Cyber Security Program Manager

MS Amlin Ltd
London
10 months ago
Applications closed

Related Jobs

View all jobs

OT SOC Engineer

Penetration Testing Manager

Privacy Operations Specialist

Senior Policy Administrator

Identity & Access Management Engineer

Product Security Engineer

Location:London

Contract Type:Permanent

Work Pattern:Full Timeandminimum of 2 days in London

About The Role

We are seeking a highly organised and experienced Security Program Manager to support the delivery of both local security projects and larger strategic change initiatives. Reporting to the Head of Operational Security and Program Management, this role will be responsible for overseeing the security programme, ensuring resources are appropriately allocated, budgets are managed effectively, and capacity is optimised. The ideal candidate will have a strong background in project and program management within a cybersecurity or IT environment and will be skilled at coordinating across teams to ensure successful outcomes.

MS Amlin is part of a global top-10 insurance group, MS&AD. We're made up of four distinct businesses covering Global Reinsurance, Lloyds Franchise, Local Specialty Insurer, and Business Services

MS Amlin Business Services (MS ABS) supports the organisation through legal, HR, facilities management, IT, risk management, compliance, and finance. Our vision is to be a trusted partner and solution provider of choice

Key Responsibilities:

Security Program Management:

  • Manage the delivery of security projects, including local initiatives and large-scale change programs, ensuring alignment with organizational goals.
  • Develop and maintain detailed project plans, timelines, and deliverables for assigned projects.
  • Identify, track, and resolve project risks, issues, and dependencies to keep projects on track.


Resource Allocation and Capacity Management:

  • Work closely with team leads and stakeholders to ensure the right resources are assigned to projects based on priorities and skills.
  • Monitor resource availability and workload to maintain optimal capacity and avoid bottlenecks.
  • Provide recommendations to leadership on resource planning and potential gaps.


Budget and Financial Management:

  • Oversee project budgets, ensuring all expenditures are tracked, justified, and within approved limits.
  • Prepare and deliver regular budget reports to the Head of Operational Security and Program Management.
  • Identify and mitigate potential financial risks or overruns in collaboration with finance and project teams.


Stakeholder Collaboration:

  • Act as the primary point of contact for project updates, ensuring clear communication with stakeholders at all levels.
  • Facilitate cross-functional collaboration between cybersecurity, PMO, IT, procurement, and other business units to ensure project success.
  • Manage expectations by providing regular progress updates and addressing concerns promptly.


Governance and Reporting:

  • Implement, maintain and or follow governance practices for security programs and projects, ensuring adherence to organisational policies and standards.
  • Provide regular status reports and dashboards to leadership, highlighting project milestones, risks, and outcomes.
  • Ensure all project documentation is maintained and accessible for audits and reviews.


Continuous Improvement:

  • Identify opportunities to enhance project and program management processes, tools, and methodologies.
  • Incorporate lessons learned from completed projects into future initiatives.
  • Stay informed about emerging trends and best practices in security program management.


Experience:

  • 5+ years of experience in project and program management, within cybersecurity or IT.
  • Proven track record of managing complex, multi-stakeholder projects and delivering successful outcomes.
  • Experience with resource planning, budgeting, and capacity management.
  • Experience in managing budgets upwards of 500k.
  • Hands on, technical experience is desirable across core security tooling such as Firewalls, AV/EDR, Proxies and SIEM. Technical Knowledge:
  • Experienced with cybersecurity concepts, practices, and frameworks (e.g., NIST CSF, ISO 27001).
  • Knowledge of IT environments, including cloud and hybrid infrastructures, is a plus.
  • Proficiency with project management tools (e.g., MS Project, Jira, Confluence).


Skills:

  • Strong organisational and multitasking skills, with the ability to manage multiple activities simultaneously.
  • Excellent communication and interpersonal skills, with the ability to engage and influence stakeholders at all levels.
  • Analytical mindset with a focus on problem-solving and decision-making.


