Cyber Requirements & Compliance Specialist

Cyber Requirements & Compliance Specialist

Full-Time 58500 - 71500 £ / year (est.) Home office (partial)
S

At a Glance

  • Tasks: Support cyber security strategy and ensure compliance with regulations and standards.
  • Company: Join Sizewell C, a key player in the UK's energy sector.
  • Benefits: Enjoy 28 days annual leave, a bonus, and a strong pension scheme.
  • Other info: Flexible hybrid working and excellent career development opportunities.
  • Why this job: Make a real impact on the UK's low-carbon energy future.
  • Qualifications: Degree in Cyber Security or related field; experience in compliance and governance.

The predicted salary is between 58500 - 71500 £ per year.

Cyber Requirements & Compliance Specialist

Sizewell C is entering an exciting phase of growth as we mature into an independent organisation and continue building one of the UK’s largest and most important energy projects.

We are now recruiting the below position

Position

Cyber Requirements & Compliance Specialist

Security Clearance

Active Security Clearance is required and must already be in place

Location

London, Leiston or Ipswich, with hybrid working and a minimum of 2 days per week on-site. Travel to other Sizewell C locations may be required.

Contract

Permanent, full-time

Benefits include

Annual Leave

28 days per annum, increasing to 30 days after 5 years of service, plus bank holidays

Bonus

5% annual bonus

Pension Contributions

Defined Contribution Pension Scheme with up to 7.5% employee contribution 15% employer contribution

Life Assurance

Up to 8 x salary

Closing Date

1st October 2026

About the Role

The Cyber Requirements & Compliance Specialist plays a key role in supporting Sizewell C's cyber security strategy, governance and compliance activities.

Reporting to the Cyber Requirements & Compliance Manager, you will help ensure cyber security requirements, policies and standards remain aligned to regulatory obligations, organisational objectives and evolving threats.

You will support the development of the cyber security policy framework, maintain compliance documentation and evidence, and help monitor compliance against regulatory, contractual and organisational requirements.

Working closely with cyber security, digital, assurance and business stakeholders, you will contribute to a robust and effective cyber governance framework that supports the delivery of a secure and resilient organisation.

Key Responsibilities

  • Cyber Security Strategy & Policy
  • Support the development and continual improvement of the Cyber Security Strategy.
  • Draft, maintain and enhance cyber security policies, standards and supporting documentation.
  • Coordinate policy reviews, updates and approvals in line with governance requirements.
  • Monitor alignment between cyber security strategy, organisational objectives and relevant regulatory expectations.
  • Track the delivery of strategic cyber security objectives and contribute to progress reporting.
  • Promote awareness and understanding of cyber security policies and requirements across the organisation.
  • Compliance Governance & Monitoring
  • Maintain a detailed understanding of cyber security compliance obligations applicable to Sizewell C.
  • Identify, interpret and document cyber security requirements arising from legislation, regulations and industry standards.
  • Maintain compliance registers, evidence repositories and supporting documentation.
  • Monitor compliance against regulatory, contractual and organisational requirements.
  • Identify compliance gaps and work with stakeholders to support remediation activities.
  • Support the development and operation of continuous compliance monitoring processes.
  • Work closely with assurance functions to ensure compliance activities are aligned with assurance programmes and audit requirements.

Requirements & Cross-Functional Support

  • Monitor developments in the cyber threat landscape, regulatory environment and industry best practice.
  • Translate regulatory, business and security requirements into clear and actionable documentation for technical and non-technical audiences.
  • Support the adoption of secure-by-design principles across the organisation.
  • Work with security architecture, risk and controls teams to ensure policies, requirements and controls remain aligned.
  • Contribute to the definition and maintenance of cyber security requirements that support organisational objectives and regulatory expectations.
  • Support continuous improvement initiatives across cyber governance, compliance and requirements management activities.
  • Governance, Audit & Reporting
  • Support governance forums by providing updates on compliance performance, regulatory readiness and emerging risks.
  • Assist with the preparation of compliance reports, regulatory submissions and briefing materials.
  • Produce audit-ready documentation and management information for governance and leadership audiences.
  • Contribute to assurance reviews, audits and evidence-gathering activities.
  • Support engagement with regulators and external stakeholders where required.
  • Track regulatory findings, recommendations and actions through to closure.
  • Assist with external certification activities, including ISO 27001 and Cyber Essentials Plus.

