Relomote
Remote JobsRelocation Jobs
Add companySaved
Relomote

Relomote is a job board for remote, hybrid, and relocation jobs — every listing AI-classified for the countries it actually hires from, or the visa and relocation support it offers.

LinkedInCrunchbase

Remote jobs by category

  • Remote Engineering & Development jobs
  • Remote Customer Support jobs
  • Remote Design jobs
  • Remote Marketing jobs
  • Remote Sales jobs
  • Remote Product jobs
  • Remote Data & Analytics jobs
  • Remote People & Talent jobs
  • Remote Writing & Content Creation jobs
  • Remote Finance jobs
  • Remote Legal & Compliance jobs
  • Remote Operations & Admin jobs
  • Remote Data Entry jobs
  • Remote Virtual Assistant jobs
  • Remote Education/Training jobs
  • Remote Healthcare/Clinical jobs
  • Remote Other jobs

Remote jobs by location

  • Work from anywhere jobs
  • Remote jobs in Africa
  • Remote jobs in Asia
  • Remote jobs in Europe
  • Remote jobs in Latin America
  • Remote jobs in Middle East
  • Remote jobs in North America
  • Remote jobs in Oceania
  • All remote jobs →

Relocation & visa sponsorship

  • Visa sponsorship jobs
  • Relocation package jobs
  • Relocate to Europe
  • Relocate to Germany
  • Relocate to Netherlands
  • Relocate to Spain
  • Relocate to Portugal
  • Relocate to Greece
  • Relocate to United Kingdom
  • Relocate to Canada
  • Relocate to Australia
  • Relocate to Sweden
  • Relocate to Switzerland
  • Relocate to Japan
  • Relocate to United Arab Emirates
  • All relocation jobs →

© 2026 RelomoteAboutPrivacyTerms

Contact mahmoud@relomote.com · Built by Mahmoud

Relomote
Remote JobsRelocation Jobs
Add companySaved
UH

Cyber & Corporate Risk Officer

UK Health Security Agency
Posted 3 hours ago
🇸🇬Singapore🏢Hybrid💰£37.7K–£45.4K📁Engineering & Development
Is this job info correct?
Hybrid working based at any core HQ

Job Summary

We are seeking a Cyber & Corporate Risk Officer to join the UKHSA Cyber Security team. This is an exciting opportunity to become a central part of this build and support the continuous development of the Cyber Governance Risk & Compliance function, provide strategic direction whilst managing the challenges and drive improvement and delivery of services.

Cyber is building on its capability to provide a critical function in the protection of the UKHSAs digital assets, working closely with wider UKHSA security teams and stakeholders Government Security Group, National Cyber Security Centre (NCSC) and National Protective Security Authority (NPSA) to build a resilient infrastructure, supporting the organisation in reaching its ambition to become a global leader for health security and become a critical component of our national security infrastructure.

For this role successful candidates must meet the security requirements before they can be appointed. The level of security needed is Security Check (SC).

For meaningful National Security Vetting checks to be carried out individuals need to have lived in the UK for a sufficient period of time. You should normally have been resident in the United Kingdom for the last 5 years as the role requires SC clearance. UK residency less than the outlined periods may not necessarily bar you from gaining national security vetting and applicants should contact the Resourcing Support listed in this advert for further advice.

Job Description

The Cyber & Corporate Risk Officer will coordinate and deliver security risk management activity within enabling a clear and realistic view of security risk across Cyber.

They will support the delivery of Second Line Cyber Risk Assurance (CRA) across the UKHSA, reporting to the SEO Senior Cyber Risk Officer. The role will require a level of independent oversight, and work stream responsibility for focussing on a particular business area to include IACS and Harlow, supporting the programmes in the creation of a single overview of the cyber risk helping to ensure that they are clearly understood and managed in line with UKHSA’s risk appetite, government standards, and public sector assurance expectations, managing escalation in line with UKHSA processes.

As Second Line Assurance, The Role Does Not Implement Or Operate Cyber Security Controls, But Helps To Support UKHSA Leadership By:

  • Providing confidence that cyber risks are identified, understood, and escalated appropriately
  • Strengthening transparency, governance, and assurance
  • Protecting the Agency’s ability to deliver vital health security outcomes

This role offers experience of cyber risk in a complex field presenting a number of learning and developmental opportunities, all of which support UKHSA’s critical health security mission.

