Cyber Risk Manager - Active Security Clearance Required in London

Cyber Risk Manager - Active Security Clearance Required in London

London Full-Time 60000 - 80000 £ / year (est.) Home office (partial)
Solirius Consulting

At a Glance

  • Tasks: Lead cyber risk assessments and support local government clients in managing cyber threats.
  • Company: Join Solirius Reply, a tech consultancy driving digital transformation and security.
  • Benefits: Enjoy competitive salary, private healthcare, flexible working, and generous leave policies.
  • Other info: Inclusive culture promoting diversity, professional growth, and meaningful projects.
  • Why this job: Make a real impact in cyber security while working with top public sector clients.
  • Qualifications: Experience in cyber security and strong analytical skills required.

The predicted salary is between 60000 - 80000 £ per year.

About us

Solirius Reply, part of the Reply Group, is a technology consultancy and digital transformation partner that helps organisations solve complex challenges through strategy, design, engineering, and delivery. We work closely with our clients to deliver secure, accessible, user-focused services that evolve with their needs. By combining deep technical expertise with people-centred design, we create solutions that deliver meaningful, lasting impact.

Our consultants partner directly with client teams, embedding into organisations to understand their goals, challenges, and users. This collaborative approach enables us to deliver tailored solutions that drive measurable outcomes across public and private sectors. Past and present clients include the Ministry of Justice, Department for Education, Ministry of Housing, Communities and Local Government, UEFA, International Olympic Committee, and Mercedes-Benz. Our services span the full digital delivery lifecycle, including architecture, engineering, delivery management, user-centred design, business analysis, data, DevOps, and AI.

We operate as a collaborative and inclusive organisation that empowers our people to take ownership, innovate, and develop their expertise. As an equal opportunities employer, we are committed to encouraging equality, diversity, and social mobility, while creating opportunities for our teams to work on meaningful projects that deliver lasting impact.

About You:

You are a motivated and adaptable professional with a strong analytical mindset and a passion for using technology to solve real-world problems. You enjoy working in collaborative, agile teams and take pride in delivering high-quality solutions that make a tangible impact. With strong communication skills and a consultative approach, you’re comfortable engaging with clients, understanding their needs, and translating them into effective outcomes.

The Role

We are looking for an experienced Cyber Risk Manager to join our growing cyber practice on a permanent basis, supporting major public sector clients, with a particular focus on Local Government. You will work closely with client stakeholders to identify, assess, manage, and communicate cyber risks across a variety of programmes and operational environments. Acting as a trusted advisor, you will help organisations establish effective cyber risk management practices, improve governance processes, and implement proportionate controls aligned to their risk appetite.

You will play a key role in supporting the continued evolution of our Local Digital Cyber Risk capability, helping to mature reporting processes, strengthen risk insights, and enhance the use of the NCSC Cyber Assessment Framework (CAF) to support informed decision-making across the sector. You will be a fundamental member of the team, responsible for leading cyber risk activities, supporting and developing colleagues, fostering best practice, and ensuring our clients remain resilient against an evolving threat landscape.

Requirements

  • Leading and facilitating cyber risk assessments across programmes, projects, and operational environments.
  • Supporting and maintaining the Cyber Risk reporting process for the Local Government sector, ensuring timely and accurate reporting of cyber risks and emerging trends.
  • Supporting the continued development and maturity of the Local Digital Cyber Risk function through the enhancement of metrics, reporting frameworks, and governance structures.
  • Analysing NCSC Cyber Assessment Framework (CAF) returns to identify themes, trends, and actionable risk insights that inform decision-making and prioritisation.
  • Planning and executing assessments to determine the cyber risk levels associated with strategic departmental goals, programmes, and initiatives.
  • Providing a cyber risk perspective on the development, refinement, and implementation of the CAF process to ensure it remains effective and aligned to organisational objectives.
  • Directly engaging with councils, when required, to validate risk profiles, understand local challenges, and provide pragmatic risk-based guidance.
  • Developing and maintaining cyber risk registers, ensuring risks are appropriately documented, prioritised, assigned, and managed through to resolution.
  • Assessing the effectiveness of security controls and recommending proportionate improvements to reduce risk exposure.
  • Producing high-quality risk reports, dashboards, and presentations for senior stakeholders and governance forums.
  • Providing risk-based guidance to technical and business teams throughout project lifecycles.
  • Conducting third-party and supplier cyber risk assessments where appropriate.
  • Supporting internal and external audits, assurance reviews, and regulatory activities.
  • Monitoring emerging threats and vulnerabilities to assess potential impacts to client environments.
  • Promoting cyber risk awareness and embedding a positive security culture across client organisations.