Knowledge & Skills

  • Strong understanding of cyber security principles, governance frameworks and compliance management practices.
  • Knowledge of compliance monitoring processes, including evidence management, gap analysis, remediation tracking and audit readiness.
  • Ability to interpret regulatory requirements, industry standards and organisational needs, translating these into clear policies, standards and requirements.
  • Excellent written communication skills, with the ability to produce high-quality policies, procedures, reports and compliance documentation.
  • Strong organisational skills and attention to detail, with the ability to manage structured documentation and evidence to an auditable standard.
  • Understanding of policy lifecycle management, including drafting, review, approval and version control processes.
  • Strong stakeholder engagement and communication skills, with the ability to work effectively across technical and business functions.
  • Familiarity with ISO 27001/27002, NIST Cyber Security Framework (CSF) 2.0 and the NCSC Cyber Assessment Framework (CAF).
  • Understanding of the UK regulatory landscape for cyber security, including ONR Security Assessment Principles (Sy APs) and the NIS Regulations.
  • Experience using compliance management platforms, document management systems or evidence repositories.
  • Awareness of security architecture principles and their relationship to governance and policy frameworks.

Qualifications & Experience

  • Degree qualified, or equivalent, in Cyber Security, Information Security, Computer Science, Business or a related discipline.
  • Experience within cyber security, information security, governance, compliance or risk management.
  • Demonstrable involvement in mapping organisational controls, processes or documentation to recognised frameworks, standards or regulatory requirements.
  • Contribution to compliance assessments against recognised standards such as ISO 27001, Cyber Essentials Plus, NCSC CAF or equivalent frameworks.
  • Participation in audits, assurance activities, regulatory inspections or evidence-based compliance programmes.
  • Drafting and maintaining cyber security policies, standards, procedures, reports or governance documentation.
  • Management of policy libraries, document repositories or structured compliance evidence.
  • Experience supporting governance forums, risk management activities or compliance initiatives.
  • Professional certification such as ISO 27001 Lead Auditor, ISO 27001 Lead Implementer, CISSP, CISM, CRISC or Comp TIA Security+.
  • Experience within a highly regulated sector such as nuclear, energy, utilities, healthcare, financial services or the public sector.
  • Involvement in cyber security strategy development, security transformation programmes or assurance activities.
  • Familiarity with requirements management methodologies or tools within cyber security or technology environments.

Why Join us?

  • Be part of one of the most important low-carbon energy projects in the UK.
  • Work in a mission-driven environment that values innovation, integrity, and long-term sustainability.
  • Competitive salary, comprehensive benefits, and opportunities for career development.
  • Flexible and hybrid working options.
  • Humility
  • Recognise the value brought fromdifferent culturesand experiences
  • Be open to other’s points of view and ideas, be willing to debate and to compromise
  • Positivity
  • Positively challengepoor qualityand performance
  • Identifysolutions at the lowest possible level
  • Encourage tier 1s and others to bringnew ideasforward
  • Respect
  • Value the rules and environment in which we operate
  • Give and receive feedback with respect
  • Embrace and engage with new people and ideas
  • One team, working closely together and helping each other
  • Empowered teams always looking forward.
  • Shared responsibility for delivery the project outcomes
  • Clarity
  • Communicate clearly and consistently
  • Promote collaboration and team alignment
  • Drive simplification at all levels

If this sounds like the next step in your career, we’d love to hear from you.

#J-18808-Ljbffr

Cyber Requirements & Compliance Specialist employer: Sizewell C Limited

Sizewell C Limited is an exceptional employer, offering a dynamic work environment in the heart of London where innovation meets infrastructure. With a strong focus on employee development, you will have access to comprehensive training and growth opportunities, alongside a competitive benefits package that includes a 5% bonus and a robust pension scheme. Join a collaborative culture that values your expertise in large-scale projects and empowers you to make a meaningful impact in the nuclear sector.

S

Contact Details:

Sizewell C Limited Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Cyber Requirements & Compliance Specialist

Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Sizewell C Limited, love seeing candidates who actively engage in these challenges.

Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

Apply Directly Through Sizewell C Limited

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Sizewell C Limited. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace Cyber Requirements & Compliance Specialist

Cyber Security Principles
Governance Frameworks
Compliance Management Practices
Regulatory Requirements Interpretation
Policy Development
Evidence Management
Gap Analysis

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Sizewell C Limited insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Sizewell C Limited that you’re committed to staying ahead in the game.

How to prepare for a job interview at Sizewell C Limited

Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

Prepare for Scenario-Based Questions

Expect the interviewers at Sizewell C Limited to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Sizewell C Limited.

Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.