> Markdown version of [/jobs/ext/332574-senior-technical-specialist-cyber-resilience-team-supervisory-risk-specialists](https://www.wearedevelopers.com/jobs/ext/332574-senior-technical-specialist-cyber-resilience-team-supervisory-risk-specialists). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Technical Specialist, Cyber Resilience Team - Supervisory Risk Specialists - **Company:** Bank of England - **Location:** London, UK - **Experience:** Expert - **Salary:** £108,800.0 - £122,000.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Cyber Security, Quantum Computing - **Published:** June 6, 2026 - **Apply:** https://uk.indeed.com/viewjob?jk=f0eb76b6422c368c ## About the Role Do you have experience in NIST standards?, The role is well suited to an individual with a strong cyber risk and security background, ideally with prior experience in a regulatory or supervisory environment and a good understanding of the PRA's Operational Resilience framework. You will play a leading role in developing and implementing the PRA's cyber risk and resilience agenda, combining strategic development with hands-on delivery of supervisory assessments., * Significant experience leading independently strategic cyber resilience and proven experience to engage with senior stakeholders while delivering projects. * Strong knowledge of the PRA's approach to supervising cyber risk and resilience, including its application within the Operational Resilience framework. * Strong understanding of the evolving cyber security regulatory landscape, and the key Operational Resilience challenges facing UK financial sector firms and authorities. * Strong understanding of the evolving cyber security landscape, including risks associated with emerging technologies such as Artificial Intelligence and post-quantum computing. * Ability to synthesise complex technical cyber and resilience information and translate it into clear, well-reasoned conclusions and actionable recommendations for senior stakeholders. * Ability to represent the organisation's position on key cyber and operational resilience matters internally and externally, including leading meetings, influencing senior audiences, and adapting communication style to context and audience. * Strong understanding of recognised cyber resilience standards and frameworks (e.g. UK NCSC CAF, NIST, ISO/IEC 27001, ISO 22301) and cyber-related regulatory and supervisory expectations (e.g. PRA Rulebook, DORA, NIS2 Directive, CPMI-IOSCO). * Relevant professional qualifications and certifications, such as CISA, CISM, CRISC, CISSP, CSX, or Lead Auditor certifications for ISO/IEC 27001 and ISO 22301. * Demonstrated commitment to diversity and inclusion, with evidence of fostering inclusive working practices, valuing diverse perspectives, and contributing to an open and respectful team culture. * Financial sector or regulatory experience, with a sound understanding of bank operations and risk and control environments. * Experience in assessing and managing cyber and technology risk., * Significant experience leading independently regulatory cyber reviews, including threat-led-penetration-testing assessments (e.g. CBEST, STAR-FS) and other technical reviews across Cyber Resilience or related disciplines. * Significant experience leading independently strategic cyber resilience and proven experience to engage with senior stakeholders while delivering projects. * Strong knowledge of the PRA's approach to supervising cyber risk and resilience, including its application within the Operational Resilience framework. * Strong understanding of the evolving cyber security regulatory landscape, and the key Operational Resilience challenges facing UK financial sector firms and authorities. * Strong understanding of the evolving cyber security landscape, including risks associated with emerging technologies such as Artificial Intelligence and post-quantum computing. Essential Criteria * Ability to synthesise complex technical cyber and resilience information and translate it into clear, well-reasoned conclusions and actionable recommendations for senior stakeholders. * Ability to represent the organisation's position on key cyber and operational resilience matters internally and externally, including leading meetings, influencing senior audiences, and adapting communication style to context and audience. * Strong understanding of recognised cyber resilience standards and frameworks (e.g. UK NCSC CAF, NIST, ISO/IEC 27001, ISO 22301) and cyber-related regulatory and supervisory expectations (e.g. PRA Rulebook, DORA, NIS2 Directive, CPMI-IOSCO). * Relevant professional qualifications and certifications, such as CISA, CISM, CRISC, CISSP, CSX, or Lead Auditor certifications for ISO/IEC 27001 and ISO 22301. * Demonstrated commitment to diversity and inclusion, with evidence of fostering inclusive working practices, valuing diverse perspectives, and contributing to an open and respectful team culture. Desirable Criteria * Financial sector or regulatory experience, with a sound understanding of bank operations and risk and control environments. Experience in