Dewislen

Head of Cyber Governance, Risk and Compliance

Manylion swydd
Dyddiad hysbysebu: 10 Mehefin 2025
Cyflog: £71,738 i £93,864 bob blwyddyn
Gwybodaeth ychwanegol am y cyflog: London £75,413 to £93,864, National £71,738 to £91,789. Salary is dependent on location and technical skills as assessed at interview.
Oriau: Llawn Amser
Dyddiad cau: 30 Mehefin 2025
Lleoliad: Darlington
Cwmni: Government Recruitment Service
Math o swydd: Parhaol
Cyfeirnod swydd: 410043/4

Gwneud cais am y swydd hon

Crynodeb

If you would like to find out more about the role, the team and what it’s like to work at DBT, we are holding a Hiring Manager Q&A session for this role where you can virtually 'meet the team' on Wednesday 25th June at 12:30pm. Please click here to book your spot.

About us

The Department for Business and Trade (DBT) has a clear mission - to grow the economy. Our role is to help businesses invest, grow and export to create jobs and opportunities right across the country. We do this in three ways.

Firstly, we help to build a strong, competitive business environment, where consumers are protected and companies rewarded for treating their employees properly.

Secondly, we open international markets and ensure resilient supply chains. This can be through Free Trade Agreements, trade facilitation and multilateral agreements.

Finally, we work in partnership with businesses every day, providing advance, finance and deal-making support to those looking to start up, invest, export and grow.

The Digital, Data and Technology (DDaT) directorate develops and operates tools and services to support us in this mission.

About the role

As Head of Cyber Governance, Risk and Compliance (GRC) you will be playing a pivotal role in shaping the success of the Cyber function and service by ensuring that cyber security risks are monitored and managed and reported effectively on behalf and to senior stakeholders across DBT. You will lead a team of security specialists, sharing best practice widely across government, the public sector, and wider industry.
The role holder will ensure the effective delivery of a Security Governance Risk and Compliance function for a complex delivery environment, with numerous third-party suppliers providing our technical services and will be responsible for setting the vision and strategy for cyber risk management, governance, and compliance within DBT.

There is a strong focus on data analysis, risk assessment and reporting. You will also provide guidance to ensure ongoing confidence that fundamental organisational security measures and controls have been met. The Head of Cyber Risk, Governance and Compliance acts as an escalation point for business stakeholders and ensures that all cyber security standards, implementation governance, audits, and assurance activities are effectively managed.

You will:

  • Develop and implement the strategic direction for cyber risk management, governance, and compliance, leading the cyber risk management, policy compliance, and audit management activities.
  • Oversee the identification, assessment, and mitigation of cyber risks. Develop risk management strategies and processes.
  • Implement and maintain a governance framework to ensure transparency and accountability in decision-making. Conduct regular reviews to balance benefits, opportunities, costs, and risks.
  • Ensure compliance with relevant regulations and standards, including GDPR. Monitor and update policies and procedures in line with changing regulations.
  • Manage and conduct audits to ensure the integrity, availability, and confidentiality of information. Provide assurance to stakeholders through rigorous security testing and reviews.
  • Build and maintain strong relationships with internal and external stakeholders. Communicate effectively with senior leadership and other departments across DBT and wider Government.
  • Develop and deliver training programs to enhance the security awareness of employees.
  • Ensure the seamless and successful delivery of cyber security services.
  • Represent the cyber security function at a senior level and act as an escalation point for business stakeholders.

Aelod balch o'r cynllun cyflogwyr Hyderus o ran Anabledd

Hyderus o ran Anabledd
Yn gyffredinol, bydd cyflogwr Hyderus o ran Anabledd yn cynnig cyfweliad i unrhyw ymgeisydd sy'n datgan eu bod yn anabl ac yn bodloni'r meini prawf lleiaf ar gyfer y swydd fel y diffinnir gan y cyflogwr. Mae'n bwysig nodi, mewn rhai sefyllfaoedd recriwtio fel nifer fawr o ymgeiswyr, cyfnod tymhorol ac amseroedd prysur iawn, efallai y bydd y cyflogwr am gyfyngu ar y niferoedd cyffredinol o gyfweliadau a gynigir i bobl anabl a phobl nad ydynt yn anabl. Am fwy o fanylion ewch i Hyderus o ran Anabledd.

Gwneud cais am y swydd hon