Lead Cyber Security Risk Manager
Driver and Vehicle Standards Agency · GB
Lead Cyber Security Risk Manager at Driver and Vehicle Standards Agency, based in GB. This is a permanent role.
- Salary
- Competitive
- Location
- GB
- Contract
- Permanent
- Posted
- 16 hours ago
- Closes
- 12 Oct 2026
- Sector
- Security Officer
Reference 9cee0de8f9eb917e11d650ee82b84f2676bf2c7a
About the role
Job summary
The Lead Cyber Security Risk Manager will lead efforts to identify, assess, and mitigate cybersecurity risks within the agency’s digital infrastructure. This role involves developing risk management strategies, ensuring compliance with government security standards, and collaborating with various departments to protect sensitive data and systems. The ideal candidate will have deep knowledge of cybersecurity frameworks, risk assessment methodologies, and threat management, with the ability to communicate effectively with both technical and non-technical stakeholders. The position is critical to safeguarding the agency’s mission and operations against evolving cyber threats.
Joining our department comes with many benefits, including:
- Employer pension contribution of 28.97% of your salary. Read more about Civil Service Pensions here
- 25 days annual leave, increasing by 1 day each year of service (up to a maximum of 30 days annual leave), plus 8 bank holidays a privilege day for the King’s birthday
- Flexible working options where we encourage a great work-life balance.
Read more in the Benefits section below!
Find out more about what it's like working at Driver and Vehicle Standards Agency - Department for Transport Careers
Job description
Your responsibilities will include, but aren’t limited to:
- The Lead Cyber Security Risk Manager identifies, understands and mitigates cyber-related risks, and provides risk or service owners with advice to help them make well informed risk-based decisions; focusing on:
- Project activity to ensure compliance with information legislation and DVSA policy particularly HMG’s Security Policy Framework, and National Cyber Security Centre (NCSC) Standards.
- Raising risks as necessary to respond to any non-compliance and provides direction for Information Management and Security to manage the ongoing assurance of DVSAs information assets and products, and liaising with Department for Transport Assurance Authority or equivalent, when necessary.
- Lead the analysis and derivation of business-supporting security needs, undertake Cyber Security related risk assessments, conduct tailored threat assessment and other risk management activities, and ensure activities are consistent with applicable regulations and legislation
- Provide tailored advice to a range of stakeholders on how to remedy identified risks by proportionately applying security capabilities, using published guidance, standards, and drawing on a range of experts as well as personal expertise
- Responsibility for ensuring DVSA’s compliance with key principles and outcomes outlined in HMGs Security Policy Framework, National Cyber Security Centre (NCSC), Cyber Assessment Framework (CAF) and or National Institute of Standards and Technology (NIST), to Cyber and related governance models and supporting the reporting of these to DfT and Cabinet Office.
- With responsibility for direct reports, you will demonstrate leadership by providing guidance to staff to support the delivery of objectives. Manage and engage with honesty and integrity, and upholding the reputation of the Agency, Department and Civil Service.
- Leads incident response as directed by the Head of Cyber Assurance, including responding to alerts from any Security Operations Centre monitoring DVSA Systems.
For further information on the role, please read the attached role profile. Please note that the role profile is for information purposes only - whilst all elements are relevant to the role, they may not all be assessed during the recruitment process. This job advert will detail exactly what will be assessed during the recruitment process.
Person specification
Required experience:
To be successful in this role you will need to have the following experience:
- Someone who has a clear understanding of risk management, including the threat intelligence environment and how risk appetite influences advice provided.
- A proven and adaptable communicator and listener, you will be highly skilled in the delivery and absorption of information, both verbally and in writing, with colleagues at all levels.
- A background in managing diverse teams of people, motivating them to deliver challenging and sometimes conflicting objectives.
- A history of working collaboratively and inclusively with external organisations and other stakeholders, sharing information and knowledge to achieve common aims.
- Lead the analysis and derivation of business-supporting security needs, undertake Cyber Security related risk assessments, conduct tailored threat assessment and other risk management activities, and ensure activities are consistent with applicable regulations and legislation
Government Digital and Data Allowance
The role is part of the Government Digital and Data (or Government Security Profession Career Framework) profession and utilises an enhanced Capability–Based Pay Framework which provides access to a Digital and Data allowance.
The base pay is £44,241. In addition to this the role includes a Digital and Data allowance of up to £14,756 .
The value of allowance awarded will be based on an assessment of your skills and experience as demonstrated through the selection process. Here are more details on the pay framework.
Additional Information
Working hours, office attendance and travel requirements
Full time roles consist of 37 hours per week.
Whilst we welcome applications from those looking to work with us on a part time basis, there is a business requirement for the successful candidate to be able to work at least 30 hours per week.
Occasional travel to other offices will be required, which may involve overnight stays.
This role is suitable for hybrid working, which is a non-contractual arrangement where a combination of workplace and home-based working can be accommodated subject to business requirements.
The expectation at present is a minimum of 60% of your working time a month will be spent at either your designated workplace (one of the locations cited in the advert) or, when required for business reasons, in another office/work location. There may be occasions where you are required to attend above the minimum expectation.
If you have a question about hybrid working, part time/job share hours, flexible working, travelling for work, or require a reasonable adjustment, please contact the Vacancy Holder during the recruitment process to avoid possible disappointment later in the process should your working arrangements not be compatible with the requirements of the role (see below for contact details).
Please note that we do not hold a UK Visa & Immigration (UKVI) Skilled Worker Licence sponsor and are unable to sponsor any individuals for Skilled Worker Sponsorship. Candidates must ensure they have the appropriate rights to work in the UK before application.
Behaviours
We'll assess you against these behaviours during the selection process:
- Seeing the Big Picture
- Delivering at Pace
Technical skill
Reference: 9cee0de8f9eb917e11d650ee82b84f2676bf2c7a · Posted 16 hours ago · Closes 12 Oct 2026 · Listed via Driver and Vehicle Standards Agency
Apply for this job
This role is listed via Driver and Vehicle Standards Agency. Applications are handled on the employer's site.
Apply on employer siteOpens the employer's website in a new tab.
Safe applying: a genuine employer will never ask you to pay for a DBS check, training or equipment, or move you onto WhatsApp before you are hired. If this listing does, report it and do not pay anything.