The Cyber & Corporate Risk Officer must be comfortable to work flexibly and operate in a highly ambiguous environment while the Agency continues its transformation journey and defines its organisational culture. The ability to identify and understand challenges to find creative solutions will be critical as will strength in managing and building relationships across the organisation, undertaking effective collaboration at fast pace, both internally and externally to UKHSA. They will be expected to work on their own initiative without micro-management but know when to revert to seek a steer or decision.

This is a dynamic and challenging environment, and they will need to be confident in managing complexity, applying judgement, and making decisions whilst collaborating effectively with other members of the team and across the organisation.

This role will requires working with cyber team members of staff who are predominantly home-based workers.

Second Line Cyber Risk Support

  • Support the delivery of Second Line oversight and challenge of cyber and technology risks
  • Assist in reviewing First Line cyber risk assessments, control documentation, and mitigation plans
  • Ensure cyber risks are recorded clearly and consistently within UKHSA risk registers and tooling
  • Help differentiate between risk ownership (First Line) and risk assurance (Second Line) activities

Cyber Risk Framework & Standards

  • Support the maintenance of UKHSA’s Cyber Risk Management Framework
  • Assist in assessing cyber risks against:
    • Government Security Policy Framework (SPF)
    • DSPT Cyber Assurance Framework
    • NCSC guidance
    • ISO 27001 / NIST aligned approaches
  • Promote a proportionate, risk based approach to cyber security across the organisation
Governance & Reporting

  • Contribute to cyber risk reporting for senior management and assurance forums
  • Analyse cyber risk data, trends, and Key Risk Indicators (KRIs)
  • Help translate technical cyber security issues into clear risk narratives focused on business and health impact
  • Support preparation of papers and briefing materials for senior stakeholders

Change & Third Party Risk Assurance

  • Support cyber risk assurance activities related to:
    • Digital and data change initiatives
    • Cloud services and shared platforms
    • Third party and supplier arrangements
  • Assist with identifying emerging cyber risks early in the change lifecycle
Learning, Assurance & Continuous Improvement

  • Support post incident reviews and lessons learned activities from a risk perspective
  • Contribute to assurance exercises, internal reviews, and audit engagement
  • Build cyber risk knowledge and capability through on the job learning, mentoring, and formal development

The above is only an outline of the tasks, responsibilities and outcomes required of the role. You will carry out any other duties as may reasonably be required by your line manager.

The job description and person specification may be reviewed on an ongoing basis in accordance with the changing needs of the organisation.

The Cyber & Corporate Risk Officer will coordinate and deliver security risk management activity within enabling a clear and realistic view of security risk across Cyber.

They will support the delivery of Second Line Cyber Risk Assurance (CRA) across the UKHSA, reporting to the SEO Senior Cyber Risk Officer. The role will require a level of independent oversight, and work stream responsibility for focussing on a particular business area to include IACS and Harlow, supporting the programmes in the creation of a single overview of the cyber risk helping to ensure that they are clearly understood and managed in line with UKHSA’s risk appetite, government standards, and public sector assurance expectations, managing escalation in line with UKHSA processes.

As Second Line Assurance, The Role Does Not Implement Or Operate Cyber Security Controls, But Helps To Support UKHSA Leadership By:

  • Providing confidence that cyber risks are identified, understood, and escalated appropriately
  • Strengthening transparency, governance, and assurance
  • Protecting the Agency’s ability to deliver vital health security outcomes

This role offers experience of cyber risk in a complex field presenting a number of learning and developmental opportunities, all of which support UKHSA’s critical health security mission.

The Cyber & Corporate Risk Officer must be comfortable to work flexibly and operate in a highly ambiguous environment while the Agency continues its transformation journey and defines its organisational culture. The ability to identify and understand challenges to find creative solutions will be critical as will strength in managing and building relationships across the organisation, undertaking effective collaboration at fast pace, both internally and externally to UKHSA. They will be expected to work on their own initiative without micro-management but know when to revert to seek a steer or decision.

This is a dynamic and challenging environment, and they will need to be confident in managing complexity, applying judgement, and making decisions whilst collaborating effectively with other members of the team and across the organisation.

This role will requires working with cyber team members of staff who are predominantly home-based workers.