assessing and managing cyber and technology risk. ## Description An opportunity has arisen for a Senior Technical Specialist to join the Cyber Resilience Team (CRT) . The role will play a key part in shaping the PRA's cyber risk and resilience strategy within the context of Operational Resilience (OR) . This includes ownership and evolution of the supervisory cyber approach, associated toolkits (e.g. CBEST, STAR-FS, CQUEST), and the engagement required to deliver the PRA's cyber agenda., * Taking a leading role in developing and advising on policy and supervisory recommendations aligned with Operational Resilience objectives. * Leading the development of the PRA's supervisory cyber approach, including evaluation and assessment methodologies for cyber risk and resilience, working closely with Policy, Supervision and specialist teams. * Leading the implementation, ongoing review and continuous improvement of the PRA's supervisory cyber toolkit, including CBEST, STAR-FS and CQUEST. * Defining and articulating what good cyber practices look like in the context of broader Operational Resilience expectations. * Providing deep analytical and technical expertise, ensuring relevant industry standards and good practices are embedded in cyber resilience assessments. * Leading meetings with regulated firms to assess cyber risk and resilience capabilities, providing effective challenge to firms' approaches and remediation plans. * Developing and maintaining strong working relationships across the Bank and with external stakeholders, including the FCA, HMT, NCSC, CPNI and other domestic and international bodies. * Drafting high-quality papers and briefings, and contributing actively to horizon scanning and Risk Committee discussions * Significant experience leading independently regulatory cyber reviews, including threat-led-penetration-testing assessments (e.g. CBEST, STAR-FS) and other technical reviews across Cyber Resilience or related disciplines., The Bank values diversity, equity and inclusion. We play a key role in maintaining monetary and financial stability, and to do that effectively, we believe we need a workforce that reflects the society we serve. At the Bank of England, we want all colleagues to feel valued and respected, so we're working hard to build an inclusive culture which supports people from all backgrounds and communities to be at their best at work. We celebrate all forms of diversity, including (but not limited to) age, disability, ethnicity, gender, gender identity, race, religion, sexual orientation and socioeconomic status. We believe that it's by drawing on different perspectives and experiences that we'll continue to make the best decisions for the public. We welcome applications from individuals who work flexibly, including job shares and part time working patterns. We've also partnered with external organisations to support us in making adjustments for candidates and employees in the recruitment process where they're needed. For most roles where work can be carried out at home, we aim for colleagues to spend half of their time in the office, with a minimum of 40% per month. Subject to that minimum requirement, individuals and managers should work together to find what works best for them, their team and stakeholders. Finally, we're proud to be a member of the Disability Confident Scheme . If you wish to apply under this scheme, you should check the box in the 'Candidate Personal Information' under the 'Disability Confident Scheme' section of the application., Please apply online, ensuring that you complete your work history and answer ALL the application questions fully and in detail as your application will not be considered if all mandatory questions are not fully completed. ## Related Videos - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Edit Your Future: Queerverse Radical AI](https://www.wearedevelopers.com/videos/909-edit-your-future-queerverse-radical-ai) - [Quantum Computing - How Does It Work, How Will it Affect Us and When?](https://www.wearedevelopers.com/videos/100293-quantum-computing-how-does-it-work-how-will-it-affect-us-and-when) - [Reporting Active Exploits in 24 Hours: Are You Ready for the CRA?](https://www.wearedevelopers.com/videos/100248-reporting-active-exploits-in-24-hours-are-you-ready-for-the-cra) - [Inside Bitpanda's Tech Stack: Scaling a European Fintech Leader - Markus Dorner](https://www.wearedevelopers.com/videos/1979-inside-bitpanda-s-tech-stack-scaling-a-european-fintech-leader-markus-dorner) ## Related Articles - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [Best Companies to work for in London: Top 25 Companies in 2023](https://www.wearedevelopers.com/magazine/187-best-companies-to-work-for-in-london-top-25-companies-in-2023) - [IT Salaries in UK](https://www.wearedevelopers.com/magazine/288-it-salaries-in-uk) - [Data Engineer Salary UK](https://www.wearedevelopers.com/magazine/253-data-engineer-salary-uk) - [UK Business Culture and Etiquette](https://www.wearedevelopers.com/magazine/326-uk-business-culture-and-etiquette) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers)