Relomote
Remote JobsRelocation Jobs
Add companySaved
Relomote

Relomote is a job board for remote, hybrid, and relocation jobs — every listing AI-classified for the countries it actually hires from, or the visa and relocation support it offers.

LinkedInCrunchbase

Remote jobs by category

  • Remote Engineering & Development jobs
  • Remote Customer Support jobs
  • Remote Design jobs
  • Remote Marketing jobs
  • Remote Sales jobs
  • Remote Product jobs
  • Remote Data & Analytics jobs
  • Remote People & Talent jobs
  • Remote Writing & Content Creation jobs
  • Remote Finance jobs
  • Remote Legal & Compliance jobs
  • Remote Operations & Admin jobs
  • Remote Data Entry jobs
  • Remote Virtual Assistant jobs
  • Remote Education/Training jobs
  • Remote Healthcare/Clinical jobs
  • Remote Other jobs

Remote jobs by location

  • Work from anywhere jobs
  • Remote jobs in Africa
  • Remote jobs in Asia
  • Remote jobs in Europe
  • Remote jobs in Latin America
  • Remote jobs in Middle East
  • Remote jobs in North America
  • Remote jobs in Oceania
  • All remote jobs →

Relocation & visa sponsorship

  • Visa sponsorship jobs
  • Relocation package jobs
  • Relocate to Europe
  • Relocate to Germany
  • Relocate to Netherlands
  • Relocate to Spain
  • Relocate to Portugal
  • Relocate to Greece
  • Relocate to United Kingdom
  • Relocate to Canada
  • Relocate to Australia
  • Relocate to Sweden
  • Relocate to Switzerland
  • Relocate to Japan
  • Relocate to United Arab Emirates
  • All relocation jobs →

© 2026 RelomoteAboutPrivacyTerms

Contact [email protected] · Built by Mahmoud

Relomote
Remote JobsRelocation Jobs
Add companySaved
Scottish Government Recruitment logo

Security and Information Risk Advisor

Scottish Government Recruitment
Posted 2 hours ago
🇬🇧United Kingdom🏢Hybrid📁Legal & Compliance
Is this job info correct?

