Cyber Security Project Manager (BAU)
Role details
Job location
Tech stack
Job description
The Cyber Security Project Manager is responsible for delivering cyber security projects and initiatives across the organisation. This role ensures that security-focused projects are effectively planned, executed, and completed in alignment with organisational objectives, regulatory requirements, and industry best practices.
The position combines strong project management capability with a solid understanding of cyber security principles, enabling effective coordination between technical teams, business stakeholders, and third-party suppliers. A key focus of the role is managing business-as-usual (BAU) cyber activity, including small-scale changes and continuous improvement initiatives., Project Delivery & Management
- Lead end-to-end delivery of cyber security projects from initiation through to closure
- Define project scope, objectives, timelines, budgets, and success criteria
- Develop and maintain project plans, schedules, RAID logs, and reporting artefacts
- Ensure delivery within agreed timeframes, scope, and budget
Cyber Security Enablement
- Collaborate with cyber security, IT, and business teams to translate requirements into deliverable outcomes
- Support initiatives across areas such as:
- Risk management
- Security tooling
- Identity and access management
- Cloud security
- Data protection
- Incident response
- Ensure solutions are operationally ready, including documentation, training, and transition into BAU
Stakeholder & Supplier Management
- Act as the primary point of contact for internal stakeholders across technology, risk, compliance, and business functions
- Manage third-party suppliers and delivery partners, tracking milestones, dependencies, and contractual obligations
- Provide regular project updates to senior stakeholders and governance forums
Risk, Compliance & Governance
- Identify, assess, and manage project risks, issues, and dependencies
- Ensure alignment with security policies, frameworks, and regulatory requirements
- Support audits, assurance activities, and compliance initiatives as required
Continuous Improvement
- Embed lessons learned into future project delivery
- Contribute to improving cyber security project governance and delivery standards
Requirements
- Proven experience delivering cyber security or information security projects
- Strong understanding of cyber security concepts, controls, and risk management
- Experience managing complex projects with multiple stakeholders
- Excellent communication, documentation, and stakeholder management skills
- Strong organisational and problem-solving abilities, * Experience delivering projects involving security tooling, cloud platforms, or regulatory compliance
- Familiarity with security frameworks and standards (e.g. ISO 27001, NIST, CIS Controls)
- Experience working in regulated or large-scale enterprise environments, * Project management certification (e.g. PRINCE2, PMP, AgilePM, Scrum Master)
- Cyber security certification (e.g. CISSP, CISM, or equivalent) - desirable, * Methodical, organised, and delivery-focused
- Able to engage effectively with both technical and non-technical stakeholders
- Proactive, adaptable, and resilient
- Strong attention to detail with the ability to understand the broader strategic context