CrawlJobs Logo

Cyber Security Business Partner

pexa.co.uk Logo

PEXA UK

Location Icon

Location:
United Kingdom, Leeds

Category Icon
Category:
IT - Administration

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

65000.00 - 80000.00 GBP / Year

Job Description:

The Information Security Manager / Cyber Security Business Partner (CSBP) plays a vital role in ensuring the alignment of cyber security initiatives with the strategic and operational goals of the organisation. This role serves as a key interface between business units and the cyber security function, delivering risk-based guidance, promoting a strong security culture, and enabling security innovation. You will have experience managing customer cyber assurance activities, supporting external audits (e.g., ISO 27001, Cyber Essentials Plus), and maintaining regulatory compliance, particularly with Financial Conduct Authority (FCA) cyber-related controls. Proficiency in cloud security controls and an ability to translate cyber risk into business context are essential. You will have a technical background in Cyber/InfoSec and are now passionate about aligning with strategic and operational goals. This role does not manage a team.

Job Responsibility:

  • Act as the security point of contact for UK business units, aligning cyber security goals with business priorities
  • Provide guidance on secure-by-design principles during project planning, procurement, and solution development
  • Build strong relationships across technical and non-technical stakeholders to promote security best practices
  • Ensure that the business’ information security posture is continuously improved through proactive security measures, monitoring, and reporting
  • Lead and manage customer cyber security assurance activities, including due diligence and technical assurance engagements
  • Support the development and maintenance of materials that evidence the organisation’s cyber maturity and compliance posture
  • Liaise with internal audit and risk functions to ensure cyber and information security controls align with FCA expectations and industry standards
  • Lead preparation and support for external audits, including: ISO 27001, Cyber Essentials and Cyber Essentials Plus, Customer and regulatory assessments
  • Collaborate with compliance, risk, and IT teams to ensure audit readiness and implement improvements
  • Provide expertise on cloud security controls (e.g. identity and access management, encryption, logging, secure configuration) across AWS and Azure environment
  • Ensure secure adoption of cloud-native services in accordance with recognised frameworks (e.g., CIS Benchmarks, NIST, OWASP)
  • Identify and assess cyber risks within business processes and technology environments
  • Support risk mitigation planning, tracking, and reporting in line with enterprise risk frameworks
  • Contribute to business-targeted cyber security awareness and education initiatives
  • Promote a culture of shared accountability for security and resilience
  • Produce and maintain reporting information as required

Requirements:

  • 5+ years’ experience in a cyber security, risk, or assurance role, with strong stakeholder-facing exposure
  • Demonstrable experience with: Customer cyber assurance activities
  • External audit preparation, including ISO 27001, Cyber Essentials Plus
  • Proficient in cloud security (AWS, Azure, or GCP), including security control implementation and risk assessment
  • Working knowledge of NIST, ISO 27001, FCA Handbook (SYSC), and relevant NCSC guidance
  • Excellent verbal and written communication skills, with the ability to engage effectively at all business levels

Nice to have:

  • Background in financial services or regulated industries
  • Experience in third-party/vendor risk assessment and assurance
  • Relevant Cyber Security or IT degree level education
  • ISO 27001 Lead Implementer / Auditor
  • CISSP, CISM, CRISC
  • AWS/Azure security certifications
What we offer:
  • Tailored personal and professional learning and development programs and tools
  • Holistic wellbeing support
  • Support for creating an ideal work/life blend

Additional Information:

Job Posted:
December 11, 2025

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:
Welcome to CrawlJobs.com
Your Global Job Discovery Platform
At CrawlJobs.com, we simplify finding your next career opportunity by bringing job listings directly to you from all corners of the web. Using cutting-edge AI and web-crawling technologies, we gather and curate job offers from various sources across the globe, ensuring you have access to the most up-to-date job listings in one place.