Talent.com
NATO
Cybersecurity LeadNATO • London, England, UK
Cybersecurity Lead

Cybersecurity Lead

NATO • London, England, UK
7 days ago
Job type
  • Full-time
Job description

The post is budgeted from 1 January 2027 and the successful candidate is expected to start employment as soon as possible thereafter.

1. OVERVIEW OF DIANA

NATO DIANA is the Defence Innovation Accelerator for the North Atlantic a NATO body dedicated to finding and accelerating innovation to provide decisive defence and security effects for the Alliance while fostering deep-tech innovation. NATO DIANA is comprised of a Board of Directors representing all 32 nations and an operational team referred to as the DIANA Executive (DX). Operating from three offices in Europe and North America the DX leverages a network of military end users world-leading accelerator sites test centres professional mentors and experts and Allied expertise to accelerate the most innovative technologies from across the NATO Alliance. DIANA is a dynamic agile workplace which strives for innovative thinking diversity and performance excellence across all teams. To achieve our mission DIANA is committed to providing our people with an environment that is positive inclusive and collaborative.

2. OVERVIEW OF THE ROLE

The Safety Security & Resilience (SSR) Team is responsible for safeguarding DIANAs people information facilities and digital assets. The team develops and maintains proportionate frameworks policies controls and assurance arrangements across cyber security information security physical security safety and security risk management to enable secure safe and resilient operations across DIANA. The Cybersecurity Lead is responsible for delivering DIANAs cyber security activities ensuring the secure and resilient operation of its cloud digital and business technology services along with cyber security architectural role combines hands-on technical expertise with responsibility for cyber governance risk management compliance resilience and assurance embedding security by design across the organisation.

*Reserve candidates may be considered for similar posts in Estonia or Canada if appropriate.*

Reporting toDIANAs Head of Safety Security & Resilience


Duties of this role include:

  • Lead the development implementation and continual improvement of DIANAs cyber security security architecture governance framework risk-management arrangements and assurance programme building in security by design principles.
  • Establish and manage cyber security policies standards control frameworks risk registers security metrics and assurance documentation.
  • Lead and oversee security risk assessments for DIANA Digital assets.
  • Provide second-line challenge oversight and assurance across technology projects suppliers cloud platforms SaaS applications AI solutions and operational processes ensuring that risks are identified assessed treated and escalated appropriately.
  • Lead cyber security incident responseassurance and risk management activities including for suppliers service providers and third-party technology partners.
  • Lead internal and external audit assurance accreditation and certification activities against relevant standards and assurance frameworks including ISO/IEC 27001 NIST Cybersecurity Framework NIST SP 800-53 Cyber Essentials Plus CIS Benchmarks and applicable NATO security-accreditation expectations.
  • Provide guidance mentoring or managerial leadership as required to enable collaboration capability development and successful delivery.
  • Perform any other related duties as may be required.

3. ROLE REQUIREMENTS QUALIFICATIONS AND EXPERIENCE

ESSENTIAL

The incumbentmust have:

  • A minimum requirement of a Bachelors degree at a nationally recognised/certified University in Cyber Security Information Security Computer Science Information Technology Engineering Digital Forensics Networks or a closely related technical discipline and 3 years post-related experience OR exceptionally the lack of a university degree may be compensated by at least 10 years extensive and progressive expertise in duties related to the function of the post.
  • A minimum of 3 years professional experience in cyber security cloud security security architecture information assurance or related technology-security roles.
  • Arecognized cyber security qualification (e.g. CISSP CCSP CCSK or equivalent).
  • Enterpriseor security architecture qualifications (e.g. TOGAF or equivalent).
  • Proven experience working in government defence law-enforcement national security critical infrastructure NATO or equivalent high-assurance sectors handling sensitiveregulatedor classified information.
  • Provenexperience leading cyber security governance risk management assurance security accreditation audit and control validation activities including the application of recognised security standards frameworks and principles.

  • Proven experience in taking an organisation through ISO 27001 certification and other benchmarks such as Cyber Security Plus.

  • Proven experience designing implementing securing and assuring enterprise cloud and digital technology environments particularly Microsoft Azure and Microsoft 365 including identity and access management endpoint security network securitymonitoring andvulnerability management.

  • Demonstrable experience assessing and managing cyber security risks across cloud services SaaS platforms suppliers infrastructure enterprise technologies and business change initiatives.

  • Experience providing disciplinary project or functional leadership including setting priorities managing resources and delivering results through others.
  • Possess the following minimum levels of NATOs official languages (English/French): V (Advanced) in one; and I (Beginner) in the other.

NOTE:Most ofDIANAs internal work is conducted in the English language.

DESIRABLE


The following would be considered an advantage:

  • Arelevant postgraduate qualification such as an MSc in Cyber Security Information Security Computer Science Engineering Digital Forensics Artificial Intelligence Cloud Computing Risk Management or a closely related discipline.
  • Experience implementingadvanced security technologies and capabilities such as cloud security tooling security monitoring and detection platforms security automation DevSecOps AI governance or enterprise security architecture.
  • Knowledge of NATO institutional framework policies and procedures.

