Be at the heart of actionFly remote-controlled drones into enemy territory to gather vital information.

Apply Now

Cyber Security Manager

Aberdeen
1 day ago
Create job alert

Job Title: Cyber Security Manager
Reports to: CIO (Chief Information Officer)
Location: Aberdeen, UK
Contract Length: Until 31/12/2026
Description:
Role Overview
The Cyber Security Manager will play a critical leadership role in shaping, implementing, and maintaining our client’s cybersecurity strategy and operational resilience. Reporting directly to the CIO, the role will act as the tactical and operational cybersecurity lead, managing security engineering, monitoring, response, governance, and awareness programs. This is ideal for someone with strong leadership skills, deep cybersecurity knowledge, and practical experience operating in industrial environments.
Key Responsibilities
Cybersecurity Strategy and Governance
• Development and execution of cyber strategy and risk posture.
• Define and implement cybersecurity policies, standards, and procedures aligned to ISO27001, NIST, and OG86 frameworks.
• Conduct regular threat assessments and ensure alignment of security controls with business risk appetite.
• Monitor compliance with regulatory and shareholder cybersecurity obligations, including NIS2 and UK critical infrastructure laws.
Responsbile for Information Risk Management across the IT function.
Operational Security Leadership
• Lead cybersecurity operations including Security Operations Centre (SOC), SIEM management, and incident response coordination.
• Oversee vulnerability management, patch management, and threat detection for both IT and OT systems.
• Partner with IT and OT teams to embed security across network infrastructure, cloud services, and field operations.
• Manage third-party security risk, including joint venture interfaces, vendors, and BPO service providers.
• Build, lead, mentor, and develop a high-performing cyber security team.
Risk, Awareness, and Culture
• Champion a strong security culture through education, awareness, and engagement.
• Lead cyber and IT risk assessments across the enterprise, producing mitigation plans and escalating risks appropriately.
• Act as a subject matter expert (SME) during audits, regulator reviews, and board reporting cycles.
Transformation and Transition
• Support the separation of IT estate fromlegacy systems, ensuring cyber risk is proactively managed during transition.
• Design and implement the foundational security architecture for a greenfield technology landscape, including secure cloud, identity management, and endpoint protection.
Qualifications & Experience
Required:
• Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, or a related field.
• Minimum 10 years of experience in IT risk management or cybersecurity roles, including at least 3 years in leadership/management.
• Familiarity with security frameworks (NIST CSF, ISO 27001), regulatory requirements (NIS2, GDPR), and OT standards (IEC 62443, OG86).
• Strong vendor and stakeholder management skills.
Preferred:
• Professional certifications such as CISSP, CISM, or SANS GIAC.
• Deep understanding of both enterprise IT and industrial control systems (ICS/SCADA) in upstream energy.
• Proven experience in managing SOC operations, incident response, and threat intelligence.
What We Offer
• Opportunity to build a cybersecurity function in a high-impact role at a newly formed, agile energy company.
• Exposure to both enterprise and operational cybersecurity challenges in the UK’s most ambitious upstream JV.

With over 90 years' combined experience, NES Fircroft (NES) is proud to be the world's leading engineering staffing provider spanning the Oil & Gas, Power & Renewables, Chemicals, Construction & Infrastructure, Life Sciences, Mining and Manufacturing sectors worldwide. With more than 80 offices in 45 countries, we are able to provide our clients with the engineering and technical expertise they need, wherever and whenever it is needed. We offer contractors far more than a traditional recruitment service, supporting with everything from securing visas and work permits, to providing market-leading benefits packages and accommodation, ensuring they are safely and compliantly able to support our clients

Related Jobs

View all jobs

Cyber Security Manager

Cyber Security Manager

Information Security Manager

Cyber Security Manager (Purview)

Cyber Incident Response Analyst

Cyber Incident Response Analyst

Subscribe to Future Tech Insights for the latest jobs & insights, direct to your inbox.

By subscribing, you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

The Future of Cybersecurity Jobs: Careers That Don’t Exist Yet

Cyber security has become one of the most critical issues of our age. Once regarded as a technical problem confined to IT departments, it is now a board-level priority, a government mandate, and a daily necessity for individuals. The shift towards cloud services, remote working, connected devices, and artificial intelligence has dramatically increased the risks of digital attacks. In the UK, cyber security is central to national resilience. The government has identified cyber as a “tier one” threat to national security, alongside terrorism and pandemics. The private sector, from banks to retailers, now sees data breaches and ransomware as existential risks. Global spending on cyber security is projected to exceed $250 billion by 2030, with the UK already home to a thriving cyber industry employing tens of thousands. Yet, as powerful as the industry already is, we are only at the beginning. The technologies shaping the next two decades—AI, quantum computing, edge computing, extended reality, and biotechnology—will radically reshape cyber security. Many of the most vital cyber security jobs of the future don’t exist yet. This article explores why new roles will emerge, the careers likely to appear, how today’s jobs will evolve, why the UK is well-positioned, and how professionals can prepare now.

Seasonal Hiring Peaks for Cybersecurity Jobs: The Best Months to Apply & Why

The UK's cybersecurity sector has emerged as one of the most critical and lucrative technology markets, with roles spanning from security analysts to penetration testers and chief information security officers. With cybersecurity positions commanding salaries from £28,000 for junior security analysts to £140,000+ for senior security architects, understanding when organisations actively recruit can dramatically impact your career trajectory in this essential field. Unlike traditional IT sectors, cybersecurity hiring follows distinct patterns influenced by threat landscapes, regulatory compliance cycles, and incident response requirements. The sector's unique combination of perpetual threat evolution, regulatory pressures, and skills shortages creates predictable hiring windows that strategic professionals can leverage to advance their careers in protecting Britain's digital infrastructure. This comprehensive guide explores the optimal timing for cybersecurity job applications in the UK, examining how cyber threat cycles, compliance deadlines, and government initiatives influence recruitment patterns, and why strategic timing can determine whether you join a cutting-edge security consultancy or miss the opportunity to defend against tomorrow's cyber threats.

Pre-Employment Checks for Cyber Security Jobs: DBS, References & Right-to-Work and more Explained

The cyber security sector in the UK stands at the forefront of protecting national infrastructure, business operations, and personal data from increasingly sophisticated cyber threats. As organisations across all sectors recognise cyber security as a critical business function, employers are implementing the most rigorous pre-employment screening processes in the technology industry to ensure they recruit professionals capable of defending against advanced persistent threats and maintaining the highest standards of security and trustworthiness. Whether you're a penetration tester, security analyst, incident response specialist, or chief information security officer, understanding the comprehensive vetting requirements is essential for successfully advancing your career in this security-critical field. This detailed guide explores the extensive background checks and screening processes you'll encounter when applying for cyber security positions in the UK, from fundamental eligibility verification to the most stringent security clearance requirements and specialised threat intelligence assessments.