Second Line Cyber Risk Support

  • Support the delivery of Second Line oversight and challenge of cyber and technology risks
  • Assist in reviewing First Line cyber risk assessments, control documentation, and mitigation plans
  • Ensure cyber risks are recorded clearly and consistently within UKHSA risk registers and tooling
  • Help differentiate between risk ownership (First Line) and risk assurance (Second Line) activities

Cyber Risk Framework & Standards

  • Support the maintenance of UKHSA’s Cyber Risk Management Framework
  • Assist in assessing cyber risks against:
    • Government Security Policy Framework (SPF)
    • DSPT Cyber Assurance Framework
    • NCSC guidance
    • ISO 27001 / NIST aligned approaches
  • Promote a proportionate, risk based approach to cyber security across the organisation
Governance & Reporting

  • Contribute to cyber risk reporting for senior management and assurance forums
  • Analyse cyber risk data, trends, and Key Risk Indicators (KRIs)
  • Help translate technical cyber security issues into clear risk narratives focused on business and health impact
  • Support preparation of papers and briefing materials for senior stakeholders

Change & Third Party Risk Assurance

  • Support cyber risk assurance activities related to:
    • Digital and data change initiatives
    • Cloud services and shared platforms
    • Third party and supplier arrangements
  • Assist with identifying emerging cyber risks early in the change lifecycle
Learning, Assurance & Continuous Improvement

  • Support post incident reviews and lessons learned activities from a risk perspective
  • Contribute to assurance exercises, internal reviews, and audit engagement
  • Build cyber risk knowledge and capability through on the job learning, mentoring, and formal development

The above is only an outline of the tasks, responsibilities and outcomes required of the role. You will carry out any other duties as may reasonably be required by your line manager.

The job description and person specification may be reviewed on an ongoing basis in accordance with the changing needs of the organisation.

Person specification

Essential Criteria

  • Experience or strong interest in Cyber Risk Management, Information Security, Technology Risk, or GRC
  • Awareness of cyber security threats, vulnerabilities, and controls
  • Ability to analyse information and present risks clearly and concisely
  • Strong written and verbal communication skills
  • Willingness to provide constructive challenge while building effective working relationships

Desirable Criteria

  • Knowledge of:
    • Government Security Policy Framework
    • NCSC principles
    • Risk registers and assurance reporting
    • DSPT Cyber Assessment Framework
    • Industrial Automated Control Systems
Alongside your salary of £33,422, UK Health Security Agency contributes £9,682 towards you being a member of the Civil Service Defined Benefit Pension scheme. Find out what benefits a Civil Service Pension provides (opens in a new window).

  • Learning and development tailored to your role
  • An environment with flexible working options
  • A culture encouraging inclusion and diversity
  • A Civil Service pension with an employer contribution of 28.97%

We pride ourselves as being an employer of choice, where Everyone Matters promoting equality of opportunity to actively encourage applications from everyone, including groups currently underrepresented in our workforce.  

UKHSA ethos is to be an inclusive organisation for all our staff and stakeholders. To create, nurture and sustain an inclusive culture, where differences drive innovative solutions to meet the needs of our workforce and wider communities. We do this through celebrating and protecting differences by removing barriers and promoting equity and equality of opportunity for all.  

Please visit our careers site for more information: UKHSA Hub , Civil Service Careers

Artificial intelligence

Artificial intelligence can be a useful tool to support your application, however, all examples and statements provided must be truthful, factually accurate and taken directly from your own experience. Where plagiarism has been identified (presenting the ideas and experiences of others, or generated by artificial intelligence, as your own) applications may be withdrawn and internal candidates may be subject to disciplinary action. Please see our candidate guidance (opens in a new window) for more information on appropriate and inappropriate use.

Selection process details

This vacancy is using Success Profiles Success Profiles - GOV.UK and will assess your Behaviours, Experience and Technical Skills.

Stage 1: Application & Sift

At Sift Stage You Will Be Assessed Against The 5 Essential Criteria Listed In This Job Advert. You Will Be Required To Complete:

  • An Application Form (‘Employer/Activity history’ section on the application)
  • A 1000 word Supporting Statement - do not exceed 1000 words as we will not consider any words over and above this number

This should outline how you consider your skills, experience and knowledge provide evidence of your suitability for the role, with reference to the 5 Essential Criteria listed in this advert.

You will receive a joint score for your application form and statement. The application form is the kind of information you would put into your CV – please note you will not be able to upload or email us your CV. Please complete the application form in as much detail as possible.

Longlisting

In the event of a large number of applications, we may longlist into 3 piles of:

  • Meets all Essential Criteria
  • Meets some Essential Criteria
  • Meets no Essential Criteria

Only those that 'Meets all Essential Criteria' will progress to Shortlisting.

