Principal Cyber Risk Management & Assurance Advisor
Principal Cyber Risk Management & Assurance Advisor Contract | Inside £750 daily IR35 Location: London, Bristol or Manchester (Hybrid - 3 x onsite days per week)
We are seeking an experienced Principal Cyber Risk Management & Assurance Advisor to join a major public sector organisation undergoing significant digital and technology transformation.
This is a senior advisory role focused on cyber risk management, security assurance, governance, and secure-by-design principles across large-scale, complex technology environments.
Key Responsibilities
- Provide expert leadership on cyber risk management and assurance activities.
- Assess and manage security risks across enterprise technology programmes and services.
- Support the implementation of secure-by-design principles throughout project and operational lifecycles.
- Provide assurance against security standards, regulatory requirements and risk frameworks.
- Engage with senior stakeholders to influence risk-based decision making.
- Review and challenge technical designs, architectures and security controls.
- Contribute to cloud and digital transformation programmes from a cyber security perspective.
Essential Experience
- Extensive experience in cyber security risk management and assurance.
- Strong understanding of security governance, risk frameworks and control assurance.
- Demonstrable experience applying secure-by-design principles.
- Experience assessing and managing cyber risks within large, complex organisations.
- Ability to communicate security risks effectively to both technical and non-technical stakeholders.
- Active SC Clearance (must be transferable).
Desirable Experience
- Experience working within central government, wider public sector or other highly regulated environments.
- Experience within financial services or similarly regulated sectors.
- Knowledge of AI assurance and emerging technology risk management.
- Professional certifications such as CISM, CISP or equivalent.
Technical Knowledge
- Cloud security
- AWS
- Cloud-native environments
- SaaS platforms
- Security assurance frameworks
- Risk management methodologies
Location & Working Pattern
Candidates can be based in London, Bristol or Manchester .
Hybrid working arrangement with an expectation of approximately 3 days per week onsite , with some flexibility available.
Occasional travel to other UK sites may be required.
Clearance Requirement
Candidates must hold active SC Clearance . Unfortunately, candidates with expired or lapsed clearance cannot be considered.
Apply
If you have a strong background in cyber risk management, security assurance and secure-by-design practices within complex enterprise environments, we'd be keen to hear from you.