IT Job Pro

Information Security Technical Assurance Lead

Viewed 0 times

Job Description

Help us to make a world of difference

UL is looking for an Information Security Technical Assurance Lead. This Job is Grade 17.

We are seeking an Information Security Technical Assurance Lead to join our team at our Paddington Head Office. This role sits within the CISO function, which is dedicated to continuously evolving and strengthening Urenco’s cyber security capabilities to protect our business, customers, and the wider public, while supporting the safe and sustainable use of nuclear technology.

As part of the Cyber Security Assurance team, and reporting to the Head of Cyber Security Assurance, you will play a key role in driving improvements to Urenco’s overall cyber security maturity. This position requires close collaboration with business stakeholders, as well as colleagues across IT and Information Security.

With a strong focus on application security across both on-premises and cloud environments, you will lead assurance activities that help embed secure practices across the organisation.

This is a hybrid role, with an expectation of a minimum of two days per week in our London Paddington office. Occasional travel may be required. The successful candidate will be required to obtain and maintain SC clearance.

At Urenco we’re committed to giving you opportunities to be your best. If you feel you meet some, but not all of what we're looking for, please still apply. We believe in embracing the passion and potential of our people, and to achieve this we offer market leading training and development experiences. Along with the opportunity to be mentored and coached by some of the smartest minds in the industry.

What you’ll do:

Assure Security Designs and Solutions

Produce and review technical security documentation to support secure solution delivery.
Partner with business stakeholders to understand requirements and embed strong security practices across initiatives.
Act as a trusted advisor and security advocate, promoting a security-first culture across the organisation.
Review technical designs against security standards and policies, identifying gaps and recommending improvements to controls.
Provide assurance across both on-premises and cloud environments, ensuring consistent security coverage.
Assess and Manage Security Risk

Collaborate with GRC teams, security architects, and business stakeholders to conduct risk assessments, define mitigations, and document outcomes.
Work closely with IT teams to validate and assure the effectiveness of technical controls against identified threats.
Translate business strategy and requirements into secure architectural approaches, clearly communicating risk and enabling appropriate control solutions.
Conduct supplier assurance activities across on-premises, cloud, and hybrid services, providing clear, actionable recommendations.
Define Security Standards, Policies and Guidance

Develop and maintain application security policies, standards, and guidelines.
Ensure alignment between security frameworks, architectural standards, and overall business strategy.
Stay current with emerging threats, technologies, and industry best practices, continuously enhancing Urenco’s security posture.
What do you need to thrive in this role?

Proven experience working in a global organisation, delivering against the key responsibilities outlined above.
A degree in Computer Science, Information Security, or a related discipline, or equivalent industry experience.
Relevant cybersecurity certifications (one or more), such as:

CISSP (Certified Information Systems Security Professional)
CISA (Certified Information Systems Auditor)
CSSLP (Certified Secure Software Lifecycle Professional)
GWAPT (GIAC Web Application Penetration Tester)
GCSA (GIAC Cloud Security Automation)
CASE (Certified Application Security Engineer)
Certified DevSecOps Professional
Strong familiarity with OWASP (including Top 10 and ASVS)

At least 5 years’ experience in information security assurance, with a strong focus on application security.
Hands-on experience with information security frameworks and regulatory compliance, such as ISO 27001 and the NIST SP 800 series / Cybersecurity Framework.
Desirable

Knowledge of regulatory requirements within the nuclear industry, particularly across the United States, United Kingdom, Netherlands, and Germany.
Understanding of government security classifications and associated handling requirements.
What can you expect from us?

More than just a job, we offer a future. More than just a place to work, we provide an opportunity to prosper.  As an employee of Urenco you will receive:

Annual leave of 27 days per annum.

A generous bonus scheme based on achievement of personal and company objectives.
A diverse range of family friendly policies.
A defined contribution pension scheme: contributions start at 4% (employee) and 10% (employer).
Hybrid Working Pattern: up to two days working remotely on average per week. Flexible start and finish times, with a 1.30pm finish on Fridays.
Flexible benefits package; including life assurance and income protection. In addition, you’ll have an opportunity to purchase additional benefits that suit your lifestyle.
Paid time off for volunteering.

The opportunity to join our private medical and dental insurance schemes.
Education and training; we take pride in helping people learn and develop by supporting, accelerating and directing your learning. As well as the completion of mandatory health and safety courses, training packages will be offered to meet your specific needs.

Security vetting

Due to the nature of the industry that Urenco operates in, all personnel regardless of employment status working for Urenco are required to obtain security clearance at the level required for their role. Security clearances are assessed in accordance with regulations and official guidance issued by the relevant competent authorities for national security vetting. In certain circumstances, additional enhanced security clearance considerations apply to roles within Urenco owing to the particular activities that the Urenco Group undertakes in relation to uranium enrichment. Successful candidates will need to satisfy security requirements, and all offers of appointment are made subject to the successful approval of all checks initiated.

Creating a diverse and inclusive workforce

As a truly global company with a presence in the UK, USA, Germany, and the Netherlands, we know that our individual differences make us stronger. Putting people at the heart of our business, we strive to create an open and inclusive workplace that allows every voice to be heard and diversity to thrive. If you require any reasonable adjustments to the recruitment process, please let our talent acquisition team know.

Because together, we are one Urenco. We are enriching the world. And enriching your future.

We welcome your application before the closing date of 12th June

Job Summary

wave-1-bottom
Paddington Location
IT Job Pro

Similar Jobs

The largest community on the web to find and list jobs that aren't restricted by commutes or a specific location.