At a Glance
- Tasks: Lead cyber security risk management and ensure effective controls across service providers.
- Company: A leading public sector financial services body with a commitment to diversity.
- Benefits: Competitive salary, hybrid work, generous leave, and a strong pension scheme.
- Why this job: Make a real impact in cyber security while working with cutting-edge technologies.
- Qualifications: Experience in managing cyber security performance and strong communication skills.
- Other info: Join a dynamic team with a focus on collaboration and continuous improvement.
The predicted salary is between 43200 - 72000 £ per year.
My client, a leading public sector financial services body, are seeking a permanent Cyber Security Manager to play a pivotal role within their business. You will support the Senior Cyber Security Manager in ensuring that key service providers maintain effective and resilient cyber security controls. This position calls for someone who can navigate complex and evolving cyber threats, apply technical principles, and provide clear assurance that cyber risks are being managed effectively. You will have the ability to build trusted relationships with senior stakeholders, service providers, and B2B clients, helping to foster a strong and collaborative security culture across all partners.
Role Responsibilities
- Oversee cyber security risk management across service providers and their supply chains
- Identify, assess, and mitigate cyber security risks, ensuring effective vulnerability and control management
- Support senior cyber security leadership in driving cyber maturity and ensuring providers invest in appropriate defences
- Deliver structured assurance activities, including evidenceābased testing and escalation of issues through governance forums
- Review and interpret evidence to assess compliance with policies, standards, and regulatory requirements
- Challenge service providers on control weaknesses and drive continuous improvement in security posture
- Build strong, trustābased relationships with service providers and B2B clients
- Act as the primary point of contact for assigned providers, ensuring clear communication and understanding of portfolio complexities
- Participate in governance forums and working groups to monitor control effectiveness and provider performance
- Ensure compliance with relevant laws, regulations, and industry standards (e.g., GDPR, PCI DSS, NIST CSF)
- Influence cyber security improvements by reviewing IT/security architectures and providing expert challenge
- Oversee incident response readiness and assurance of cyber security testing across the enterprise
- Promote strong security awareness and assure the quality of provider training
- Conduct horizon scanning to monitor emerging threats and evolving industry standards
Essential Skills
- Strong experience managing and assuring service provider cyber security performance
- Ability to communicate complex cyber and risk information clearly to senior stakeholders
- Experience assuring controls against frameworks such as NIST CSF and ISO27001
- Skilled in cyber risk assessment and development of mitigation plans aligned to business objectives
- Experience producing cyber security performance metrics for senior leadership
- Handsāon experience in incident response, vulnerability management, system hardening, and postāincident analysis
- Strong understanding of cloud security (IaaS, PaaS, SaaS, CASB, Zero Trust, microāsegmentation)
- Broad knowledge of security technologies (firewalls, IDS/IPS, endpoint protection, SIEM, SOAR, DLP, PKI, cryptography)
- Solid understanding of IAM concepts (RBAC, ABAC, PAM, SSO)
- Strong analytical skills with the ability to interpret complex technical information
- Good understanding of threat modelling and threat intelligence methodologies (OWASP, STRIDE, MITRE)
Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients. If you need any help or adjustments during the recruitment process for any reason, please let us know when you apply or talk to the recruiters directly so we can support you.
Cyber Security Manager ( SC) in Bath employer: Sanderson Government & Defence
Contact Detail:
Sanderson Government & Defence Recruiting Team
StudySmarter Expert Advice š¤«
We think this is how you could land Cyber Security Manager ( SC) in Bath
āØTip Number 1
Network like a pro! Reach out to your connections in the cyber security field, attend industry events, and join relevant online forums. Building relationships can often lead to job opportunities that aren't even advertised.
āØTip Number 2
Prepare for interviews by brushing up on your technical knowledge and understanding of the latest cyber threats. Be ready to discuss how you've tackled similar challenges in the past and how you can bring value to the team.
āØTip Number 3
Showcase your skills through practical demonstrations. If you have experience with specific tools or frameworks, consider creating a portfolio or case studies that highlight your achievements and problem-solving abilities.
āØTip Number 4
Don't forget to apply through our website! Itās a great way to ensure your application gets noticed. Plus, we love seeing candidates who are proactive about their job search.
We think you need these skills to ace Cyber Security Manager ( SC) in Bath
Some tips for your application š«”
Tailor Your CV: Make sure your CV speaks directly to the Cyber Security Manager role. Highlight your experience with service provider cyber security performance and any relevant frameworks like NIST CSF or ISO27001. We want to see how your skills align with what we're looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about cyber security and how you can contribute to our team. Donāt forget to mention your ability to build strong relationships with stakeholders, as thatās key for us.
Showcase Your Technical Skills: In your application, be sure to highlight your hands-on experience in areas like incident response and vulnerability management. We love candidates who can communicate complex technical info clearly, so donāt hold back on showcasing your analytical skills!
Apply Through Our Website: We encourage you to apply through our website for a smoother process. It helps us keep track of applications and ensures you donāt miss out on any important updates. Plus, it shows youāre keen on joining our team!
How to prepare for a job interview at Sanderson Government & Defence
āØKnow Your Cyber Security Frameworks
Make sure youāre well-versed in frameworks like NIST CSF and ISO27001. Be ready to discuss how you've applied these in past roles, especially in managing service provider performance.
āØCommunicate Clearly with Stakeholders
Practice explaining complex cyber security concepts in simple terms. Youāll need to build trust with senior stakeholders, so being able to convey your ideas clearly is crucial.
āØShowcase Your Incident Response Skills
Prepare examples of your hands-on experience in incident response and vulnerability management. Highlight specific incidents where you successfully mitigated risks or improved security posture.
āØStay Updated on Emerging Threats
Demonstrate your knowledge of current cyber threats and industry standards. Discuss any recent trends youāve noticed and how they could impact the organisationās security strategy.