At a Glance
- Tasks: Protect organisations from cyber threats and shape governance strategies.
- Company: Join Sciensus, a leader in life sciences solutions with a focus on healthcare innovation.
- Benefits: Enjoy 25 days annual leave, private medical, and ongoing learning opportunities.
- Other info: Work in a supportive culture that values diversity and inclusion.
- Why this job: Make a real impact in cyber security while working in a dynamic, hybrid environment.
- Qualifications: Experience in cyber security governance and strong communication skills required.
The predicted salary is between 50000 - 60000 £ per year.
Are you passionate about protecting organisations from evolving cyber threats while driving real governance and risk strategy? We’re looking for a Cyber Security Engineer to play a critical role in strengthening our cyber security posture. You’ll focus on governance, risk management, compliance, and assurance, helping ensure our systems, suppliers, and processes meet the highest standards. This is not just a technical role — it’s an opportunity to shape cyber strategy, influence senior stakeholders, and ensure we remain secure, compliant, and audit-ready in a highly regulated environment. It’s a hybrid working role, coming into our Burton office 2 days a week.
What You’ll Be Doing
- Governance, Risk & Assurance
- Own and enhance cyber security policies, standards, and frameworks
- Conduct risk assessments across systems, suppliers, and business processes
- Manage cyber risks and track mitigation activities
- Build audit-ready evidence demonstrating effective security controls
- Compliance & Regulatory Assurance
- Support and lead activities aligned to ISO27001, Cyber Essentials Plus, NHS DSP Toolkit
- Act as a key contact for audits, coordinating responses and remediation
- Monitor compliance and highlight gaps through governance forums
- Third-Party Security
- Assess suppliers’ cyber security posture and risk
- Support procurement and contract decisions with security insight
- Manage ongoing supplier assurance and remediation activities
- Incident Oversight
- Own and coordinate responses to complex or high-risk cyber incidents
- Act as escalation point beyond SOC triage
- Ensure lessons learned drive continuous improvement
- Security & Technical Assurance
- Provide oversight of core security technologies
- Collaborate with IT and security partners to ensure controls meet audit standards
- Support secure configuration in cloud (especially Microsoft environments)
- Reporting & Improvement
- Deliver dashboards, metrics, and insights on cyber risk posture
- Continuously improve governance and assurance processes
What We’re Looking For
- Essential Skills
- Experience in cyber security governance, risk, or compliance roles
- Strong understanding of risk frameworks and control environments
- Experience supporting audits and producing compliance evidence
- Knowledge of ISO27001, Cyber Essentials Plus, NHS DSP Toolkit
- Ability to assess and respond to cyber incidents beyond initial triage
- Excellent communication skills with a risk-based mindset
- Desirable Certifications
- (e.g. Security+, SC-900, ISO27001)
- Experience working with SOC or MDR providers
- Background in regulated or healthcare environments
Who we are?
Sciensus is a proven life sciences solutions partner with more than 30 years' experience navigating and unlocking the complex European healthcare ecosystem. We maximise patient access to medicines, accelerate product launches and drive long-term commercial success for our partners. Through a skilled team of over 500 licensed clinical staff and 1,650 colleagues globally, we work at the intersection of clinical excellence, patient experience and healthcare innovation. We support patients living with cancer, chronic conditions and rare diseases ‒ helping them access the life-changing treatments they need, wherever they are.
What do we offer our people?
We work hard to make sure colleagues feel motivated, developed, and recognised for the great work they do. Additional to a competitive salary, we also offer a comprehensive benefits package including:
- 25 days annual leave plus bank holidays
- Yearly pay reviews
- Contribution based pension scheme
- Life assurance
- Employee benefits platform (retailer discounts and much more)
- Private medical (after qualifying period)
- Ongoing learning and development opportunities
- Annual company event
In the Burton Upon Trent office we have an onsite gym, canteen, prayer room, and quiet room.
We are a Disability Confident Committed Employer and we have also successfully gained the National Equality Standard (NES is the UK’s leading Equity, Diversity and Inclusion standard which was developed by the UK Government and the CBI). We are committed to the fair treatment of all candidates, regardless of race, gender, religion, sexual orientation, age or disability. We welcome applications from all and we select candidates based on skills, qualifications, and experience. Please talk to us during the application process to discuss any reasonable adjustments you may require.
Cyber Security Engineer employer: Sciensus
At Sciensus, we pride ourselves on being an exceptional employer, offering a dynamic work culture that prioritises employee development and recognition. Our Burton office provides a supportive environment with excellent facilities, including an onsite gym and quiet rooms, while our comprehensive benefits package ensures that our team feels valued and motivated. Join us to make a meaningful impact in the healthcare sector, where your contributions will be recognised and rewarded.
StudySmarter Expert Advice🤫
We think this is how you could land Cyber Security Engineer
✨Tip Number 1
Network like a pro! Reach out to folks in the cyber security field on LinkedIn or at industry events. A friendly chat can lead to opportunities that aren’t even advertised yet.
✨Tip Number 2
Show off your skills! Create a portfolio or a personal blog where you share insights on governance, risk management, and compliance. This not only showcases your expertise but also makes you memorable.
✨Tip Number 3
Prepare for interviews by brushing up on common cyber security scenarios. Think about how you’d handle incidents or improve compliance processes. We want to see your problem-solving skills in action!
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets noticed. Plus, we love seeing candidates who are genuinely interested in joining our team.
We think you need these skills to ace Cyber Security Engineer
Some tips for your application 🫡
Tailor Your CV:Make sure your CV reflects the skills and experiences that match the Cyber Security Engineer role. Highlight your governance, risk management, and compliance experience to show us you’re the right fit!
Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you're passionate about cyber security and how your background aligns with our mission at StudySmarter. Keep it engaging and relevant!
Showcase Your Achievements:Don’t just list your responsibilities; share your achievements! Whether it’s leading a successful audit or improving security protocols, we want to see how you’ve made an impact in your previous roles.
Apply Through Our Website:We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you don’t miss out on any important updates from our team!
How to prepare for a job interview at Sciensus
✨Know Your Cyber Security Frameworks
Make sure you brush up on key frameworks like ISO27001 and Cyber Essentials Plus. Be ready to discuss how you've applied these in past roles, as this will show your understanding of compliance and risk management.
✨Prepare for Scenario-Based Questions
Expect questions that ask you to respond to hypothetical cyber incidents. Think through your approach to incident response and be prepared to explain how you would manage risks and ensure compliance in real-time situations.
✨Showcase Your Communication Skills
As a Cyber Security Engineer, you'll need to communicate complex information clearly to non-technical stakeholders. Practice explaining technical concepts in simple terms, as this will demonstrate your ability to influence senior stakeholders effectively.
✨Research the Company’s Cyber Security Posture
Before the interview, take some time to understand the company's current cyber security initiatives and challenges. This will allow you to tailor your responses and show that you're genuinely interested in contributing to their governance and risk strategy.