At a Glance
- Tasks: Protect a digital platform for over one million learners and implement cyber security measures.
- Company: Join Education Scotland, a key player in enhancing digital learning across the nation.
- Benefits: Enjoy a competitive salary, £4,000 pay supplement, and flexible hybrid working options.
- Other info: Opportunity for career growth and mentoring junior staff in a dynamic environment.
- Why this job: Make a real impact on education while developing your cyber security skills.
- Qualifications: Knowledge of information security standards and risk management experience required.
The predicted salary is between 40000 - 50000 £ per year.
Want to play a key role in protecting a digital platform used by over one million learners across Scotland? This is an exciting role within Education Scotland where you will be instrumental in helping to drive forward the implementation of an ambitious Information and Cyber Security programme. Working with the Lead Cyber Security Officer, the Technical Delivery Team and Digital Services, amongst others, you will help ensure the confidentiality, integrity and availability of corporate digital systems, including Glow, the national Digital Learning platform for schools which has over one million provisioned users. You will also help to support the design and implementation of cyber security controls and measures for transformative projects within Education Scotland. This is a high impact role which offers the successful candidate the opportunity of making a strong and significant impact to the benefit of hundreds of thousands of learners and teachers across Scotland.
Responsibilities
- Leading the provision of advice and guidance on security strategies to manage identified risks and ensure adoption and adherence to standards.
- Leading penetration testing, security risk assessments and business impact analysis on information systems.
- Interpret information assurance and security policies and applies these in order to manage risks.
- Provide advice and guidance to ensure adoption of and adherence to information assurance architectures, strategies, policies, standards and guidelines.
- Threat Identification and Risk Management.
- Security Project Design, Procurement and Implementation.
- Third Party Oversight - Development, delivery and monitoring compliance of Security Awareness campaigns.
- Providing consultancy on projects.
- Development of Information Security policies, procedures and guidelines and managing compliance.
- Supporting and developing the Information Security Management system - Incident Response.
- Leading and mentoring junior members of security staff.
Qualifications
- Technical/Professional Skills: Information risk assessment and risk management, Applied security capability, Protective security, Threat understanding.
- Experience: Knowledge of Information Security standards such as ISO/IEC 27001, NIST CSF and NCSC CAF with a proven ability to interpret and apply these standards in organisational contexts. Understanding of the internal and external information security risks and administrative, physical and technical controls to mitigate against these risks effectively. Demonstrable experience in providing information security advice and leadership in the planning, execution, and management of Information Security projects, ensuring alignment with organisational goals and industry best practices. Knowledge of current legislation, regulations, and standards relevant to information security and privacy, including but not limited to the Data Protection Act 2018 (DPA 2018) and the General Data Protection Regulation (GDPR), with the ability to interpret legal requirements and integrate compliance measures into operational frameworks.
- Behaviours: Leadership (Level 3), Changing and Improving (Level 3), Communicating and Influencing (Level 3), Developing self and others (Level 3).
How to apply
Apply online, providing a CV and Supporting Statement (of no more than 1500 words) which provides evidence of how you meet the skills, experience and behaviours listed in the Success Profile above. Artificial Intelligence (AI) tools can be used to support your application, but all statements and examples provided must be truthful, factually accurate and taken directly from your own experience. Where plagiarism has been identified (presenting the ideas and experiences of others, or generated by artificial intelligence, and presented as your own) applications will be withdrawn and internal candidates may be subject to disciplinary action. Please see our candidate guidance for more information on acceptable and unacceptable uses of AI in recruitment. If invited for further assessment, this will consist of an interview and a technical assessment. Assessments are scheduled for w/c 15/06/26, however this may be subject to change.
About Us: Education Scotland is the national body for supporting quality and improvement of learning and teaching in Scottish education. It is an Executive Agency of Scottish Government. We are driven by the shared ambitions of supporting the development and wellbeing of all those who work in education and ensuring positive experiences and outcomes for all learners, from early years to adult learning. The organisation has many programmes of work to deliver this vision, including responsibility for Digital Learning and Teaching (DLT). We provide a range of digital services – both within the organisation and to the wider education service. This includes Glow, the national online platform for education, customer relationship management services, and public facing web estate. We also provide the main Inspection planning and management platform for His Majesty’s Inspector of Education. This is a fast moving and exciting area of work which offers lots of opportunity for working across many digital services and technologies.
Security checks: Successful candidates must complete the Baseline Personnel Security Standard (BPSS), before they can be appointed. BPSS is comprised of four main pre-employment checks – Identity, Right to work, Employment History and a Criminal Record check (unspent convictions).
Minimum Time In Post: You will be expected to remain in post for a minimum of three years unless successful at gaining promotion to a higher Band or Grade. In the event that further posts are required, a reserve list of successful candidates will be kept for up to 12 months.
Location: The Job can be based in Glasgow, Dundee or Livingston. The post is flexible and hybrid working in line with current Scottish Government policies.
Apply before 23:59 - 24/05/26.
Cyber Security Officer in Glasgow employer: Scottish Government
Contact Detail:
Scottish Government Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Cyber Security Officer in Glasgow
✨Tip Number 1
Network like a pro! Reach out to folks in the cyber security field, especially those connected to Education Scotland. Attend events, join online forums, and don’t be shy about asking for informational interviews. You never know who might have the inside scoop on job openings!
✨Tip Number 2
Prepare for that interview! Research common questions for Cyber Security Officer roles and practice your responses. Make sure you can talk confidently about your experience with information security standards and risk management. We want you to shine!
✨Tip Number 3
Show off your skills! If you’ve worked on relevant projects or have certifications, bring them up during conversations. Create a portfolio or a presentation that highlights your achievements in cyber security. This will help you stand out from the crowd.
✨Tip Number 4
Apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in being part of the Education Scotland team. Don’t miss out on this opportunity!
We think you need these skills to ace Cyber Security Officer in Glasgow
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Cyber Security Officer role. Highlight relevant experience and skills that match the job description, especially around information security standards and risk management.
Craft a Compelling Supporting Statement: Your supporting statement is your chance to shine! Use it to provide specific examples of how you meet the skills and behaviours outlined in the Success Profile. Keep it concise but impactful.
Be Honest About Your Experience: While AI tools can help, make sure everything you include is truthful and reflects your own experiences. Plagiarism can lead to your application being withdrawn, so keep it real!
Apply Through Our Website: Don’t forget to apply through our website! It’s the best way to ensure your application gets to us directly and is considered for this exciting opportunity.
How to prepare for a job interview at Scottish Government
✨Know Your Cyber Security Standards
Familiarise yourself with key information security standards like ISO/IEC 27001 and NIST CSF. Be ready to discuss how you've applied these in past roles, as this will show your understanding of the frameworks that guide effective cyber security.
✨Demonstrate Risk Management Skills
Prepare examples of how you've conducted risk assessments and managed security risks in previous positions. Highlight specific incidents where your actions led to improved security measures or compliance with regulations like GDPR.
✨Showcase Leadership and Mentoring Experience
Since this role involves leading and mentoring junior staff, think of instances where you've taken on a leadership role. Discuss how you’ve supported others in their development and how you can bring that experience to the team.
✨Communicate Clearly and Effectively
Practice articulating complex cyber security concepts in simple terms. This is crucial for advising non-technical stakeholders. Use clear examples from your experience to demonstrate your ability to communicate effectively across different levels of an organisation.