Key Skills and Experience

  • Demonstrable experience working in cyber security, technology risk, information security, or enterprise risk management roles.
  • Strong understanding of cyber risk management principles and methodologies.
  • Experience working with recognised frameworks and standards, including:
    • NIST Cybersecurity Framework (CSF)
    • NCSC Cyber Assessment Framework (CAF)
    • ISO/IEC 27001 and ISO/IEC 27005
    • CIS Critical Security Controls
    • COBIT
  • Experience analysing risk data and translating findings into meaningful recommendations and reporting outputs.
  • Experience maintaining risk registers and tracking remediation activities.
  • Strong stakeholder management skills, with experience engaging senior leaders, executive audiences, and external organisations.
  • Ability to communicate technical risks effectively to both technical and non-technical stakeholders.
  • Experience facilitating workshops and conducting interviews to gather evidence and validate risk assessments.
  • Experience operating within Agile and multidisciplinary delivery environments.
  • Knowledge of cloud security risks and controls across platforms such as Azure, AWS, or Google Cloud is beneficial.
  • Experience within Local Government, the wider public sector, or regulated environments would be highly advantageous.
  • Experience using data and reporting tools to develop metrics and management information would be beneficial.

Desirable Certifications

  • CISSP (Certified Information Systems Security Professional)
  • CISM (Certified Information Security Manager)
  • CRISC (Certified in Risk and Information Systems Control)
  • CISA (Certified Information Systems Auditor)
  • ISO 27001 Lead Implementer or Lead Auditor
  • NCSC or other recognised cyber security and risk management certifications.

Benefits

  • Competitive Salary
  • Bonus Scheme
  • Private Healthcare Insurance
  • 25 Days Annual Leave + Bank Holidays
  • Up to 10 days allocated for development training per year
  • Enhanced Parental Leave
  • Paid Fertility Leave (5 Days)
  • Statutory & Contributory Pension
  • EAP with Help@Hand
  • Gym Membership Benefits
  • Cycle to Work and Electric Vehicle Schemes
  • Flexible Working
  • Annual Away Days/Company Socials

Diversity and Inclusion

As an equal opportunities employer, we are committed to creating a work environment that supports, celebrates, encourages and respects all individuals, where all processes are based on merit, competence, and business needs. Encouraging high social mobility is really important to us. We foster an inclusive culture by welcoming different perspectives, enabling equitable opportunities, and promoting open dialogue. This commitment is reflected in initiatives that support diversity, mental health, wellbeing, and professional development. Whatever stage you are at in your career, you will find an environment where you can thrive.

Should you require further assistance or require any reasonable adjustments to be put in place to better support your application process, please do not hesitate to raise this with us. As a Disability Confident employer, we are committed to ensuring our recruitment process is accessible and inclusive, enabling all candidates to demonstrate their skills, experience and potential.

Cyber Risk Manager - Active Security Clearance Required in London employer: Solirius Consulting

Solirius Reply is an exceptional employer that prioritises employee growth and well-being, offering a competitive salary, private healthcare, and generous annual leave alongside professional development opportunities. Our inclusive work culture fosters collaboration and innovation, empowering team members to take ownership of their projects while working on meaningful initiatives that have a lasting impact across the public sector. With a commitment to diversity and social mobility, we create an environment where every individual can thrive and contribute to our mission of delivering secure, user-focused services.

Solirius Consulting

Contact Details:

Solirius Consulting Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Cyber Risk Manager - Active Security Clearance Required in London

Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Solirius Consulting, love seeing candidates who actively engage in these challenges.

Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

Apply Directly Through Solirius Consulting

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Solirius Consulting. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace Cyber Risk Manager - Active Security Clearance Required in London

Cyber Risk Management
Analytical Skills
Stakeholder Management
Communication Skills
Risk Assessment
NCSC Cyber Assessment Framework (CAF)
ISO/IEC 27001

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Solirius Consulting insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Solirius Consulting that you’re committed to staying ahead in the game.

How to prepare for a job interview at Solirius Consulting

Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

Prepare for Scenario-Based Questions

Expect the interviewers at Solirius Consulting to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Solirius Consulting.

Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.