Cyber Security Project Manager/ BA - 9 months - Fully Remote
Role details
Job location
Tech stack
Job description
We are looking for a Cyber Security Project Manager / Business Analyst to lead and coordinate multiple security workstreams across risk, controls, and engineering domainsThis role will focus on driving delivery across control framework alignment (NIST), KRI measurement, and security tooling implementation, ensuring clear governance, stakeholder alignment, and measurable risk reduction .Key Responsibiliti esProject Delivery & GovernanceLead end-to-end delivery of cyber security initiatives across control, risk, and engineering workstreamsDefine project scope, timelines, deliverables, and success metricsEstablish and maintain strong governance, reporting, and documentation standardsTrack progress against milestones, risks, and dependenciesBusiness Analysis & RequirementsConduct gap analysis across existing controls vs. target frameworks (e.g. NIST, internal/Tier 1 -aligned standards)Translate business and regulatory requirements into clear technical and operational deliverablesDefine and document requirements for control implementation, tooling, and process improvementsWork closely with SMEs across risk, security engineering, and infrastructureRisk, Controls & KRI AlignmentSupport alignment of security controls to Key Risk Indicators (KRIs) and enterprise risk frameworksMeasure and report on control effectiveness against defined risk indicatorsHelp prioritise remediation efforts based on risk exposure and business impactEnsure initiatives drive sustainable and auditable improvements in security postureStakeholder ManagementEngage senior stakeholders across security, IT, and the businessAct as the central coordination point between risk, engineering, and governance teamsFacilitate workshops, drive decision-making, and remove delivery blockersPresent clear, commercially focused updates to leadershipDelivery Across Key Security DomainsSupport programmes across:Control framework adoption (NIST / internal standards)Microsoft Security stack (Defender, E5, CSPM tooling)Network security initiatives (NTA, NetSec reviews, detection improvements)Ensure alignment between technical implementation and risk/compliance objecti
Requirements
vesKey ExperienceProven experience as a Project Manager and/or Business Analyst within Cyber Security programmesStrong understanding of cyber security frameworks (NIST ideally)Experience delivering control framework alignment and gap remediation programmesBackground in risk, governance, and KRI-driven environmentsExperience working across security engineering, infrastructure, and risk teamsStrong documentation, requirements gathering, and stakeholder management skillsAbility to translate complex security concepts into clear delivery plans and outc omesDesirableExperience within financial services or regulated environmentsExposure to Microsoft security ecosystem (Defender, M365 E5)Understanding of network security concepts (NTA, traffic analysis, NetSec controls)Familiarity with audit, compliance, and regulatory require ments