COMPETENCIES

  • The incumbentmustdemonstrate:

  • OrganizationalandEnvironmentalAwareness: Understands the wider mission and considers the impact of their actions on others.

  • Initiative&Responsibility: Takes ownership and accountability.

  • Adaptability & Flexibility: Embraces change adjusts priorities as needed and continuesto deliver results in evolving environments.

  • Impact & Influence: Builds trustand buy in throughconfident and persuasive communication.

  • Stakeholder Management: Builds strategic relationships and drives collaborativeoutcomes.

  • Leading & Developing Other: Leads and develops others through coaching empowerment and feedback.

  • Self-awarenessanda LearningMindset: Seeks opportunities to learn reflects on experience and applies learning to improve outcomes.

4. WHAT WE OFFER

  • Genuinelymeaningful work as part of the newest unit within the most successful alliance in history.
  • Tax-free salary.
  • Household and childrens allowances and privileges for expatriate staff including expatriation and educational allowances (where applicable) andadditionalhome leave.
  • Excellent private health insurance scheme.
  • NATO pension scheme.
  • Generousannual leave of 30 days plus official holidays.
  • Flexible working conditions and a smoke-free office in London.
  • Opportunities for learning and development.


5. CONTRACT

In accordance withthe NATO Civilian Personnel Regulations the successful candidate will receive a definite duration contract of three years which may be followed by an extension. If the successful applicant is seconded from the national administration of one of NATOs member States a 3-year definite duration contract will be offered which may be renewed for a further period of up to 3 years subject to the agreement of the national authority concerned. Themaximumperiod of service in thepostas a seconded staff member is six years.

6. USEFUL INFORMATION REGARDING APPLICATION AND RECRUITMENT PROCESS

Please note that we canonly accept applications from nationals of NATO membercountries. Applications must besubmittedusingthee-recruitment system and any documents sent through other formats will not be reviewed(including email social networketc). Before you applytoany position we encourage you to click hereandreviewhowto apply. Due to the broad interest in NATODIANA and thelarge numberof potential candidates telephone or email enquiries cannot be dealt with. Afterreview ofyour online applicationsuccessful candidates will be invitedto a pre-recorded video interview. Shortlisted candidates from that will then be invited tothe final assessments whichinclude:a languageproficiencytest a job-related written test and a panel interview. Appointment will be subject to receipt of a security clearance (provided by the national Authorities of the selected candidate) and approval of the candidates medical file by the NATOMedical Adviser.

NOTE:DIANA will not accept any phase of the recruitment andselectionprepared in whole or in partby means ofgenerative artificial-intelligence (AI) tools including and without limitation to chatbots such as Chat Generative Pre-trained Transformer (Chat GPT Copilot Claude etc.) or other language generating tools. DIANA reserves the right to screen applications toidentifythe use of such tools. All applications prepared in whole or in partbymeans ofsuch generative or creative AI applications will be rejected without further consideration at DIANAs sole discretion and DIANA reserves the right to take further steps in such cases asappropriate.

7. ADDITIONAL INFORMATION

NATO is committed to diversity and inclusion and strives to provide equal access to employmentadvancementand retention independent of gender age nationality ethnic origin religion or belief cultural background sexual orientation and disability. NATO is committed to fostering an inclusive and accessible working environment where all candidates living with disabilities can fullyparticipatein the recruitment and selection process. If you require reasonable accommodation please inform us during your selection process along with documented medical evidence to support your request. All NATO DIANA personnel are expected to conduct themselvesin accordance withthe current NATO Code of Conduct as agreed by the North Atlantic Council (NAC) and thus display the core valuesof integrity impartiality loyalty accountability and professionalism. The incumbentis required tobe a resident in the hostnation for the duration of their contract. DIANA has a flexible teleworking policy topermitworking in office at home and across NATOAllied Nations subject to managerial approval. For moreinformation on DIANA please visit our website.


Employment Type : Full-Time
Experience: years
Vacancy: 1
Create a job alert for this search

Cybersecurity Lead • London, England, UK

Similar jobs

Cybersecurity Service Delivery Lead

CybanetixGreater London, England, GB
Full-time

A leading cybersecurity firm in the UK is seeking an experienced operational delivery manager to oversee service delivery performance and ensure client satisfaction.The ideal candidate will have a ... Show more

 • Promoted

Cybersecurity, Senior Associate

STATE STREET CORPORATIONGreater London, England, GB
Full-time

Who We Are Looking For:This opportunity is ideal for individuals interested in contributing to our team as a senior associate Software Engineering & ML/Data Engineer within State Street’s Global Te... Show more

 • Promoted

Principal Cybersecurity Architect

TwinThreadGreater London, England, GB
Full-time

As a Principal Cybersecurity Architect at JPMorgan Chase within Cybersecurity and Tech Controls, you are a senior technical leader responsible for designing, implementing, and maintaining the firm’... Show more