Are you ready to drive effective information security risk management for a vital public service? Join us as a Security and Information Risk Advisor within our Digital Risk & Security branch, where your expertise will guide our commitment to protecting Social Security Scotland. If you are passionate about cyber security and have a keen interest in safeguarding critical information, apply now to join our talented team and take the next step in your career. As a Security and Information Risk Advisor, you will play a pivotal role in providing advice and guidance on the effective specification, implementation, and operation of cyber security controls. Collaborating closely with various stakeholders, you will conduct security risk assessments, investigate major breaches, and contribute to the development of information security policies, standards, and guidelines. This is a key technical position within Digital Risk & Security, focusing on ensuring compliance with legislation, regulation, and relevant standards. Typical role level expectations: Provide advice and guidance on security strategies to manage identified risks and ensure adoption and adherence to standards. Obtain and act on vulnerability information and conduct security risk assessments and business impact analyses on complex information systems. Investigate major security breaches and recommend appropriate control improvements. Contribute to development of information security policy, standards and guidelines. Interpret information assurance and security policies and apply these to manage risks. Use control testing information to support information assurance assessments. Responsibilities Conduct risk-based assurance reviews of internal solutions and third-party suppliers, assessing control effectiveness, identifying risks and vulnerabilities, and recommending remediation activities to support compliance and informed risk-based decision-making. Manage complex risks, issues, remediation activities, and lessons learned, applying appropriate risk methodologies and advising on risk impact, tolerance, and mitigation strategies. Design and review secure system architectures, applying architectural principles, patterns, and appropriate levels of rigour to deliver effective business outcomes. Assess the impact of vulnerabilities, emerging technologies, and developments in security technologies on existing and future systems, recommending appropriate responses and controls. Build and maintain effective stakeholder relationships, managing expectations, resolving issues, and facilitating discussions on complex or high-risk matters, often within challenging timescales. Represent the security profession and communicate complex technical and risk concepts to a wide range of audiences, both internally and externally. Apply knowledge of systems, security, policy, business architecture, and legal or regulatory requirements to develop secure technical solutions and controls. Success Profiles We use an assessment framework called ‘Success Profiles’ which lists the elements we test and provides detailed descriptions of each. Find out more about the framework here . For this post, the following Success Profile elements will be assessed: Experience: Knowledge of information security standards like ISO/IEC 27001 and NIST SP 800-53, combined with understanding of current legislation such as DPA 2018 and GDPR. Proven ability to interpret and apply these standards and legal requirements to ensure compliance and integrate best practices into organisational operations. Demonstrable ability to evaluate the effectiveness of technical, physical, procedural, and personnel controls, recommend improvements, and work with stakeholders to implement proportionate risk mitigation measures that strengthen the organisation's overall security posture. Behaviours: Communicating and Influencing - Level 3 Delivering at Pace - Level 3 You can find out more about Success Profiles Behaviours here . Technical/Professional Skills: This role is aligned to Security and Information Risk Advisor within the Government Digital and Data Profession. These skills will be tested during the Technical Assessment if you are successful at sift stage. They will not be assessed at application stage. Please review the following to understand the skill expectations: Security and information risk - Information Assurance and Security: Security and information risk - gov.scot How to Apply Apply online, you must provide a CV and Supporting Statement (of no more than 750 words ) which provides evidence of how you meet the Experience and Behaviours listed in the Success Profiles above. Artificial Intelligence (AI) tools can be used to support your application, but all statements and examples provided must be truthful, factually accurate and taken directly from your own experience. Where plagiarism has been identified (presenting the ideas and experiences of others, or generated by artificial intelligence, and presented as your own) applications will be withdrawn and internal candidates may be subject to disciplinary action. Please see our candidate guidance for more information on acceptable and unacceptable uses of AI in recruitment. Should a large number of applications be received, an initial sift may be conducted using the CV and Supporting Statement on the first Experience criteria. Candidates who pass the initial sift will have their applications fully assessed. There may be a telephone interview prior to the final interview stage. Successful candidates will be invited to attend an Interview and Technical Assessment. The interview will further assess the Experience and Behaviours listed in the job advert and the Technical Assessment, comprising a scenario based task exercise, will evaluate the Technical Skills relevant to the role. Full details of the interview and assessment process will be shared with shortlisted candidates once the sift has been completed. We aim to provide feedback on request. However, if we receive a large number of applications it may not be possible for us to provide specific feedback on your application. We will provide feedback on request to candidates who attend an interview/assessment. Information Session We are holding a candidate information session