Shortlisting

In the event of a large number of applications, we may conduct an initial sift on the following Essential Criteria:

  • Experience or strong interest in Cyber Risk Management, Information Security, Technology Risk, or GRC

Desirable criteria may be used in the event of a large number of applications/successful candidates.

If you are successful at this stage, you will progress to interview and assessment. Feedback will not be provided at this stage.

Stage 2: Interview

You will be invited to a single remote interview. Interview date(s) to be confirmed.

Behaviours and Technical Skills will be tested at interview.

The Behaviours Being Tested At Interview Stage Will Be:

  • Working Together - Lead Behaviour
  • Communication and Influencing
  • Making Effective Decisions
  • Developing Self and Others

You will be required to give a 10-minute technical presentation on a cyber risk management topic. The exact title will be confirmed when successful candidates are invited to interview.

Once this job has closed, the job advert will no longer be available. You may want to save a copy for your records.

Eligibility Criteria

Open to all external applicants (anyone) from outside the Civil Service (including internal applicants).

Salary Information

Civil Service: Higher Executive Officer (HEO)

HEO Inner: £37,749 - £45,353

HEO Outer: £35,587 - £43,244

HEO National: £33,422 - £40,731

Per annum, pro-rata

Please be aware that the salary is based on the office location.

If you are successful at interview, and are moving from another government department, NHS, or Local Authority, the relevant starting salary principles for level transfers or promotions will apply. Otherwise, roles are offered at the pay scale minimum for the grade, but in exceptional circumstances there may be flexibility if you are able to demonstrate you are already in receipt of an existing, higher salary. Pay increases are through the relevant annual pay award for the role and terms.

Location

This role is being offered as hybrid working based at any of our core HQs in Birmingham, Leeds, Liverpool, London Canary Wharf.

Travel to our Scientific Campus in Porton, Didcot and North London will be required when needed.

We offer great flexible working opportunities at UKHSA and operate using a hybrid working model where business needs allow. This provides us with greater flexibility about how and where we work, to get the best from our workforce. As a hybrid worker, you will be expected to spend a minimum of 60% of your contractual working hours (approximately 3 days a week pro rata, (averaged over a month) working at one of UKHSA's core HQs (Birmingham, Leeds, Liverpool, and London).

Our core HQ offices are modern and newly refurbished with excellent city centre transport links and benefit from co-location with other government departments such as the Department for Health and Social Care (DHSC).

Security Clearance Level Requirement

Successful candidates must pass a basic disclosure and barring security check.

For this role successful candidates must meet the security requirements before they can be appointed. The level of security needed is Security Check (SC).

For meaningful National Security Vetting checks to be carried out individuals need to have lived in the UK for a sufficient period of time. You should normally have been resident in the United Kingdom for the last 5 years as the role requires SC clearance. UK residency less than the outlined periods may not necessarily bar you from gaining national security vetting and applicants should contact the Resourcing Support listed in this advert for further advice.

Qualifications And Registrations

For roles where specific qualifications or registrations are required, successful applicants will be asked to provide appropriate evidence. Employment cannot commence until satisfactory documentation has been received and verified.

Future location

UKHSA is investing in a new state-of-the-art National Biosecurity Centre in Harlow, Essex, which will eventually bring together teams currently based at Canary Wharf, Colindale and Porton Down. For more details, please see: Huge biosecurity centre investment to boost pandemic protection - GOV.UK.

The new facilities will start becoming operational in the mid-2030s, with full completion by 2038. Staff will move in phases as facilities become available. If you're appointed to a role currently based at Canary Wharf, Colindale or Porton Down, please note that we'll continue investing in these sites for the next decade. As we get closer to the transition, we'll provide full information about relocation support available to staff.

Reasonable Adjustments

The Civil Service is committed to making sure that our selection methods are fair to everyone. To help you during the recruitment process, we will consider any reasonable adjustments that could help you. An adjustment is a change to the recruitment process or an adjustment at work. This is separate to the Disability Confident Scheme. If you need an adjustment to be made at any point during the recruitment process you should contact the recruitment team in confidence as soon as possible to discuss your needs.

You can find out more information about reasonable adjustments across the Civil Service here: https://www.civil-service-careers.gov.uk/reasonable-adjustments/

International Police Check

If you have spent more than 6 months abroad over the last 3 years you may need an International Police Check. This would not necessarily have to be in a single block, and it could be time accrued over that period.

Internal Fraud Check

If successful for this role as one aspect of pre-employment screening, applicant’s personal details – name, national insurance number and date of birth - will be checked against the Cabinet Office Internal Fraud Hub, and anyone included on the database will be refused employment unless they can show exceptional circumstances. Currently this is only for external candidates to the Civil Service.

