Head of Governance, Risk & Compliance - NESO
About the Role
National Energy System Operator’s (NESO) strength lies in our people. Together, we’re shaping the future where clean, affordable energy is accessible for all. Every day is an opportunity to make a real difference, accelerating the progress of sustainable GB energy, keeping people connected and society thriving as we create a brighter tomorrow.
The Head of Governance, Risk and Compliance champions and fosters an inclusive and commercial culture of risk and compliance throughout NESO’s estate. You will be responsible for overseeing a cyber risk management framework and coordinating all IT & cyber risk and cyber compliance related activities across NESO.
In this role, you will ensure strict adherence and alignment with all internal and external legal and regulatory requirements, policies, and procedures. Additionally, you will work closely with NESO’s Cyber Security team and business stakeholders to promote and embed a proactive culture to risk, compliance and regulation across the business with a particular focus on compliance to e.g. NIST Cyber Security Framework, Network & Information Systems Regulations (NIS) and other control frameworks such as ISO
27001.
The role will ensure the secure design and secure implementation of technology solutions, platforms and infrastructure to support NESO in ensuring we continue to maintain our regulatory responsibilities and operate within our risk appetite.
The Head of Governance, Risk & Compliance will work closely with both the Chief Information Security Officer (CISO), Chief Information Officer (CIO), and other Senior Managers within DD&T.
This role can be based from Wokingham or Warwick and we continue to offer hybrid working from office and home.
Key Accountabilities- Accountable for defining security standards and development of organisational policies, in alignment to Cyber and DD&T strategy
- Accountable for NESO’s adoption of Cyber and Technology governance and standards, utilising industry best practise security standards such as ISO
27001, NIST Cyber Security Framework and Information Security Forum standard of good practice to drive innovation and a customer centric approach. - Accountable for the management of the DD&T risk management framework and the operational management of our Security principal risk.
- Leading on Technology governance, risk and compliance submissions (internal and external)
- Accountable for the development and delivery of a comprehensive assurance framework including vendor security assurance.
- Preparation of materials for external meetings and review of deliverables for quality and consistency
- Supporting development of forward-looking investment plans
We’re forging the path, and we know we can’t do it alone. That’s why we need visionary minds like yours to join us on this transformative journey. In this case, we’re looking for someone who:
- Passionate about enabling the function with a comprehensive control and risk management capability
- Experience of developing, implementing and enhancing our approach and controls.
- Solid experience of using ISO
27001, Risk management frameworks, working with enterprise risk management teams. - Strong communicator with excellent writing skills.
- Experience of working in government or other highly regulated environments, preferably in the Energy sector.
- Experience of engaging with senior stakeholders
- Expert knowledge of compliance monitoring procedures and reporting
A competitive salary of circa £85,000 - £95,000pa – dependent on experience and capability.
As well as your base salary, you will receive a bonus of up to 20% of your salary for stretch performance, a benefits allowance, 28 days annual leave as standard, and a competitive contributory pension scheme where we will double match your contribution to a maximum company contribution of 12%.
As we work towards creating a cleaner, greener, and more affordable future for all, we also work towards creating a place for our teammates to belong, with professional and personal growth and positive well-being.
- Full support and career-development resources to expand your skills, enhance your expertise, and maximise your…
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: