Cyber Risk Manager
Job in
Workington, Cumbria County, CA14, England, UK
Listed on 2026-06-24
Listing for:
IBEX RECRUITMENT LTD
Full Time
position Listed on 2026-06-24
Job specializations:
-
IT/Tech
Cybersecurity, Information Security, Data Security, IT Consultant
Job Description & How to Apply Below
They will deliver operational risk assessments, engage with stakeholders across technical and business functions, and support continuous improvement of risk processes. Senior-level roles will provide strategic oversight, lead on complex risk areas, and support regulatory and executive engagement. Both levels contribute to strengthening cyber resilience, promoting risk awareness, and ensuring that cyber risk is managed proactively across the organisation. Principal Accountabilities Conduct and support cyber risk assessments across systems, services, and projects.
Maintain and update the cyber risk register, ensuring timely escalation of significant risks. Collaborate with ICT, business units, and project teams to embed cyber risk management practices. Support the development and implementation of cyber risk frameworks, tools, and methodologies. Provide expert advice on cyber risk mitigation strategies and treatment plans. Contribute to the development of risk reporting for governance forums and regulatory bodies.
Monitor emerging threats and assess their potential impact on the organisation's risk posture. Promote cyber risk awareness and training across the organisation. Authorities & Dimensions Budget Responsibility:
Contributes to cyber risk management activities within the overall budget. Line Management:
Senior roles may matrix manage or act as a mentor. Decision-Making Authority:
Authority to recommend risk treatment options and escalate risks. Reporting Line:
Reports to Cyber Risk Team Lead. Knowledge, Skills & Experience Essential Experience in cyber risk management, ideally within a regulated or critical infrastructure environment. Understanding of cyber risk frameworks (e.g., ISO 27005, NIST, FAIR) and the NCSC CAF. Degree or equivalent in cyber security, risk management, or a related field. Relevant certifications (e.g., CRISC, CISSP, ISO 27005 Risk Manager).
Desirable Experience in the nuclear or CNI sector. Familiarity with ONR SyAPs, NISR 2003, and HMG SPF.
Experience with risk quantification or risk tooling platforms. Context and Challenges This role operates within a complex, highly regulated, and security-critical environment where cyber resilience is essential to operational integrity and regulatory compliance. The postholder must navigate overlapping and evolving regulatory frameworks while balancing robust security controls with operational continuity. Key challenges include:
Engaging with a wide range of stakeholders and translating technical cyber risks into clear, actionable business terms. Maintaining a defensible and transparent cyber risk posture under scrutiny from internal governance bodies and external regulators. Adapting to shifting threat landscapes, emerging technologies, and increasing regulatory expectations. Embedding a culture of cyber risk awareness across the organisation.
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
Search for further Jobs Here:
×