Security Assurance Lead (Skilled Worker Visa Sponsorship Available) at Cambridge University Press & Assessment

Security Assurance Lead (Skilled Worker Visa Sponsorship Available) at Cambridge University Press & Assessment
Security Assurance Lead (Skilled Worker Visa Sponsorship Available) at Cambridge University Press & Assessment

Location: Cambridge, Cambridgeshire, United Kingdom (Hybrid, minimum of 2 days in the office)
Salary: £53,300 – £71,300
Contract: Permanent, Full-time (35 hours per week)
Skilled Worker Visa Sponsorship: Available
Closing Date: 15 May 2025


Introduction to Cambridge University Press & Assessment
Cambridge University Press & Assessment is a leading global academic publisher and assessment organization, proudly part of the University of Cambridge. We are dedicated to advancing knowledge, fostering learning, and shaping the future of education. As part of our commitment to securing sensitive data and ensuring operational integrity, we are seeking a talented Security Assurance Lead to join our team.


About the Role

As a Security Assurance Lead, you will be at the forefront of protecting Cambridge University Press & Assessment’s critical information assets. This role is essential for safeguarding our systems against emerging cyber threats and ensuring compliance with industry standards and regulations. The position requires a strategic thinker and a hands-on professional with strong expertise in security testing, risk management, and compliance.

You will play a pivotal role in leading security assurance initiatives, managing security vulnerabilities, and driving organizational efforts to maintain a robust cybersecurity posture.


Key Responsibilities

1. Security Assurance and Testing

  • Develop and refine security policies, frameworks, and testing protocols for ongoing assurance.

  • Coordinate vulnerability assessments, penetration testing, and various technical evaluations to identify weaknesses and improve security measures.

  • Collaborate closely with technology teams to implement effective security controls and offer guidance on remediation strategies.

  • Conduct third-party vendor risk assessments, identifying potential security risks and reporting findings to relevant stakeholders.

2. Risk Management

  • Conduct regular risk assessments to identify security vulnerabilities and assess potential risks to the organization.

  • Develop, implement, and track risk mitigation strategies that reduce vulnerabilities and improve overall risk management.

  • Maintain and regularly update the organization’s risk register, ensuring comprehensive tracking of security risks.

  • Establish and report key risk metrics related to security assurance to senior management and other key stakeholders.

3. Attack Surface Management

  • Work with assurance initiatives to identify and mitigate exposed vulnerabilities across various platforms and systems.

  • Continuously monitor the external threat landscape, integrating attack surface management capabilities into the organization’s security architecture.

4. Security Governance and Compliance

  • Develop and uphold comprehensive information security policies, standards, and procedures.

  • Ensure compliance with relevant legal, regulatory, and contractual obligations, and act as the primary liaison for security audits and external assessments.

  • Serve as a subject matter expert for security assurance, providing support for audits and certifications.

5. Incident Response and Preparedness

  • Collaborate with incident response teams to investigate security incidents, determine root causes, and implement corrective measures.

  • Prepare and execute simulated exercises to evaluate the organization’s resilience in responding to security breaches or attacks.


About You

We are looking for an individual who meets the following criteria:

  • Experience: 5+ years in security testing, assurance, or related fields.

  • Education: A degree in Computer Science, Information Security, or a similar technical discipline, or equivalent practical experience.

  • Professional Qualifications: Relevant certifications such as CISSP (Certified Information Systems Security Professional) or ASTP (Accredited Security Testing Professional) are highly desirable.

  • Security Expertise: Strong knowledge of information security principles, emerging cyber threats, compliance frameworks, and risk management practices.

  • Proven Track Record: Demonstrated experience in developing and managing security risk mitigation plans, particularly in medium to large organizations.

  • Communication Skills: Excellent communication and presentation abilities, capable of influencing stakeholders at all levels.

  • Analytical Skills: Ability to analyze the effectiveness of vulnerability management strategies and propose improvements.

  • Self-Motivation: Strong organizational and project management skills with the ability to handle multiple initiatives simultaneously.


Rewards and Benefits

At Cambridge University Press & Assessment, we believe in supporting our employees both professionally and personally. We offer a comprehensive rewards package that includes:

  • Annual Leave: 28 days of annual leave plus bank holidays, ensuring you have time to recharge.

  • Healthcare Benefits: Private medical insurance and permanent health insurance.

  • Bonus Scheme: Discretionary annual bonuses based on performance.

  • Pension Scheme: Group personal pension scheme to help secure your future.

  • Life Assurance: Coverage up to four times your annual salary for peace of mind.

  • Green Travel Schemes: We support eco-friendly travel options to reduce your carbon footprint.

  • Hybrid Working Model: Flexible working arrangements, with most team members spending 40-60% of their time at the office, and additional flexibility for those with specific needs or preferences.


Why Join Cambridge University Press & Assessment?

Make a Global Impact
Joining Cambridge University Press & Assessment is an opportunity to make a real difference. As part of a world-class team, you’ll contribute to shaping the future of education worldwide, supporting millions of students, teachers, and researchers.

Collaborative Environment
Work alongside experts and visionaries in a diverse, collaborative environment where knowledge-sharing and personal growth are at the forefront of everything we do. You will be part of a dynamic team that values innovation and continuous improvement.

Diversity and Inclusion
At Cambridge University Press & Assessment, we embrace diversity in all forms. We believe diverse perspectives drive better solutions and outcomes. We welcome applicants from all backgrounds, and we are committed to providing equal opportunities for everyone.


How to Apply

If you’re ready to take the next step in your career, apply now to join a prestigious global organization that’s helping shape the future of education. We review applications on an ongoing basis, and the closing date for all applications is 15 May 2025. However, we may close the vacancy earlier if suitable candidates are identified.

Interviews will be scheduled shortly after, and successful applicants will be subject to satisfactory background checks, including DBS clearance, due to the nature of the role within a regulated industry.


Visa Sponsorship
Cambridge University Press & Assessment is an approved UK employer under the Skilled Worker visa route. Applicants who meet the eligibility criteria for this role are welcome to apply, and visa sponsorship will be provided.

For more information on the Skilled Worker visa and to confirm your eligibility, please refer to the gov.uk website.


Conclusion

As a Security Assurance Lead, you will play a crucial role in safeguarding our organization’s information assets and ensuring that we meet compliance standards. If you’re ready to take on this exciting challenge, apply today and be part of a forward-thinking, innovative organization committed to making a global impact.


Ready to apply? Click on the Apply Here button to submit your application today.

Leave a Reply

Your email address will not be published. Required fields are marked *