 • Promoted

Strategic IT & Cybersecurity Lead | Hybrid

AVKGreater London, England, GB
Full-time

AVK is seeking an IT Manager to lead technology infrastructure, cybersecurity, and data governance to support growth and ISO accreditation.Reporting to the VP of Business Operations, you will work ... Show more

 • Promoted

Cybersecurity Manager II

McKinsey & CompanyGreater London, England, GB
Full-time

You are someone who thrives in a high-performance environment, bringing a growth mindset and entrepreneurial spirit to tackle meaningful challenges that have a real impact.In return for your drive,... Show more

 • Promoted

Global Cyber Defense Platform Lead

NTT Global Data CentersGreater London, England, GB
Full-time

NTT Global Data Centers is seeking a Senior Security Platform Engineer to join the GDC-OIS team.The role requires expert-level skills in threat hunting, SIEM/SOAR, and incident response across IT/O... Show more

 • Promoted

Cybersecurity Lead - DevSecOps & Cloud Security

McKinsey & Company, Inc.City of Westminster, England, GB
Full-time

ClienTech is seeking a Digital Risk Lead to embed secure-by-design practices across product, data, and engineering.You will partner with engineering squads and client services to implement secure S... Show more

 • Promoted

Senior Cyber & Tech Risk Leader

SchrodersGreater London, England, GB
Full-time

Schroders is seeking an experienced cyber and technology risk professional to provide oversight and ensure effective risk management.The role involves working closely with senior management and fir... Show more

 • Promoted

Hybrid: Senior Digital Trust & Cybersecurity Consultant

Capgemini InventGreater London, England, GB
Full-time

Capgemini Invent is seeking an experienced Cybersecurity Consultant in Greater London to drive transformation in Cybersecurity for clients.You will engage in projects that enhance strategic securit... Show more

 • Promoted

Senior Cybersecurity Engineering Leader

EYGreater London, England, GB
Full-time

A global consulting firm in the UK is seeking a Senior Manager in Cybersecurity.This pivotal role involves managing cybersecurity engagements, building strong client relationships, and leading team... Show more

 • Promoted

Global Cyber Alliances Lead

慨正橡扯Greater London, England, GB
Full-time

DXC Technology is a leading global technology services provider, helping some of the world's largest organisations modernise their IT, protect their critical assets, and accelerate digital transfor... Show more

 • Promoted

Senior Cyber Risk & Security Leader (Hybrid)

Spirit UK LtdGreater London, England, GB
Full-time

A leading cybersecurity firm is seeking an experienced Cyber Risk & Security Manager to lead cyber risk assessments and drive strategic improvements.The ideal candidate will have over 10 years of e... Show more

 • Promoted

Cybersecurity Incident Response Lead

Caa Executive SearchGreater London, England, GB
Full-time

Executive level position reporting to the Director of Cyber Threat Management & Incident Response, this is a hands‑on senior security position working within the Information Security group and with... Show more

 • Promoted

Lead - Cybersecurity

PVH (Tommy Hilfiger/Calvin Klein)Greater London, England, GB
Full-time

Freshworks is looking for a Lead - Cybersecurity GTM to sit at the intersection of Cybersecurity, customer trust, and go-to-market.This is not a back-office compliance role.You will be the security... Show more

 • Promoted

Field CISO: Enterprise Cybersecurity Leader & Advisor

Checkpoint SoftwareGreater London, England, GB
Full-time

Checkpoint Software is seeking a CISO to join their Global Field CISO organization in Greater London.The ideal candidate will have over 10 years of cybersecurity experience, including executive-lev... Show more

 • Promoted

Sr Director Product Security - Cybersecurity

NablaGreater London, England, United Kingdom
Full-time

The Product Security team at NielsenIQ is dedicated to enhancing business application security and making product teams accountable throughout the software development lifecycle.It not only protect... Show more

 • Promoted

Cybersecurity - Manager

CFGIGreater London, England, GB
Full-time

CFGI is a global consulting firm that helps organisations navigate complex business challenges with confidence.With a strong presence in the UK, we partner with companies across industries to deliv... Show more

 • Promoted

Third Party Cyber Risk Lead

Tokio Marine HCCGreater London, England, GB
Full-time +1

Third Party Cyber Risk LeadApplylocations: UK - London ( St Botolph )time type: Full timeposted on: Posted Todayjob requisition id: 2026-628**Job Title:** Third Party Cyber Risk Lead**Repor... Show more

 • Promoted

Vice President, Cyber Risk BA Team Lead

MUFG Bank, LtdGreater London, England, GB
Full-time

Vice President, Cyber Risk BA Team LeadApplylocations: Londontime type: Full timeposted on: Posted Todayjob requisition id: 10076966-WD**Do you want your voice heard and your actions to cou... Show more

 • Promoted

Senior Cybersecurity Consultant: Cloud & Compliance Lead

Ultramink TechnologiesGreater London, England, GB
Full-time

Ultramink Technologies is seeking a seasoned professional to lead security engagements for mid-market enterprises across Europe.The role involves conducting security assessments, designing security... Show more