Skip to main content
AfterDuty

Lead Cyber Security Risk Manager

UK Home Office · Manchester, Greater Manchester

Type
Full-time
Posted
8 days ago

Overview

Your risk assessment and threat analysis skills from policing transfer well, but this role demands deep cyber expertise.

About this role

Close date: 3rd September at 11:55pm

In this critical role, you will identify, understand and mitigate cyber-related risks and evaluate the risks to our critical national infrastructure and business critical systems. You will use your expertise to draw on a range of evidence to proactively advise stakeholders, enabling well-informed, risk-based decision making.

You’ll be joining an expert team of cyber professionals, committed to reducing the exposure to cyber-attack of new and existing digital systems. You’ll be aided in your role by a diverse and supportive organisational culture, and a commitment to further your continuous development.

Job description

The Lead Cyber Risk Manager supports, plans and develops the implementation and management of organisation-wide processes and procedures for the management, assurance or governance of cyber risk.

They will provide tailored expert support and advice that highlights cyber security risks to a range of stakeholders, projects, business teams and service owners, helping them to remedy identified risks by enabling well-informed and auditable decisions, using published guidance and standards, and drawing on a range of experts as well as personal expertise.

Main Responsibilities

  • Independently and impartially undertaking risk management activities within a given area of practice or expertise, usually within established security and risk management governance structures. You will lead the independent derivation and analysis of security needs and conduct tailored threat assessments, security audits, or other risk management activities, ensuring consistency with regulations and legislation.
  • Developing risk management-related policy and assure the ongoing appropriateness of policy in accordance with regulation and wider organisational and government policies.
  • Communicating effectively with senior stakeholders to ensure they recognise the importance of security considerations and advising senior stakeholders on their approach to risk assessment in the context of their organisational outcomes.
  • Managing risk management processes, reviewing their efficiency and effectiveness, and leading recommendations for continuous improvement. This includes reviewing internal controls following any security breach, providing advice on how to remediate any vulnerabilities discovered, and agreeing and overseeing remedial solutions, controls and safeguards.
  • Assessing reviews and risk assessments and ensuring identified risks are managed in accordance with Home Office risk management policies.
  • This role currently is responsible for leading a small team of Civil Service Cyber Risk Managers.

Essential Skills

  • Information or cyber security including threat and risk analysis for complex, high-risk and/or mission critical systems, preferably involving the Home Office, Cabinet Office, NCSC or within industry Security Operations Centres (SOCs) and departments.
  • Proficiency analysing or implementing technical or security policies in a large organisation. Skilled in balancing security requirements with business impact to ensure practicality and effectiveness.
  • Ability to champion cybersecurity risk and ensure ongoing appropriateness or practices.
  • Proven track record in implementing cybersecurity risk, assurance or governance processes and procedures.
  • Proven ability to lead and mentor a diverse team of governance, risk or assurance specialists.
  • Ability to design and implement security controls aligned with organisational requirements, whilst navigating changes and proactively responding to evolving risks.
  • Strong ability to present technical information to non-technical stakeholders and the ability in influencing decision-making processes at senior leadership levels, promoting security priorities.

Why work for us...

Find out more information at: Benefits - Home Office Careers, but some of the primary ones are:

  • A Civil Service Pension with employer contribution rates of at least 28.97%.
  • In-year reward scheme for one-off or sustained exceptional personal or team achievements.
  • 25 days annual leave on appointment, rising with service.
  • 8 days of public holidays, plus 1 additional privilege day.
  • Where business needs allow, some roles may be suitable for a combination of office and home-based working. This is a non-contractual arrangement where all employees will be expected to spend a minimum of 60% of their working time in an office.

Please click on apply now to be taken to the full job advert and application portal

About cyber security & digital forensics roles for ex-police

Cyber security, digital forensics and incident-response roles. DMIs, cybercrime investigators and digital forensics officers bring evidential discipline and investigative judgement that DFIR and security teams struggle to hire.

See all cyber security & digital forensics jobs in Manchester

Why this fits a police background

  • Risk & threat assessment
  • Working to legislation & regulation
  • Security operations
  • Team & shift leadership

What cyber security & digital forensics roles pay ex-police

Advertised UK ranges, editorial estimates reviewed July 2026

Digital forensics analyst£32,000–£45,000
DFIR consultant£45,000–£65,000
Senior forensics / IR specialist£60,000–£80,000
Threat-intelligence specialist£55,000–£80,000
Full cyber security & digital forensics salary guide →

More cyber security & digital forensics jobs for ex-police

  • NMC Cyber Incident Responder

    Police Digital Service · Manchester

    Full-time

    Your cybercrime and digital evidence experience translates directly into incident response and threat analysis.

    Posted 5 days ago

  • NMC Cyber Incident Responder

    National Enabling Programmes (a programme of the Police Digital Service) · Manchester

    Full-time

    Your incident command and threat assessment experience transfers directly to managing cyber incidents.

    Posted 6 days ago

  • Incident Response Analyst

    AXA UK · Manchester

    Full-time

    Your incident command experience and evidence handling skills transfer directly to cyber incident response and digital forensics.

    Posted 12 days ago

  • Full-time

    Your risk assessment and compliance experience from policing transfers directly to governance and risk management.

    Posted 15 days ago