At a Glance
- Tasks: Lead cyber security risk management and ensure effective controls across service providers.
- Company: A leading public sector financial services body with a commitment to diversity.
- Benefits: Competitive salary, performance bonus, generous leave, and strong pension contributions.
- Why this job: Make a real impact in cyber security while working with cutting-edge technologies.
- Qualifications: Experience in managing cyber security performance and strong communication skills.
- Other info: Hybrid role with excellent career growth and a supportive, inclusive culture.
The predicted salary is between 36000 - 60000 £ per year.
My client, a leading public sector financial services body, are seeking a permanent Cyber Security Manager to play a pivotal role within their business. You will support the Senior Cyber Security Manager in ensuring that key service providers maintain effective and resilient cyber security controls. This position calls for someone who can navigate complex and evolving cyber threats, apply technical principles, and provide clear assurance that cyber risks are being managed effectively. You will have the ability to build trusted relationships with senior stakeholders, service providers, and B2B clients, helping to foster a strong and collaborative security culture across all partners.
Role Responsibilities
- Oversee cyber security risk management across service providers and their supply chains
- Identify, assess, and mitigate cyber security risks, ensuring effective vulnerability and control management
- Support senior cyber security leadership in driving cyber maturity and ensuring providers invest in appropriate defences
- Deliver structured assurance activities, including evidence-based testing and escalation of issues through governance forums
- Review and interpret evidence to assess compliance with policies, standards, and regulatory requirements
- Challenge service providers on control weaknesses and drive continuous improvement in security posture
- Build strong, trust-based relationships with service providers and B2B clients
- Act as the primary point of contact for assigned providers, ensuring clear communication and understanding of portfolio complexities
- Participate in governance forums and working groups to monitor control effectiveness and provider performance
- Ensure compliance with relevant laws, regulations, and industry standards (e.g., GDPR, PCI DSS, NIST CSF)
- Influence cyber security improvements by reviewing IT/security architectures and providing expert challenge
- Oversee incident response readiness and assurance of cyber security testing across the enterprise
- Promote strong security awareness and assure the quality of provider training
- Conduct horizon scanning to monitor emerging threats and evolving industry standards
Essential Skills
- Strong experience managing and assuring service provider cyber security performance
- Ability to communicate complex cyber and risk information clearly to senior stakeholders
- Experience assuring controls against frameworks such as NIST CSF and ISO27001
- Skilled in cyber risk assessment and development of mitigation plans aligned to business objectives
- Experience producing cyber security performance metrics for senior leadership
- Hands-on experience in incident response, vulnerability management, system hardening, and post-incident analysis
- Strong understanding of cloud security (IaaS, PaaS, SaaS, CASB, Zero Trust, micro-segmentation)
- Broad knowledge of security technologies (firewalls, IDS/IPS, endpoint protection, SIEM, SOAR, DLP, PKI, cryptography)
- Solid understanding of IAM concepts (RBAC, ABAC, PAM, SSO)
- Strong analytical skills with the ability to interpret complex technical information
- Good understanding of threat modelling and threat intelligence methodologies (OWASP, STRIDE, MITRE)
Reasonable Adjustments: Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients. If you need any help or adjustments during the recruitment process for any reason, please let us know when you apply or talk to the recruiters directly so we can support you.
Cyber Security Manager ( SC) in Glasgow employer: Sanderson Recruitment
Contact Detail:
Sanderson Recruitment Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Cyber Security Manager ( SC) in Glasgow
✨Tip Number 1
Network like a pro! Reach out to your connections in the cyber security field and let them know you're on the lookout for opportunities. Attend industry events or webinars to meet potential employers and make a lasting impression.
✨Tip Number 2
Prepare for interviews by brushing up on your technical knowledge and understanding of the latest cyber threats. Be ready to discuss how you've tackled similar challenges in the past and how you can bring value to the role.
✨Tip Number 3
Showcase your soft skills! Building trust with stakeholders is key in this role, so be sure to highlight your communication and relationship-building abilities during interviews. Share examples of how you've successfully collaborated with others.
✨Tip Number 4
Don't forget to apply through our website! We want to see your application and help you land that Cyber Security Manager role. Plus, it’s a great way to stay updated on any new opportunities that pop up.
We think you need these skills to ace Cyber Security Manager ( SC) in Glasgow
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Cyber Security Manager role. Highlight your experience in managing service provider cyber security performance and any relevant frameworks like NIST CSF or ISO27001. We want to see how your skills align with what we're looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about cyber security and how you can contribute to our team. Be sure to mention your ability to build strong relationships with stakeholders, as that's key for this role.
Showcase Your Technical Skills: Don’t shy away from showcasing your technical expertise! Whether it's incident response, vulnerability management, or cloud security, make sure to include specific examples of how you've applied these skills in past roles. We love seeing hands-on experience!
Apply Through Our Website: We encourage you to apply through our website for a smoother application process. It helps us keep track of your application and ensures you don’t miss out on any important updates. Plus, it’s super easy!
How to prepare for a job interview at Sanderson Recruitment
✨Know Your Cyber Security Frameworks
Make sure you’re well-versed in frameworks like NIST CSF and ISO27001. Be ready to discuss how you've applied these in past roles, especially in managing service provider performance. This shows you understand the standards they expect you to uphold.
✨Communicate Clearly and Confidently
You’ll need to explain complex cyber security concepts to senior stakeholders. Practice articulating your thoughts clearly and concisely. Use examples from your experience to demonstrate how you’ve successfully communicated risks and solutions in the past.
✨Showcase Your Relationship-Building Skills
This role requires building trust with service providers and clients. Prepare examples of how you’ve fostered strong relationships in previous positions. Highlight any collaborative projects that improved security culture or performance.
✨Stay Updated on Emerging Threats
Be prepared to discuss recent trends in cyber threats and how they might impact the organisation. Show that you’re proactive by mentioning any horizon scanning techniques you use to stay ahead of potential risks.