Senior Security and Information Risk Advisor
Career Integrity & Compliance Audit Report
This vacancy has been independently reviewed by the OppaJob Transatlantic Career Intelligence Desk to confirm authentic direct employer recruiting, verify compensation transparency, and eliminate applicant processing fees.
Transatlantic Cost of Living & Purchasing Power Benchmark
Compare US ($) vs UK (£) Salary & Net Take-Home Pay
Calculate tax deductions, living costs, and purchasing power parity across US & UK metros.
Position Overview & Specifications
Senior Security and Information Risk Advisor | Hybrid Working with Glasgow or Dundee base location | £41642 - £49860 + £5000 DDaT Pay Supplement after 3 month qualifying period | Full or Part Time Hours | Flexi-time | 25 Days annual leave (increasing to 30 after 4 years’ service) plus 11.5 Public and Privilege| Contributory Pension Scheme (employee contributions 5.45% employer contributions 27.1 - 27.9%)
We are currently seeking applications for a Senior Security and Information Risk Advisor based in Glasgow or Dundee. This is an exciting opportunity to lead on technical projects as the security representative. The post holder will provide pragmatic security and information assurance advice to a range of stakeholders including business areas and the wider Scottish public sector. A security qualification or professional security certification is desirable but relevant experience will be considered
Social Security Scotland, an executive agency of the Scottish Government, is the largest and most complex IT and digital change programme since devolution. With a lifetime budget of over £300m, delivering a social security system that will support the people of Scotland for decades to come. Due to the demands of this exciting programme of work, the Agency is currently experiencing rapid growth and we require more talented digital, security and technology experts to join us.
The Digital Risk and Security branch comprises 4 areas; security risk and assurance, security architecture, cyber operations, and security engineering and protective monitoring.
We are responsible for developing and leading the strategic approach to managing security risk and for developing the operational cyber, physical and personnel security function for Social Security Scotland.
What do we offer you? We provide an employment package that attracts, develops, and retains only the best talent, including, but not limited to;
- B3 - Salary between £41,642 - £49,860 plus a £5000 annual Digital, Data and Technology (DDaT) pay supplement after a 3 month qualifying period. This supplement is backdated and paid with your monthly salary.
- Flexible working arrangements with potential of up to 4 days off per month, in addition to your annual leave.
- You will have an annual leave allowance of 25 days, rising to 30 after 4 years plus an additional 11½ days public and privilege holidays.
- Workplace adjustments for everyone that needs them to ensure your comfort and safety in your new role.
- Learning and development opportunities to support your personal and professional growth.
- Career progression – join a rapidly growing and developing organisation with excellent opportunities for career advancement.
- Contributory Pension Scheme (employee contributions 5.45% employer contributions 27.1 - 27.9%).
- Health and wellbeing support including 24 hour access to our Employee Assistance Programme, plus counselling support available for all
- Discounts and savings in a number of high street and online outlets
Flexible and Hybrid Working As a digital division we embrace a hybrid working style where all colleagues are expected to be in our buildings in Glasgow and Dundee between 1 and 2 days per week (6 days in a 4 week) cycle. This hybrid approach provides a combination of flexibility for staff, supporting a combination of staff development and organisational culture.
Base office location can be in either Dundee or Glasgow
About Us Social Security Scotland is an Executive Agency of the Scottish Government.
Our benefits help people from all walks of life in Scotland. We are committed to recruiting a diverse workforce that is representative of the clients we serve.
Find out more about us here
Responsibilities: As a Senior Security Risk and Information Advisor, you will already have a good understanding of security standards and policy and use this experience to provide effective advice and guidance on cyber security controls. You will have the opportunity to represent Digital Risk and Security project teams and boards and contribute to the development of policies, standards and guidelines.
- Provide advice and guidance on security strategies to manage identified risks and ensure adoption and adherence to standards.
- Obtain and act on vulnerability information and conducts information security risk assessments and business impact analysis on complex information systems.
- Investigate major breaches of security, and recommends appropriate control improvements
- Contribute to development of information security policy, standards and guidelines. Interprets information assurance and security policies and applies these in order to manage risks
- Provide advice and guidance to ensure adoption of and adherence to information assurance architectures, strategies, policies, standards and guidelines
- Use control testing information to support information assurance assessments
- Management of problems and issues, resolutions, corrective actions, and lessons learned
- Collection of feedback from customers in order to develop and enhance customer and stakeholder relationships.
- Leading an mentoring a small number of security support staff.
How to apply To apply for this post, you will need to provide the information requested below via the online application process.
A CV (no longer than two pages) setting out your career history, with key responsibilities and achievements - this is accessed through the candidate profile.
