- Contract Duration: Until 23rd June initially
- Location: Edinburgh, EH12 (Predominantly remote with flexibility required)
- Inside IR35 - Rate £500-550
Join a leading management consultancy specialising in IT and financial services. We are seeking a Cyber Risk & Compliance Lead to oversee a critical phase of digital transformation for a major educational and research funding body in Scotland. This role is essential for ensuring the protection of operations, data, and technologies in alignment with UK-specific cybersecurity standards and frameworks.
Day-to-day of the role:- Develop and implement a cyber risk management framework tailored to the specific needs of the organisation, focusing on the protection of financial data, personal information, and sensitive research data.
- Ensure full compliance with Scottish and UK data protection laws, as well as adherence to specific regulations relevant to the organisation.
- Collaborate closely with academic institutions, research bodies, and government agencies to align cybersecurity practices.
- Lead the review and enhancement of policies, procedures, and controls governing data security, risk assessment, and compliance.
- Conduct targeted cyber risk assessments and compliance audits, providing strategic insights and recommendations.
- Act as a principal advisor on cybersecurity matters, offering expert guidance to support strategic initiatives.
- Proven track record in cyber security risk management, with a strong understanding of the UK cyber security landscape, including frameworks like Cyber Essentials and ISO 27001.
- Familiarity with the NCSC’s guidelines and recommendations for public sector organisations.
- Experience in managing cybersecurity compliance projects within the UK, including the attainment of Cyber Essentials certification.
- Leadership experience with the ability to mentor a team and drive cybersecurity awareness across an organisation.
- Excellent communication and influencing skills, capable of engaging effectively with a range of stakeholders on complex cyber security issues.
- Holding or working towards UK-recognised cyber security certifications, such as those offered by CREST or Cyber Essentials Plus.
- Additional certifications such as CISSP, CISM, or ISO 27001 Lead Auditor/Implementer would be beneficial.
To apply for the Cyber Risk & Compliance Lead position, please submit your CV.