- Lead organisational cyber security activities and strategy.
- Oversee monitoring, threat detection, and incident response with internal teams and a third‑party SOC.
- Act as Incident Commander during major cyber events and maintain the cyber risk register.
- Coordinate Disaster Recovery and Business Continuity Planning, ensuring regular testing and documentation.
- Provide cyber security expertise for projects, procurement, and system upgrades.
- Support compliance with frameworks such as Cyber Essentials, ISO 27001, GDPR and internal audit requirements.
- Deliver the cyber awareness and training programme across the organisation.
- Advise senior leaders on risk posture, emerging threats, and investment decisions.
- Drive continuous improvement in cyber maturity and organisational cyber culture.
- Cyber risks are well understood, documented, and mitigated.
- Incident response plans are tested and effective, and breaches are handled swiftly.
- Strong audit outcomes and compliance with internal standards.
- Security considerations embedded in projects and procurement.
- Improved organisational cyber behaviour and staff awareness.
- Clear strategic reporting to senior leadership.
- Demonstrable year‑on‑year improvement in cyber resilience.
- Strong knowledge of cyber security frameworks (ISO 27001, NIST, Cyber Essentials, GDPR, etc.).
- Hands‑on experience with cyber tools (SIEM, firewalls, EDR, MFA, encryption) and incident response.
- Experience leading or supporting DR/BCP activities and security investigations.
- Ability to assess and communicate risks, influence decisions, and brief senior leaders.
- Experience with risk registers, governance, and compliance.
- Ability to design and deliver cyber awareness and training programmes.
- Experience in a regulated or multi‑entity environment.
- Certifications such as Security++, CySA+, SSCP, CEH, CISSP, CISM, or CCSP.
- Acts with integrity, communicates clearly, and continuously looks for ways to improve.
- Promotes a supportive, inclusive, and respectful culture.
- Works collaboratively, focuses on outcomes, and uses resources wisely.
- Champions good cyber practices, builds trust, and supports others to stay secure.
Cyber Security Lead - York and North Yorkshire - Reed Technology
Description
Overview
We are seeking an experienced Cyber Security Lead to take ownership of our organisation's cyber security strategy, operations, and resilience. This role combines strategic influence with hands-on technical leadership to protect our digital environment, reduce risk, and ensure robust preparedness against emerging threats.
This is a hybrid role - 1 / 2 days a week in York.
Responsibilities
What Success Looks Like
Skills and Experience
Essential
Desirable
Values & Behaviours
#J-18808-Ljbffr
