Cyber Security Manager overseeing business-wide cyber risk management at Heathrow. Shaping policies, ensuring compliance, and building regulator relationships for NIS standards.
Responsibilities
Lead day-to-day cyber risk management, ensuring risks are identified, assessed, and managed effectively across the business.
Develop and enhance risk management policies and standards, aligning with industry best practice and Heathrow’s enterprise risk framework.
Work closely with assurance teams to oversee compliance of key systems and drive corrective actions where needed.
Engage with regulators and authorities, including the Civil Aviation Authority, to support Heathrow’s compliance with NIS Regulations and other cyber resilience requirements.
Champion a culture of proactive risk management, driving continuous improvement and alignment with Heathrow’s strategic goals
Requirements
Degree-educated (or equivalent experience) with experience in cyber risk management, ideally across IT and OT environments.
Holds or working towards relevant certifications such as CISSP, CISM, C-RISC, CISA, or ISO 27001 Lead Auditor/Implementor.
Strong knowledge of information security controls, standards and frameworks, including ISO 27001, NIST, and NCSC CAF.
Solid understanding of the UK cyber regulatory landscape, particularly the NIS Regulations 2018; aviation sector experience (e.g. CAP1753) advantageous.
Experienced in applying risk management frameworks (e.g. ISO 27005, NIST RMF) within complex operational environments.
Proven leadership and stakeholder management skills, able to collaborate effectively with both technical SMEs and senior executives.
Cybersecurity Engineer guiding systems through the Risk Management Framework at Skyward Federal. Ensuring compliance with DoD cybersecurity requirements and maintaining secure technologies.
Cybersecurity Intern at Thndr. Gain hands - on experience in securing cloud - native infrastructure and applications while collaborating with senior security engineers.
Account Executive driving new business growth for Strider Technologies via strategic client relationships. Transforming open - source data into actionable insights to protect from nation - state risks.
Senior Security Engineer leading security initiatives to protect customer data at an AI - native legal tech company. Collaborating across functions to ensure compliance and security best practices.
Working Student in Information Security at Allianz Direct supporting security monitoring and managing vulnerability assessments. Collaborating with cross - functional teams to enhance cybersecurity posture and awareness.
Cyber Security Specialist at Vodafone responsible for shaping and deploying security measures. Collaborating with business, IT, and Network teams as a trusted security partner.
Enterprise Security Implementation Specialist at Vodafone supporting customers in implementing security solutions. Responsibilities include onboarding, incident management, and ensuring service quality with Fortinet and Zscaler products.
Manager at PwC contributing to digital transformation in Utilities through technology consulting and stakeholder management. Focused on creating strategies and providing technology solutions in a data - driven world.
Research Associate conducting advanced research in iOS security within a leading institute for applied cybersecurity. Emphasis on secure application development and vulnerability analysis.