Employer: Social Security Scotland (Scottish Government)
Location: Glasgow or Dundee, Scotland, United Kingdom
Category: Information Technology / Cyber Security
Job Type: Full-Time
Visa Sponsorship: Skilled Worker Sponsorship Available
Application Deadline: 1 July 2026

About the Role

Social Security Scotland is seeking an experienced Senior Information and Cyber Security Officer to join its Digital Risk and Security Branch. This role offers an opportunity to strengthen cyber security governance, risk management, compliance, and assurance across the organisation.

Working closely with the Cyber Security Risk and Assurance Manager, you will support the development of governance, risk, and compliance capabilities while helping maintain a strong security posture throughout the organisation.

Key Responsibilities

Security Leadership and Governance
  • Act as a key source of cyber security advice and guidance.
  • Lead security governance groups and promote best practices.
  • Support the organisation’s cyber security strategy and risk management objectives.
  • Provide leadership and guidance to security team members.
Risk Management and Compliance
  • Identify, assess, and mitigate cyber security risks.
  • Conduct compliance audits and security assessments.
  • Support vulnerability assessments and risk impact analysis.
  • Ensure compliance with security regulations and legislation.
Policies, Standards and ISMS
  • Develop and maintain security policies, procedures, standards, and guidelines.
  • Support continuous improvement of the Information Security Management System (ISMS).
  • Promote the effective adoption of security policies throughout the organisation.
Third-Party Security Assurance
  • Assess supplier and third-party security controls.
  • Obtain independent assurance regarding security effectiveness.
  • Ensure suppliers comply with organisational security requirements.
Security Projects and Consultancy
  • Lead the design and implementation of security projects.
  • Provide specialist security consultancy services.
  • Support secure project delivery across the organisation.
Awareness and Incident Response
  • Contribute to cyber security awareness initiatives.
  • Support investigation and resolution of security incidents.
  • Help strengthen organisational security culture.

Essential Experience

Applicants should demonstrate:

  • Strong knowledge of ISO/IEC 27001.
  • Experience working with NIST SP 800-53.
  • Understanding of GDPR and the Data Protection Act 2018.
  • Experience identifying and managing information security risks.
  • Knowledge of governance, risk, and compliance frameworks.
  • Ability to advise stakeholders and support risk-based decision-making.

Success Profile Requirements

Experience
  • Applying information security standards and legislation.
  • Managing cyber security risks and implementing appropriate controls.
Behaviours
  • Leadership (Level 3)
  • Delivering at Pace (Level 3)
Technical Assessment

Successful shortlisted candidates will complete:

  • Technical interview
  • 10-minute presentation
  • Cyber Security Risk Manager assessment

Visa Sponsorship

Social Security Scotland is an approved sponsor under the UK Skilled Worker visa route. International applicants requiring sponsorship are encouraged to review the latest UK immigration requirements before applying.

Salary and Benefits

This role currently attracts a £4,000 annual Government Digital and Data (GDD) pay supplement, paid monthly and reviewed regularly.

Additional benefits include:

  • Flexible working arrangements
  • Hybrid working model
  • Civil Service Pension Scheme
  • Professional development opportunities
  • Inclusive and supportive working environment

Working Pattern

  • 35 hours per week
  • Hybrid working arrangement
  • Minimum of 2 office-based days per week
  • Assigned office location in either Glasgow or Dundee

Security Clearance

Successful candidates must pass:

  • Baseline Personnel Security Standard (BPSS)
  • National Security Vetting (Security Check)

Application Process

Applicants must submit:

  • Updated CV
  • Supporting Statement (maximum 750 words)

Your supporting statement should clearly demonstrate how you meet the required experience and behaviours outlined in the Success Profiles framework.

Recruitment Timeline

  • Application Deadline: 1 July 2026
  • Sift Stage: Week Commencing 6 July 2026
  • Interview Stage: Week Commencing 20 July 2026
  • Interview Location: Glasgow or Dundee (In Person)

Equality and Inclusion

Social Security Scotland is committed to building a diverse workforce and welcomes applications from all backgrounds. Reasonable adjustments are available throughout the recruitment process and employment.

Why Apply?

This is an excellent opportunity for experienced cyber security professionals seeking to work within the Scottish Government while contributing to the protection of critical public services.

How to Apply

Applications must be submitted before 23:55 on 1 July 2026.

Candidates should prepare an up-to-date CV and a supporting statement outlining their relevant experience, achievements, and suitability for the role.

Apply now

Related Posts