Certifications Relevant to the Role:

  • Project Management Professional (PMP)
  • PRINCE2 Practitioner
  • Certified Information Systems Security Professional (CISSP) (or working towards it)
  • Agile Project Management (AgilePM)


Key Competencies:

  • Strategic planning and prioritisation.
  • Collaboration and teamwork.
  • Financial acumen and budget management.
  • Adaptability to dynamic and complex environments.


What Can You Expect From Us?

  • Competitive Base Salary
  • Performance Related Discretionary Bonus
  • Holiday:28 days core annual leave, and you can buy up to 5 days
  • Pension:A minimum 2% employee contribution plus 7% MS Amlin contribution (9%) up to a maximum of 5% employee contribution plus 13% MS Amlin contribution (18%)
  • Private Medical:cover for yourself. Family members/dependants can be added
  • Flex Fund:£1,000 (pro-rated based on start date) to spend on flexible benefits
  • Life Assurance:5 x annualised base salary


Each one of us is unique because of our backgrounds, what we have learned so far and how we express that. Establishing an inclusive attitude helps us, organisationally, to 'think outside the box' because it calls on that diverse range of ideas, perspectives and lived experiences.

We commit to continuing our work towards a more diverse and inclusive future by recognising that our business, our teams and every colleague has a part to play in driving the positive change we all want to see.

Our values demonstrate our commitment to providing an environment in which each and every colleague is respected for who they are and what they can contribute to the business, regardless of nationality, race, ethnicity, religion/faith, sexual orientation, gender identity, gender expression, disability, socio-economic background, sex or age.

#LI-Hybrid #MSABS#J-18808-Ljbffr

Subscribe to Future Tech Insights for the latest jobs & insights, direct to your inbox.

By subscribing, you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

How Many Cyber Security Tools Do You Need to Know to Get a Cyber Security Job?

If you are trying to build or move forward in a cyber security career, it can feel like the list of tools you are expected to know never ends. One job advert asks for SIEM platforms, another mentions penetration testing tools, another lists cloud security, threat intelligence platforms, endpoint detection, scripting languages and compliance frameworks. Scroll LinkedIn and it gets worse. Everyone seems to “know” dozens of tools, certifications and platforms. Here is the reality most cyber security hiring managers agree on: they are not hiring you because you know every tool. They are hiring you because you understand risk, can think like an attacker and a defender, follow process, communicate clearly and make good decisions under pressure. Tools matter — but only when they support those outcomes. So how many cyber security tools do you actually need to know to get a job? For most job seekers, the answer is far fewer than you think. This article explains what employers really expect, which tools are essential, which are role-specific and how to focus your learning so you look credible, not overwhelmed.

What Hiring Managers Look for First in Cyber Security Job Applications (UK Guide)

If you want to stand out in the highly competitive world of cyber security job applications, you need to understand what hiring managers look for before they even finish reading a CV. Cyber security hiring managers scan applications quickly and with specific priorities in mind. They assess not just your technical ability, but your judgement, professionalism, clarity, risk awareness and evidence of impact. This guide explains what hiring managers look for first in cyber security applications across roles like Security Analyst, Security Engineer, Penetration Tester, Incident Responder, Security Architect, Governance Risk and Compliance specialists and Cloud Security positions. Use this as a practical, step-by-step checklist to sharpen your CV, LinkedIn profile, cover letter and portfolio before you apply on www.cybersecurityjobs.tech .

The Skills Gap in Cyber Security Jobs: What Universities Aren’t Teaching

Cyber security has become one of the most critical disciplines in the modern economy. From protecting financial systems and healthcare data to securing national infrastructure, cloud platforms and supply chains, cyber security professionals now sit at the frontline of digital trust. Demand for cyber security talent in the UK has surged. Job vacancies remain high, salaries continue to rise, and organisations across every sector report difficulty hiring skilled professionals. Yet despite this demand, many graduates struggle to break into cyber security roles and employers consistently report that candidates are not job-ready. The problem is not intelligence, ambition or academic effort. It is a persistent and widening skills gap between university education and real-world cyber security work. This article explores that gap in depth: what universities teach well, what they routinely miss, why the gap exists, what employers actually want, and how jobseekers can bridge the divide to build sustainable careers in cyber security.