for this role to provide you with information about the application and interview process as well as further information on the role and team. We will be talking about: • The Security and Information Risk Advisor role and Digital Risk and Security team • About Social Security Scotland • Our recruitment process • Q&A with the hiring manager The session will be held on Thursday 27th August 2026 12-1pm. Please join us using the link below: Please click here to join the meeting Expected Timeline (subject to change) Sift – w/c 31st August 2026 Interview – w/c 21st September 2026. Location – In Person in either Dundee or Glasgow Reserve List In the event that there are more successful candidates than posts available, a reserve list will be kept for up to 12 months. About Us Social Security Scotland is an Executive Agency of the Scottish Government. Our benefits help people from all walks of life in Scotland. We offer rewarding careers and employ people across Scotland in a wide range of professions and roles. We are committed to recruiting a diverse workforce that is representative of the clients we serve. Find more about us here. We offer a supportive and inclusive working environment along with a wide range of employee benefits. Find out more about what we offer. As part of the UK Civil Service , we uphold the Civil Service Nationality Rules. GDD Pay Supplement This post is part of the Government Digital and Data (GDD) profession and currently attracts a £4,000 annual GDD pay supplement, which is paid monthly - pay supplements are reviewed regularly. Working Pattern Our standard hours are 35 hours per week and we offer a range of flexible working options, depending on the needs of the role. We embrace a hybrid working style where all colleagues will spend time in either our Glasgow or Dundee offices. There is an expectation of a minimum 2 days per week in your assigned location, which will be either Glasgow or Dundee. If you have specific questions about the role you are applying for, please contact us. Security checks Successful candidates must complete the Baseline Personnel Security Standard (BPSS), before they can be appointed. BPSS is comprised of four main pre-employment checks – Identity, Right to work, Employment History and a Criminal Record check (unspent convictions). You can find out more about BPSS on the UK Government website , or read about the different levels of security checks in our Candidate Guide. This post requires the successful candidate to clear additional National Security Vetting clearance (Security Check) before a start date can be offered. Further information regarding National Security Vetting clearance can be found here - National security vetting: clearance levels - GOV.UK Equality Statement Social Security Scotland are committed to equality and inclusion, and we aim to recruit a diverse workforce that reflects the population of our nation. Social Security Scotland are a Disability Confident Employer. We will consider and implement any reasonable adjustments you may require throughout the recruitment process and during the course of your employment, should you be successful in securing a post. If you feel you may require assistance with any part of our recruitment process, please contact us at [email protected] . Find out more about our commitment to diversity and how we offer and support recruitment adjustments for anyone who needs them. Right to Work in the UK Social Security Scotland is an approved sponsor under the UK Visa and Immigration (UKVI) Skilled Worker route. Please note that UK immigration guidance, including skill and salary thresholds and eligible occupations, is reviewed regularly and subject to change. If you require visa sponsorship, you should check the latest criteria to confirm whether this role meets current requirements before applying. You can find further advice on Gov.UK - Skilled Worker visa: Overview - GOV.UK Further Information Social Security Scotland’s recruitment processes are underpinned by the recruitment principles of the Civil Service Commissioner, which outline that selection for appointment be made on merit on the basis of fair and open competition - Recruitment - Civil Service Commission If you feel at any time your application has not been treated in accordance with the values in the Civil Service Code and/or if you feel the recruitment has been conducted in such a way that conflicts with the Civil Service Commissioner’s Recruitment Principles, you can make a complaint, by contacting Social Security Scotland at [email protected] in the first instance. If you are not satisfied with the response you receive you can contact the Civil Service Commissioner. The successful candidate will be expected to remain in post for a minimum of 3 years unless successful in gaining promotion to a higher Band or Grade. This post requires the successful candidate to clear additional National Security Vetting clearance before a start date can be offered. Find out more about our organisation, what we offer staff members and how to apply on our Careers Website. Read our Candidate Guide for further information on our recruitment and application processes. If you experience any difficulties accessing our website or completing the online application form, please contact the Resourcing Team via [email protected] Apply before 23:55 on Monday 31st August 2026. Contact Name - Resourcing Team Contact email – [email protected]

Similar jobs

Similar jobs

CFGI logo

Financial Risk Advisory - Consultant

CFGI

🇬🇧United KingdomJul 16, 2026, 9:23 PM UTC
CFGI logo

Financial Risk Advisory - Manager

CFGI

🇬🇧United KingdomJul 16, 2026, 9:23 PM UTC
J.S. Held LLC logo

Managing Consultant - Strategy & Risk Advisory (Francophone Africa)

J.S. Held LLC

🇬🇧United KingdomJun 30, 2026, 2:27 PM UTC
J.S. Held LLC logo

Managing Consultant - Strategy & Risk Advisory (Eurasia)

J.S. Held LLC

🇬🇧United KingdomJun 30, 2026, 2:27 PM UTC
Menzies LLP logo

Risk Assurance and Advisory Assistant

Menzies LLP

🇬🇧United KingdomJun 16, 2026, 7:53 AM UTC
Internalconsulting logo

Applications closed-Consultant Gig #828–UK–Experienced consultants with expertise in providing risk and advisory services

Internalconsulting

🇬🇧United KingdomJun 15, 2026, 8:13 AM UTC