contribute to broader cyber security initiatives and capability uplifts, including OT security maturity, AI assurance, supply‑chain resilience and secure development lifecycle improvements.
  • Apply and oversee security controls required by policy, risk assessment, and regulatory drivers, ensuring the confidentiality, integrity and availability of business systems, including ICS, connected manufacturing platforms and AI‑supported operational systems.

Position qualifications:

  • Strong overall understanding of information systems, their applications and lifecycle practices, with solid grounding in information security principles and governance.
  • Proven ability to interpret and apply IT security compliance requirements while maintaining a pragmatic, risk‑based approach to standards implementation.
  • Effective communicator with the ability to influence stakeholders and build consensus in formal and cross‑functional environments.
  • Broad knowledge of cyber and information security, supported by relevant professional qualifications (e.g., CISSP, CISM, ISO 27001 Lead Implementer/Lead Auditor).
  • Experience or strong awareness of enterprise cloud technologies, architectures and capabilities (e.g., Azure, AWS, GCP).
  • Demonstrated willingness to learn and champion broader compliance domains, including Product Safety, Data Privacy, Export Control and other regulatory frameworks.
  • Aware of or experienced with Artificial Intelligence technologies (e.g., Large Language Models, Machine Learning) or engineering disciplines is beneficial but not essential.
  • Understanding of Operational Technology (OT) environments and the unique security considerations associated with industrial control systems.
  • Experience with Governance, Risk and Compliance (GRC) tooling (e.g., Zen, Archer, ServiceNow GRC, OneTrust, MetricStream), including managing risk registers, control frameworks, and compliance workflows at scale.

Preferred requirements:

  • Degree or master’s qualification in Information Security, Cyber Security, or a related discipline (or equivalent experience).
  • Industry‑recognised professional certifications such as CISSP, CISM, ISO 27001 Lead Implementer/Lead Auditor (or equivalent).
  • Cloud security or architecture certifications for Microsoft Azure or other major cloud platforms (e.g., AWS, GCP).

Regional Benefits:

  • Generous Annual Leave
  • Retirement Savings through the Rolls-Royce Retirement Savings Trust
  • Group Life Assurance provides for a lump sum benefit if you die whilst employed by Rolls-Royce
  • Group Income Protection provides an income in the event that you are unable to work due to illness or injury
  • Your Shares: Matched is a simple way to own Rolls-Royce shares and invest in our future, together. Buy one share, get one free!
  • Digital GP provides a convenient way for you to access GP consultations

Our vision is to ensure that the excellence and ingenuity that shaped our history continues into our future. Our multi-year transformation programme aims to turn Rolls-Royce into a high-performing, competitive, resilient, and growing company. Join us, and it can be your future vision too.

Rolls-Royce are committed to being a respectful, inclusive, and non-discriminatory workplace where individuality is valued, diverse perspectives fuel innovation, and everyone can thrive.

Please be aware that the priority will be given to employees identified as being at high risk. The professional level and salary of the position will be dependent on the skills and experience of the successful candidate.

Grade: Level C

Closing Date: 29.05.2026

For further information please contact: aaron.thoresendavidson@rolls-royce.com

Job Category: Information Technology

Posting Date: 15 May 2026; 00:05

Posting End Date: 29 May 2026

Information Assurance Specialist in Derby employer: Rolls-royce

At Rolls-Royce, we pride ourselves on fostering a dynamic and inclusive work environment where innovation thrives. As an Information Assurance Specialist in Derby, you'll benefit from generous annual leave, retirement savings plans, and unique share ownership opportunities, all while contributing to cutting-edge cyber security initiatives. Our commitment to employee growth and a culture that values diverse perspectives ensures that you will not only advance your career but also play a vital role in shaping the future of technology.

Rolls-royce

Contact Detail:

Rolls-royce Recruiting Team

StudySmarter Expert Advice🤫

We think this is how you could land Information Assurance Specialist in Derby

Tip Number 1

Network like a pro! Get out there and connect with folks in the industry. Attend meetups, webinars, or even just grab a coffee with someone who works at Rolls-Royce. You never know who might have the inside scoop on job openings!

Tip Number 2

Show off your skills! If you’ve got a portfolio or any projects that highlight your expertise in information assurance, make sure to share them during interviews. It’s a great way to demonstrate your knowledge and passion for the field.

Tip Number 3

Prepare for those tricky interview questions! Research common questions for Information Assurance Specialists and practice your answers. We want you to feel confident and ready to impress the hiring team at Rolls-Royce.

Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining the Rolls-Royce family.

We think you need these skills to ace Information Assurance Specialist in Derby

Information Security
ISO/IEC 27000
Cyber Security
Risk Assessment
Compliance Management
Stakeholder Communication
Cloud Technologies (Azure, AWS, GCP)

Some tips for your application 🫡

Tailor Your Application:Make sure to customise your CV and cover letter for the Information Assurance Specialist role. Highlight your relevant experience and skills that align with the job description, especially around information security principles and compliance.

Showcase Your Qualifications:Don’t forget to mention any professional certifications you have, like CISSP or CISM. These are key in this field, so make them stand out in your application to show you’re serious about your expertise.

Be Clear and Concise:When writing your application, keep it straightforward and to the point. Use clear language to explain your experience and how it relates to the responsibilities of the role. We want to see your passion without wading through fluff!

Apply Through Our Website:We encourage you to submit your application directly through our website. It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re keen on joining our team at Rolls-Royce!

How to prepare for a job interview at Rolls-royce

Know Your Stuff

Make sure you brush up on your knowledge of information security principles and governance. Familiarise yourself with ISO/IEC 27000 standards and be ready to discuss how you've applied these in past roles. This will show that you're not just a theoretical expert but someone who can practically implement these standards.

Showcase Your Communication Skills

As an Information Assurance Specialist, you'll need to influence stakeholders and build consensus. Prepare examples of how you've effectively communicated complex security concepts to non-technical audiences. This will demonstrate your ability to bridge the gap between technical and non-technical teams.

Be Ready for Scenario Questions

Expect questions that put you in hypothetical situations related to cyber security risks and compliance challenges. Think through your approach to risk assessments and remediation strategies. Practising these scenarios will help you articulate your thought process clearly during the interview.

Highlight Your Continuous Learning

Rolls-Royce values individuals who are willing to learn and adapt. Be prepared to discuss any recent certifications or training you've undertaken, especially in emerging areas like AI technologies or cloud security. This shows your commitment to staying current in the fast-evolving field of information assurance.