It is important that you also take time to complete a personal statement (no longer than 750 words). This should clearly demonstrate how your skills, qualities and experience meet the following essential criteria:
- Demonstrable experience of providing advice to a range of stakeholders on security standards and policy such as the Cabinet Office Security Policy Framework, ISO/IEC27001:2022, Cyber Essentials, PCI DSS, Cyber Resilience Framework
- Demonstrable experience of undertaking Information Security Risk assessments in-line with industry best practise methodologies.
- Excellent communication skills and experience of communicating to different audiences, including senior management, with the ability to describe technical issues in non-technical manner.
- Demonstrable experience of managing multiple projects and initiatives with limited supervision; working effectively across multiple stakeholder groups, geographies and service lines.
When reviewing your application, we will be assessing your career history and achievements against the essential criteria for the role. We’re looking for examples of things you have previously achieved or your knowledge in a particular field which are relevant to the role.
B3 Security and Information Risk Advisor - DDaT Social Security Scotland - Further information
How to Apply - Digital Jobs
Information Session We will be running online information sessions on 25/05/2023 at 11:00.
We will be talking about:
- The Digital Risk and Security team and role
- Working for Social Security Scotland
- Information on our recruitment process
- Q&A with the hiring manager
Interview/Assessment Information Here are details of the Competencies required for this role, you will be tested against these competencies if you are invited to attend an interview and undertake a digital assessment:
- Self Awareness
- Communications and Engagement
- Improving Performance
- Analysis and Use of Evidence
- DDaT Technical Skill Assessment
Recruitment Contact To learn more about this opportunity, please contact our Resourcing Team who can be contacted by emailing Recruitment@socialsecurity.gov.scot
Please note that we will not engage with external recruitment agencies regarding this post.
Further Information This post requires the successful candidate to clear additional National Security Vetting clearance before a start date can be offered.
The successful candidate will be expected to remain in post for a minimum of 3 years unless successful in gaining promotion to a higher Band or Grade.
Social Security Scotland are a Disability Confident Employer. We will consider and implement any reasonable adjustments you may require throughout the recruitment process and during the course of your employment, should you be successful in securing a post. If you feel you may require assistance with any part of our recruitment process, please contact us at Recruitment@socialsecurity.gov.scot.
Social Security Scotland’s recruitment processes are underpinned by the recruitment principles of the Civil Service Commissioner, which outline that selection for appointment be made on merit on the basis of fair and open competition - Recruitment - Civil Service Commission (independent.gov.uk)
If you feel at any time your application has not been treated in accordance with the values in the Civil Service Code and/or if you feel the recruitment has been conducted in such a way that conflicts with the Civil Service Commissioner’s Recruitment Principles, you can make a complaint, by contacting Social Security Scotland at recruitment@socialsecurity.gov.scot in the first instance. If you are not satisfied with the response you receive you can contact the Civil Service Commissioner.
If you experience any difficulties accessing our website or completing the online application form, please contact the Resourcing Team via recruitment@socialsecurity.gov.scot
#LI-DNI
Candidate Selection & Onboarding Process
Application & Resume Screening
Submit your tailored CV/Resume directly to the talent acquisition portal.
Technical & Competency Interviews
Virtual interviews with the hiring manager and multidisciplinary team.
Formal Offer & Benefits Negotiation
Written agreement outlining compensation, equity, retirement vesting, and relocation allowances.
Onboarding & Corporate Integration
Equipment provisioning, team orientation, and commencement of duties.
United Kingdom Right to Work & Skilled Worker Visa Guide
Employment in the United Kingdom requires legal Right to Work verified under the Home Office Points-Based Immigration System:
Sponsoring employers must hold an active Home Office A-rated Sponsor License and assign a valid Certificate of Sponsorship (CoS). Role must meet the general minimum salary threshold (£38,700) or occupation going rate.
Continuous employment under Skilled Worker status establishes eligibility for Indefinite Leave to Remain (ILR) after 5 continuous years, leading to British Citizenship.
Candidate Preparation Blueprint: General
Based on transatlantic hiring benchmarks for Senior Security and Information Risk Advisor roles across Social Security Scotland's corporate sector, successful applicants typically excel across three core dimensions:
Demonstrated portfolio evidence, architecture/system design case studies, or validated professional certifications directly applicable to General.
STAR method competency responses highlighting cross-functional leadership, conflict resolution, and delivering measurable enterprise ROI under tight timelines.
Total compensation expectation aligned within the benchmarked £22,312 - £35,474 bracket, including retirement vesting and health parity.
Explore Related Opportunities (United Kingdom)
Other high-paying verified positions matching your industry profile.
Principal Data Analytics Specialist
Senior Clinical Diagnostic Radiographer
Senior Site Reliability & Kubernetes Engineer (SRE)
Consultant Acute Care Physician (General Medicine)
Head of Cyber Security & Zero Trust Architecture
Apply for this Position
Receive high-paying General openings directly to your inbox.