Principal Cyber Risk Management & Assurance Advisor
Contract | Inside £750 daily IR35
Location: London, Bristol or Manchester (Hybrid - 3 x onsite days per week)
We are seeking an experienced Principal Cyber Risk Management & Assurance Advisor to join a major public sector organisation undergoing significant digital and technology transformation.
This is a senior advisory role focused on cyber risk management, security assurance, governance, and secure-by-design principles across large-scale, complex technology environments.
Key Responsibilities
Provide expert leadership on cyber risk management and assurance activities.
Assess and manage security risks across enterprise technology programmes and services.
Support the implementation of secure-by-design principles throughout project and operational lifecycles.
Provide assurance against security standards, regulatory requirements and risk frameworks.
Engage with senior stakeholders to influence risk-based decision making.
Review and challenge technical designs, architectures and security controls.
Contribute to cloud and digital transformation programmes from a cyber security perspective.
Essential Experience
Extensive experience in cyber security risk management and assurance.
Strong understanding of security governance, risk frameworks and control assurance.
Demonstrable experience applying secure-by-design principles.
Experience assessing and managing cyber risks within large, complex organisations.
Ability to communicate security risks effectively to both technical and non-technical stakeholders.
Active SC Clearance (must be transferable).
Desirable Experience
Experience working within central government, wider public sector or other highly regulated environments.
Experience within financial services or similarly regulated sectors.
Knowledge of AI assurance and emerging technology risk management.
Professional certifications such as CISM, CISP or equivalent.
Technical Knowledge
Cloud security
AWS
Cloud-native environments
SaaS platforms
Security assurance frameworks
Risk management methodologies
Location & Working Pattern
Candidates can be based in London, Bristol or Manchester.
Hybrid working arrangement with an expectation of approximately 3 days per week onsite, with some flexibility available.
Occasional travel to other UK sites may be required.
Clearance Requirement
Candidates must hold active SC Clearance. Unfortunately, candidates with expired or lapsed clearance cannot be considered.
Apply
If you have a strong background in cyber risk management, security assurance and secure-by-design practices within complex enterprise environments, we'd be keen to hear from you