Skip to content

JobNet: Jobs for Technical People

 

Job Application

 
 
 

Please answer the following questions in order to process your application.

 
 
Email Address *
 
Select your working status in the UK *
 
 
 
File Attachments:
(2MB file maximum. doc, docx, pdf, rtf or txt files only)
 
Attach a CV * 
 
Optional covering letter 
OR
Clear covering letter
 
 
 * denotes required field
 
 
 
Additional Information:
 
First Name
 
Last Name
 
Address
 
Country
 
Home Telephone
 
Mobile/Cell
 
Availability/Notice
 
Hourly Rate GBP
 
Approximately how far are you willing to travel to work (in miles) ?
 
 
 

Key Privacy Information

When you apply for a job, JobNet will collect the information you provide in the application and disclose it to the advertiser of the job.

If the advertiser wishes to contact you they have agreed to use your information following data protection law.

JobNet will keep a copy of the application for 90 days.

More information about our Privacy Policy.

 

Job Details

 

Cyber Security Manager (Contract)

Location: Edinburgh, Scotland Country: UK
 

Cyber Security Manager - 8 Months - Inside IR35 - Edinburgh

Day Rate - Market Rates

Harvey Nash's public sector client are currently looking to recruit a Cyber Security Manager to join their team based In Edinburgh/Remote for an initial 8 month period.

Main Duties:

  • The successful candidate will play a key role in managing the security assurance roadmap and relationship with security teams across public sector organisations and suppliers involved in developing, testing, auditing and supporting the service.
  • Continuously review IT Security Policies and Processes in line with best practise, providing recommendations for security improvements across all assigned projects
  • Support security architect function by defining priorities based upon risk and new emerging threats that have been identified
  • Assist the security risk advisor and security architect function with the assessment of compliance against Government and Industry security and privacy framework standards producing gap analysis and remediation reports as required.
  • Ensure compliance with organisational security commitments to Memorandums of Understanding and Shared Service Agreements with partner organisations
  • Assist the security risk advisor and security architect function with risk and threat modelling and assessment
  • Support security architect function by contributing to acceptance criteria for security countermeasure delivery, and sign off security countermeasures once delivered as operationally ready
  • Plan and manage an ongoing schedule of security countermeasure testing
  • Support the security risk advisor with security assurance of Cloud tools and technologies utilising Government and Industry standards such as NIS CAF, CSA STAR and ISO27001 etc
  • Manage third party relationships from a security perspective and ensure contractual security requirements are being met
  • Ensure Security Issues are raised in accordance to agile methodology and sprint planning
  • Manage and represent the security function and staff for all assigned projects
  • Lead on Vulnerability Management program at both application and platform level ensuring

Essential Criteria

  • Recent working experience (last 1-3 years) in delivery of a defined security programme where public facing identity based authentication and verification services were required, and leading Security Operations teams in the running of such services.
  • Demonstrable working experience in designing and delivering: SOC services; Cyber Incident Response functions and Vulnerability Management processes.
  • Demonstrable working experience and application of Government and Industry security standards including Scottish Government Cyber Resilience Framework, ISO27001, GovAssure and NCSC CAF.
  • Direct working experience of AWS and Azure native security tools (eg Azure Sentinel, AWS Guard Duty, Microsoft Defender for Cloud, AWS Security Hub, etc). and good awareness of third party security technologies to support continuous improvements of Cloud service security posture (eg Privileged Access Management, Vulnerability Assessment System).
  • Experience of working with and 'securing' software development life cycles (S-SDLC), and supporting Software and Cloud Engineers with security engineering expertise.
  • Experience of engaging with, and managing, a wide range of internal and external stakeholders, including senior officials, customers and suppliers. This includes producing concise, clear, well-structured written work and communicating complex matters across a range of audiences.

Desirable Criteria

  • AWS and/or Azure professional certification in a security space and professional certification at auditor level in ISO27001.
  • Good understanding of UK Government good practice guides 44 and 45 to support authentication and verification processes.
  • Working knowledge of programme delivery to the UK Government digital identity and attributes trust framework.

This role has been deemed Inside IR35 by the client. Applicants must hold, or be happy to apply for, a valid Basic Disclosure Scotland. Please click the link to apply.


Posted Date: 19 Apr 2024 Reference: JS-BBBH105586 Employment Business: Harvey Nash Plc Contact: Jake Sheerin