Surrey Satellite Technology

Surrey Satellite Technology

Guildford, South East

Information & Cybersecurity Assurance Manager

Full-Time£33,000 - 73,000 per yearavant-hierUnited Kingdom
IT

Job Description

Salary: £33,000 - 73,000 per year

Requirements:
  • We require a ChCSP, CISM, CISA, BCS CISMP, or CMIRM certification, current or previously held.
  • We require membership of a cybersecurity or information risk management professional body, such as CIISec or IRM.
  • We require eligibility to apply for National Security Vetting at SC level or above, including at least five years of unbroken UK residency; DV clearance is desirable and requires ten years of unbroken UK residency.
  • We require comprehensive, demonstrable experience working on a Defence Secure by Design programme or project, particularly as a Delivery Team Security Lead, Delivery Team Security Engineer, or Security Assurance Coordinator.
  • We require proven ability to deliver security artefacts, including Security Management Plans, Risk Registers and Risk Assessments, Security Requirements Documents, Security Aspects Letters, Threat Models and Vulnerability Assessments, Security Architecture Documents, Compliance and Audit Reports, and Incident and Recovery Plans.
  • We require experience assuring or implementing information or cybersecurity management systems certified to ISO 27001, CE+, or DCC standards.
  • We require experience facilitating, coordinating, and directing ITHCs, including preparing Security Requirements Traceability Matrices or scoping documents and prioritising remediation.
  • We require a proficient technical understanding of information systems at architecture, design, and audit level.
  • We require understanding of information and cybersecurity principles, cybersecurity risk management frameworks, and the delivery and verification of ISO 27001, NIST SP 800-53, CE+, or DCC controls.
  • We require the ability to influence internal stakeholders using data and analysis, work independently in compliance with procedures, recognise when to escalate, and apply business knowledge to analyse what-if scenarios.
  • Knowledge of the space industry or aerospace communication systems is desirable.
Responsibilities:
  • We rely on this role to execute cybersecurity and information assurance workstreams that contribute to our overall cybersecurity profile, including product and service development.
  • We expect this role to own assurance of our information and cybersecurity certifications, contracted deliverables, and Secure by Design delivery.
  • We expect this role to identify and assure contractual security obligations for product and service deliverables, as well as requirements for certifications such as ISO 27001, CE+, and DCC.
  • We rely on this role to deliver technical, framework-compliant, and contract-compliant governance, security strategies, policies, management plans, procedures, and processes, and to support reviews of organisational security governance against industry standards.
  • We expect this role to manage information and cybersecurity assurance artefacts and security control requirements against contracted schedules, supporting successful project lifecycle gateways and milestones.
  • We rely on this role to facilitate certification- or contract-dependent ITHCs, coordinate vulnerability management exercises and external penetration testing, and ensure remediation actions are completed and verified.
  • We expect this role to review infrastructure, cloud, and application designs and implementations against Secure by Design principles; assess risks associated with new technologies and business initiatives; and provide security assurance at Change Advisory Board meetings.
  • We rely on this role to support the implementation, delivery, and exercising of incident and business continuity response plans, contribute to lessons identified, and serve on the incident response team when a security incident occurs.
  • We expect this role to contribute to security working groups, security steering boards, Executive and Board reports, and other management materials as required.
  • We rely on this role to manage Security Aspect Letters, their compliance, supplier flow-down variations, and the monitoring of third-party supplier compliance.
  • We expect this role to manage security aspects of space licensing so requirements are complete and spacecraft can be delivered and operated effectively throughout their lifecycle.
  • We rely on this role to manage project-level security budgets and contribute to accurate costing of security effort for future bids.
  • We expect this role to monitor and manage security awareness and training delivery in line with contractual or certification requirements.
Technologies:
  • Cloud
  • Flow
  • Support
  • Security
  • Matrix

More:

We are recruiting an Information & Cybersecurity Assurance Manager, reporting to our Corporate Security Manager. Success in the role means delivering contractual security requirements on time and within budget, developing reusable Secure by Design artefacts, renewing information and cybersecurity certifications without interruption, preventing security input from delaying spacecraft licensing, and establishing effective technical cybersecurity processes and compliance.

last updated 39 week of 2026

Interested in this role?

Submit your application now

How to Apply

Ready to apply for this position? Here's what you need:

  • An updated resume highlighting relevant experience
  • A compelling cover letter (if required)
  • Portfolio or work samples (for relevant positions)

About Surrey Satellite Technology

Surrey Satellite Technology

Surrey Satellite Technology

Guildford

IT

Skills & Technologies

GoScalaAIUI

Inferred from job description

Salary Insight

£53,000

This role

£80,000

UK median

This salary is 34% below the UK median for Managers (£80,000/yr).

Based on 2024–2025 UK technology sector benchmarks

Explore More UK Opportunities

Thousands of tech jobs across the United Kingdom