Cyber Requirements & Compliance Specialist - London
Cyber Requirements & Compliance Specialist - London
Sizewell C is entering an exciting phase of growth as we mature into an independent organisation and continue building one of the UKs largest and most important energy projects. We are now recruiting the below position:
Position: Cyber Requirements & Compliance Specialist
Security Clearance: Active Security Clearance is required and must already be in place
Location: London, Leiston or Ipswich, with hybrid working and a minimum of 2 days per week on-site. Travel to other Sizewell C locations may be required.
Contract: Permanent, full-time
Salary: 66,866 68,000 depending on experience, plus benefits
Benefits include:
- Annual Leave: 28 days per annum, increasing to 30 days after 5 years of service, plus bank holidays
- Bonus: 5% annual bonus
- Pension Contributions: Defined Contribution Pension Scheme with up to 7.5% employee contribution 15% employer contribution
- Life Assurance: Up to 8 x salary
Closing Date: 1st October 2026
About the Role:
The Cyber Requirements & Compliance Specialist plays a key role in supporting Sizewell C's cyber security strategy, governance and compliance activities.
Reporting to the Cyber Requirements & Compliance Manager, you will help ensure cyber security requirements, policies and standards remain aligned to regulatory obligations, organisational objectives and evolving threats. You will support the development of the cyber security policy framework, maintain compliance documentation and evidence, and help monitor compliance against regulatory, contractual and organisational requirements.
Working closely with cyber security, digital, assurance and business stakeholders, you will contribute to a robust and effective cyber governance framework that supports the delivery of a secure and resilient organisation.
Key Responsibilities:
Cyber Security Strategy & Policy
- Support the development and continual improvement of the Cyber Security Strategy.
- Draft, maintain and enhance cyber security policies, standards and supporting documentation.
- Coordinate policy reviews, updates and approvals in line with governance requirements.
- Monitor alignment between cyber security strategy, organisational objectives and relevant regulatory expectations.
- Track the delivery of strategic cyber security objectives and contribute to progress reporting.
- Promote awareness and understanding of cyber security policies and requirements across the organisation.
Compliance Governance & Monitoring
- Maintain a detailed understanding of cyber security compliance obligations applicable to Sizewell C.
- Identify, interpret and document cyber security requirements arising from legislation, regulations and industry standards.
- Maintain compliance registers, evidence repositories and supporting documentation.
- Monitor compliance against regulatory, contractual and organisational requirements.
- Identify compliance gaps and work with stakeholders to support remediation activities.
- Support the development and operation of continuous compliance monitoring processes.
- Work closely with assurance functions to ensure compliance activities are aligned with assurance programmes and audit requirements.
Requirements & Cross-Functional Support
- Monitor developments in the cyber threat landscape, regulatory environment and industry best practice.
- Translate regulatory, business and security requirements into clear and actionable documentation for technical and non-technical audiences.
- Support the adoption of secure-by-design principles across the organisation.
- Work with security architecture, risk and controls teams to ensure policies, requirements and controls remain aligned.
- Contribute to the definition and maintenance of cyber security requirements that support organisational objectives and regulatory expectations.
- Support continuous improvement initiatives across cyber governance, compliance and requirements management activities.
Governance, Audit & Reporting
- Support governance forums by providing updates on compliance performance, regulatory readiness and emerging risks.
- Assist with the preparation of compliance reports, regulatory submissions and briefing materials.
- Produce audit-ready documentation and management information for governance and leadership audiences.
- Contribute to assurance reviews, audits and evidence-gathering activities.
- Support engagement with regulators and external stakeholders where required.
- Track regulatory findings, recommendations and actions through to closure.
- Assist with external certification activities, including ISO 27001 and Cyber Essentials Plus.
Knowledge & Skills:
- Strong understanding of cyber security principles, governance frameworks and compliance management practices.
- Knowledge of compliance monitoring processes, including evidence management, gap analysis, remediation tracking and audit readiness.
- Ability to interpret regulatory requirements, industry standards and organisational needs, translating these into clear policies, standards and requirements.
- Excellent written communication skills, with the ability to produce high-quality policies, procedures, reports and compliance documentation.
- Strong organisational skills and attention to detail, with the ability to manage structured documentation and evidence to an auditable standard.
- Understanding of policy lifecycle management, including drafting, review, approval and version control processes.
- Strong stakeholder engagement and communication skills, with the ability to work effectively across technical and business functions.
Desirable
- Familiarity with ISO 27001/27002, NIST Cyber Security Framework (CSF) 2.0 and the NCSC Cyber Assessment Framework (CAF).
- Understanding of the UK regulatory landscape for cyber security, including ONR Security Assessment Principles (SyAPs) and the NIS Regulations.
- Experience using compliance management platforms, document management systems or evidence repositories.
- Awareness of security architecture principles and their relationship to governance and policy frameworks.
Qualifications & Experience:
- Degree qualified, or equivalent, in Cyber Security, Information Security, Computer Science, Business or a related discipline.
- Experience within cyber security, information security, governance, compliance or risk management.
- Demonstrable involvement in mapping organisational controls, processes or documentation to recognised frameworks, standards or regulatory requirements.
- Contribution to compliance assessments against recognised standards such as ISO 27001, Cyber Essentials Plus, NCSC CAF or equivalent frameworks.
- Participation in audits, assurance activities, regulatory inspections or evidence-based compliance programmes.
- Drafting and maintaining cyber security policies, standards, procedures, reports or governance documentation.
- Management of policy libraries, document repositories or structured compliance evidence.
- Experience supporting governance forums, risk management activities or compliance initiatives.
Desirable
- Professional certification such as ISO 27001 Lead Auditor, ISO 27001 Lead Implementer, CISSP, CISM, CRISC or CompTIA Security+.
- Experience within a highly regulated sector such as nuclear, energy, utilities, healthcare, financial services or the public sector.
- Involvement in cyber security strategy development, security transformation programmes or assurance activities.
- Familiarity with requirements management methodologies or tools within cyber security or technology environments.
Why Join us?
- Be part of one of the most important low-carbon energy projects in the UK.
- Work in a mission-driven environment that values innovation, integrity, and long-term sustainability.
- Competitive salary, comprehensive benefits, and opportunities for career development.
- Flexible and hybrid working options.
Key Competencies:
Humility
- Recognise the value brought fromdifferent culturesand experiences
- Be open to others points of view and ideas, be willing to debate and to compromise
Positivity
- Positively challengepoor qualityand performance
- Identifysolutions at the lowest possible level
- Encourage tier 1s and others to bringnew ideasforward
Respect
- Value the rules and environment in which we operate
- Give and receive feedback with respect
- Embrace and engage with new people and ideas
Solidarity
- One team, working closely together and helping each other
- Empowered teams always looking forward.
- Shared responsibility for delivery the project outcomes
Clarity
- Communicate clearly and consistently
- Promote collaboration and team alignment
- Clearer and faster decision making
- Drive simplification at all levels
If this sounds like the next step in your career, wed love to hear from you. Apply today.
Recommended Jobs
VP, Advanced Development - Floor Care
About Us SharkNinja is a global product design and technology company, with a diversified portfolio of 5-star rated lifestyle solutions that positively impact people’s lives in homes around the w…
Disputes Associate (2-4PQE)
The successful candidate will work across a mix of commercial litigation and international arbitration, supporting partners on complex, often multi-jurisdictional matters. Assisting on, and where …
Head of UKI Enterprise Sales
As a key member of the EMEA Revenue Leadership Team reporting directly to the Head of UKI & NE, you will be the strategic leader responsible for shaping, executing, and driving all Enterprise go-to-m…
No open role? Click here to share your details speculatively
Grey London, part of WPP, is on a mission to create the most influential brands of the next decade, through the power of Famously Effective ideas. Famously Effective ideas extend far beyond the co…
Sales Graduate Programme
v Do you thrive in a fast-paced environment, where you gain a tremendous amount of responsibility? Do you want to be part of an exceptional entrepreneurial team with motivated and extremely driven p…
Global Director, Marketing Operations
Build the global operating engine behind world-class growth Marketing doesn't scale by accident. It scales through exceptional operations, world-class insights, smart technology and outstanding le…
Hospital Ophthalmic Account Manager - London
Are you a driven medical device sales professional looking to take your career to the next level with a global market leader in ophthalmic technology? Do you thrive on building relationships with cl…
Afternoon Nanny in London, Job ID J227C1
A family in London seeks a part-time afternoon nanny to help them look after their school aged child. Big Bonus if the candidate has experience with maths tutoring for similar age groups. Alll genera…
CCDO Demolition Operative
44 hours per week PAYE only Amalga Limited are a specialist airport construction logistics contractor and have been awarded contracts at Heathrow Airport to support the delivery of several major co…
Customer Advisor- 15 Hours
Your role in the JoJo story… Do you dream of a role where you can make meaningful contributions that finish in days well spent? If you're ready to begin a fabulous adventure and you're passionate a…