Feedback will only be provided if you attend an interview or assessment.

Security

Successful candidates must undergo a basic (or equivalent) criminal record check.

Successful candidates must meet the security requirements before they can be appointed. The level of security needed is security check (opens in a new window).See our vetting charter (opens in a new window).

People working with government assets must complete baseline personnel security standard (opens in new window) checks.

Successful candidates must undergo a basic (or equivalent) criminal record check.

Successful candidates must meet the security requirements before they can be appointed. The level of security needed is security check (opens in a new window).See our vetting charter (opens in a new window).

People working with government assets must complete baseline personnel security standard (opens in new window) checks.

Nationality requirements

This Job Is Broadly Open To The Following Groups:

  • UK nationals
  • nationals of the Republic of Ireland
  • nationals of Commonwealth countries who have the right to work in the UK
  • nationals of the EU, Switzerland, Norway, Iceland or Liechtenstein and family members of those nationalities with settled or pre-settled status under the European Union Settlement Scheme (EUSS) (opens in a new window)
  • nationals of the EU, Switzerland, Norway, Iceland or Liechtenstein and family members of those nationalities who have made a valid application for settled or pre-settled status under the European Union Settlement Scheme (EUSS)
  • individuals with limited leave to remain or indefinite leave to remain who were eligible to apply for EUSS on or before 31 December 2020
  • Turkish nationals, and certain family members of Turkish nationals, who have accrued the right to work in the Civil Service

Further information on nationality requirements (opens in a new window)

Working for the Civil Service

The Civil Service Code (opens in a new window) sets out the standards of behaviour expected of civil servants.

We recruit by merit on the basis of fair and open competition, as outlined in the Civil Service Commission's recruitment principles (opens in a new window).

The Civil Service embraces diversity and promotes equal opportunities. As such, we run a Disability Confident Scheme (DCS) for candidates with disabilities who meet the minimum selection criteria.

The Civil Service Code (opens in a new window) sets out the standards of behaviour expected of civil servants.

We recruit by merit on the basis of fair and open competition, as outlined in the Civil Service Commission's recruitment principles (opens in a new window).

The Civil Service embraces diversity and promotes equal opportunities. As such, we run a Disability Confident Scheme (DCS) for candidates with disabilities who meet the minimum selection criteria.

Diversity and Inclusion

The Civil Service is committed to attract, retain and invest in talent wherever it is found. To learn more please see the Civil Service People Plan (opens in a new window) and the Civil Service Diversity and Inclusion Strategy (opens in a new window).

The Civil Service welcomes applications from people who have recently left prison or have an unspent conviction. Read more about prison leaver recruitment (opens in new window).

Once this job has closed, the job advert will no longer be available. You may want to save a copy for your records.

Contact point for applicants

Job Contact :

  • Name : Sarah Handy
  • Email : sarah.handy@ukhsa.gov.uk

Recruitment team

  • Email : recruitment@ukhsa.gov.uk

Further information

The law requires that selection for appointment to the Civil Service is on merit on the basis of fair and open competition as outlined in the Civil Service Commission's Recruitment Principles.

If you feel your application has not been treated in accordance with the Recruitment Principles, and you wish to make a complaint, in the first instance, you should contact UKHSA Public Accountability Unit via email: Complaints@ukhsa.gov.uk

If you are not satisfied with the response you receive from the Department, you can contact the Civil Service Commission: Visit the Civil Service Commission website: https://civilservicecommission.independent.gov.uk

https://www.healthjobsuk.com/job/v8245549

Similar jobs

Similar jobs

AbbVie logo

Technical Engineer Trainee - Attach and Train Program

AbbVie

🇸🇬Singapore3 hours ago
Kake logo

Senior iOS Video Player Engineer - Remote

Kake

🌍Canada, Romania, Singapore, Vietnam6 hours ago
Databricks logo

Sr. Solutions Architect

Databricks

🌍Australia, India, Saudi Arabia, Singapore, Spain, United Kingdom, United States6 hours ago
Adobe logo

Senior Enterprise Architect

Adobe

🌍Singapore, United States11 hours ago
AI

Platform Engineer (Full Stack Engineer) - A26324

Activate Interactive Pte Ltd

🇸🇬Singapore18 hours ago
TD

Information Security Analyst (CSOC)

Td

🇸🇬Singapore20 hours ago