Cyber Security Lead
- Ceres Power
- Horsham, United Kingdom
- £70,000 – £90,000
Ceres Power is a global leader in solid oxide technology, driving the clean energy revolution. Our steel-supported fuel cell and electrolyser technology gives partners a decade of development advantage, accelerating innovation in power generation, green hydrogen, and distributed power solutions for data centres and industry.
Cyber security is a critical part of protecting Ceres' people, systems, data and intellectual property as we continue to grow through technology innovation and global licensing partnerships. As cyber threats become more sophisticated and regulatory expectations continue to evolve, we are looking for an experienced Cyber Security Lead to take ownership of our cyber security programme and help ensure our technology environment remains secure, resilient and compliant.
This is a hands-on role that combines technical delivery, operational support and stakeholder engagement. Acting as Ceres' cyber security subject matter expert, you will lead a structured, risk-based security programme, ensuring that security controls, technologies, policies and processes are effective, well-governed and aligned with the needs of the business
Working closely with the Technical Operations team and key stakeholders across the organisation, you will be responsible for the implementation, management and continual improvement of our cyber security capabilities. This includes ownership of core Microsoft 365 security technologies, enhancing email security controls, supporting wider infrastructure security, and ensuring security considerations are embedded into projects, systems and business processes from the outset.
You will play a leading role in identifying and reducing cyber risk across the organisation through vulnerability management, penetration testing, security assessments and the effective monitoring of threats and security events. Acting as a key technical contact during cyber security incidents, you will help coordinate investigation, reporting, escalation and remediation activities to minimise business risk and drive continuous improvement
The role will also be responsible for maintaining and developing information security policies, standards and supporting documentation, ensuring a consistent and practical approach to governance, risk management and compliance. You will support internal and external audits, own cyber security-related actions and remediation plans, and ensure findings are tracked through to completion.
As Ceres continues to expand its licensing and supplier network, you will work closely with procurement, legal, operational and technical teams to assess and manage cyber security risks associated with third-party suppliers and licensing partners. This includes supporting onboarding activities, conducting security reviews and ensuring appropriate controls are in place across both internal and third-party environments.
You will also act as the primary technical contact for our outsourced Security Operations Centre (SOC), ensuring an effective partnership is in place to support monitoring, threat detection and incident response activities. In addition, you will help foster a strong security culture across the business through cyber security awareness initiatives, guidance and training.
This is an excellent opportunity for a cyber security professional who enjoys taking ownership, influencing stakeholders and delivering practical security improvements that directly support the growth and success of a pioneering clean technology business.
Knowledge and Skills Required for the Role:
- Knowledge of information security best practices and certification processes like ISO 27001 and Cyber Essentials
- Technical knowledge of cloud services like Office 365, Azure, AWS, Entra P2, Azure Rights Management, and DLP
- Experience with the implementation of security tools like MDM, EMS, Intune, and Airwatch
- Experience working with or managing a SOC
- Detailed knowledge of audit processes and procedures
- Hands-on experience in a 3rd line operational role
- Understanding of security testing procedures like PEN testing and vulnerability scanning
- Knowledge of networking and security best practices
- Strong project management skills
Skills
- Microsoft 365 Security
- Email Security
- Risk Management
- Security Operations
- Stakeholder Engagement
- Security Policy Development
- Incident Response









