At a Glance
- Tasks: Lead a team to enhance operational security and protect vital systems from threats.
- Company: Join Sellafield Ltd, a leader in nuclear innovation and sustainability.
- Benefits: Enjoy competitive pay, bonuses, generous leave, and a supportive work culture.
- Other info: Dynamic environment with opportunities for personal and professional development.
- Why this job: Make a real difference in the UK's nuclear future while growing your career.
- Qualifications: Degree in Cyber Security or equivalent experience; leadership skills in security teams.
The predicted salary is between 60000 - 80000 £ per year.
At Sellafield Ltd, we are harnessing our expertise; bringing together world‑class skills and innovative technology to solve complex nuclear, infrastructure, and engineering challenges. By joining Sellafield Ltd, you join an amazing team of people, from all walks of life, where you can thrive in a connected, considerate culture of innovation, collaboration, and community; and play a significant part in the UK’s sustainable nuclear future.
The challenges we face are amongst the most complex anywhere in the world. We are using advanced technologies to shape, create and advance the world’s nuclear decommissioning knowledge and capability. That’s why our work is driven by people with a passion for problem‑solving and innovation.
We are seeking an Operational Security Team Lead to establish a new team managing day‑to‑day security and resilience of systems managed by the IT Service Delivery function. This role focuses on ensuring core operational security controls are consistently applied, including patching, vulnerability management, adherence to security standards and policies, and the governance of privileged user access.
This role will ensure that our systems, applications, and data are adequately protected against potential threats and vulnerabilities. The IT Operations Security Team take responsibility for identifying, assessing, and driving remediation efforts for vulnerabilities across Sellafield’s on‑premise and cloud infrastructure, adhering to stringent regulatory requirements and industry best practices.
The IT Operations Security Team are responsible for Access Management and maintenance of identity and access management solutions, enforcement of access policies and conducting regular access reviews. As well as point of approval for privileged activities and privileged Identity Management.
Key responsibilities
- Implement and manage robust security protocols and procedures, identifying potential threats and vulnerabilities across operational processes.
- Oversee regular vulnerability assessments, ensuring rapid response and ongoing improvement of penetration testing plans and methodologies across systems and applications.
- Ensure clear understanding within the IT Operations Security Team of the criticality and importance of information and technology resources to enable effective prioritisation of monitoring and remediation.
- Act as the primary liaison for security‑related matters, maintaining strong communication with the Cyber Team.
- Collaborate closely with IT and Cyber teams to strengthen the organisation’s security posture, support incident response, and contribute to the development and implementation of security policies, including process and governance for certificate and encryption key management.
- Provide oversight for the Access Management capability, managing team workload and ensuring delivery of privileged access management, including provisioning, deprovisioning, and auditing.
- In collaboration with CS&IA, ensure VA and ITHC results are analysed, triaged, and risk‑scored based on potential business impact.
- Ensure the organisation’s risk appetite for information security is understood and applied across the area of responsibility, and confirm all suppliers meet patch management requirements tied to SLA/KPI obligations.
- Analyse and elevate risks from SLA/KPI shortfalls, feeding into CS&IA for assessment and upward reporting through the Governance, Risk, and Compliance structure.
- Oversee the development, maintenance, and continuous improvement of the identity and access management framework and account‑level principles, working with ISO/ICT and business stakeholders to align with wider regulatory and organisational priorities.
Your Skills and Qualifications
- Degree in Cyber Security / Information Security or equivalent practical experience.
- Proven experience of leading or working in operational security teams.
- Strong knowledge of security processes, procedures, and vulnerability management (on‑premise and cloud).
- Experience using vulnerability scanning/management tools and interpreting results.
- Proven ability to analyse security issues, assess risks, and recommend corrective action.
- Experience leading and mentoring security teams in a collaborative environment.
- Strong analytical skills, able to identify patterns, trends, and communicate risks effectively to stakeholders.
- Must hold or commit to achieving DV clearance within 12 months of appointment.
Skills Considered Desirable:
- Experience in vulnerability management within a regulated environment.
- Relevant certifications (e.g., GIAC, GCIA, CISSP).
Benefits
- You will benefit from an annual bonus of up to 15%, made up of company and personal performance.
- An attractive defined contribution pension scheme – the company will match up to 13.5% for a 7% employee contribution.
- 30 days annual leave + bank holidays. Plus, the ability to purchase an extra 2.5 days per year.
- The ability to carry over 10 days annual leave each financial year.
- Paid Sick Leave.
- Family Friendly Policies.
- Cyle to Work Scheme.
- Learning & Development Opportunities.
- Reward & Recognition Policies.
- Welfare & Employee Assistance Programme.
- Free Aviva Health App & Annual Health Check.
- MyDiscounts – Employee Savings & Discounts.
- MyBenefits – A Charity Giving Scheme.
- Many, many more!
Sellafield Ltd is a unique place to grow your career, offering a remarkable blend of role variety, job security, personal growth, professional development, and truly significant work. This is your opportunity to tackle some of the biggest challenges in the nuclear, infrastructural and engineering worlds and create a clean and safe environment for generations to come.
Additional Information
Sellafield Ltd are recognised as a Disability Confident Employer (Level 3). Disability Confident employers offer an interview to disabled applicants that meet the minimum criteria for a vacancy. Sellafield Ltd define the minimum criteria as the ‘essential skills’ which are listed on the vacancy notice. Whilst completing your application form, you will be able to indicate if you wish to be considered under the disability confident scheme. If you would prefer to discuss this directly with us, please contact the GBS Recruitment team.
This role is subject to achieving security clearance. It requires a higher level of National Security Vetting where applicants must typically have 5 or 10 years of continuous residency in the UK. Factors such as your nationality, any nationalities you may have previously held, and your place of birth can restrict the level of clearance you’re able to achieve.
Operational Security Team Lead employer: Sellafield
At Sellafield Ltd, we pride ourselves on fostering a dynamic and inclusive work environment where innovation and collaboration thrive. As an Operational Security Team Lead, you will not only enjoy competitive benefits such as an annual bonus, generous pension contributions, and extensive leave options, but also have the opportunity to grow professionally while tackling some of the most complex challenges in the nuclear sector. Join us in shaping a sustainable future and experience a culture that values your contributions and supports your career development.
StudySmarter Expert Advice🤫
We think this is how you could land Operational Security Team Lead
✨Get Involved in the Cybersecurity Community
Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!
✨Show Off Your Skills with Capture the Flag Competitions
Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Sellafield, love seeing candidates who actively engage in these challenges.
✨Tailor Your Online Presence
Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!
✨Apply Directly Through Sellafield
Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Sellafield. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.
We think you need these skills to ace Operational Security Team Lead
Some tips for your application 🫡
Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!
Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!
Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Sellafield insight into your practical problem-solving abilities and makes your application memorable.
Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Sellafield that you’re committed to staying ahead in the game.
How to prepare for a job interview at Sellafield
✨Sharpen Your Technical Skills
For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.
✨Prepare for Scenario-Based Questions
Expect the interviewers at Sellafield to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.
✨Highlight Your Certifications
Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Sellafield.
✨Show Your Passion for Cybersecurity
Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.