Cyber Security Manager overseeing business-wide cyber risk management at Heathrow. Shaping policies, ensuring compliance, and building regulator relationships for NIS standards.
Responsibilities
Lead day-to-day cyber risk management, ensuring risks are identified, assessed, and managed effectively across the business.
Develop and enhance risk management policies and standards, aligning with industry best practice and Heathrow’s enterprise risk framework.
Work closely with assurance teams to oversee compliance of key systems and drive corrective actions where needed.
Engage with regulators and authorities, including the Civil Aviation Authority, to support Heathrow’s compliance with NIS Regulations and other cyber resilience requirements.
Champion a culture of proactive risk management, driving continuous improvement and alignment with Heathrow’s strategic goals
Requirements
Degree-educated (or equivalent experience) with experience in cyber risk management, ideally across IT and OT environments.
Holds or working towards relevant certifications such as CISSP, CISM, C-RISC, CISA, or ISO 27001 Lead Auditor/Implementor.
Strong knowledge of information security controls, standards and frameworks, including ISO 27001, NIST, and NCSC CAF.
Solid understanding of the UK cyber regulatory landscape, particularly the NIS Regulations 2018; aviation sector experience (e.g. CAP1753) advantageous.
Experienced in applying risk management frameworks (e.g. ISO 27005, NIST RMF) within complex operational environments.
Proven leadership and stakeholder management skills, able to collaborate effectively with both technical SMEs and senior executives.
Lead functional safety for product development in PEM electrolyzers at Quest One. Collaborate with teams and support certification processes in the field of green hydrogen technology.
(Senior) Consultant in Automotive - & Product Security at Wavestone, focusing on cyber security solutions for clients in innovative projects. Collaborative work in a vibrant team environment across multiple German cities.
Consultant specializing in Cyber & Product Security for clients in a hybrid role. Focused on implementing security strategies and conducting assessments with a collaborative approach.
Information Security Manager focusing on risk management for Xecuro GmbH. Implementing and optimizing risk management processes within a technological environment in Bonn.
Teamlead position for Security Governance & Assurance at Xecuro GmbH in Bonn. Leading team and implementing information security management systems (ISMS).
Information Security Expert working on safe digital solutions, ensuring compliance and conducting risk assessments. Join Xecuro GmbH in shaping Germany's digital future with innovative security measures.
Lead ISSO ensuring security compliance for multi - tenant cloud and hybrid environments at Agile Defense. Responsible for vulnerability analyses and risk management decision - making expertise.
Security Engineer designing and deploying agentic AI systems that operate within enterprise environments for Capgemini. Collaborating on security engineering and applied AI system development.
Security Officer tasked with ensuring safety and access control at Sutter Health facilities. Providing assistance and investigating incidents, while ensuring a safe environment.