Cyber Security Assurance Specialist

  • 3761 Barclays - BX - UK
  • Edinburgh, Midlothian
  • 30/05/2026
Full time Information Technology Telecommunications Testing Cyber Security

Job Description

Purpose of the role

To identify potential vulnerabilities within the bank's IT systems using penetration testing tools and techniques to ensure security of computer systems, applications, servers, and networks.

Accountabilities

Development and execution of assessments, audits, and threat models to identify vulnerabilities within the bank's systems, applications and servers using penetration tools and techniques, and communicate key findings and recommendations to stakeholders. Collaboration with stakeholders and IT teams to identify emerging cyber attack techniques, tools and technologies and to support the development of penetration testing methodologies. Development and maintenance of comprehensive documents and reports for senior stakeholders on penetration test findings, and remediation guidance. Collaboration with stakeholders to understand their security requirements and controls in business processes, application/services, to enhance overall security posture and assurance. Identification of emerging vulnerabilities, exploit codes and cyber attacks to develop testing methodologies and assurance activities.

Expectations

To advise and influence decision making, contribute to policy development and take responsibility for operational effectiveness. Collaborate closely with other functions/business divisions. Lead a team performing complex tasks, using well developed professional knowledge and skills to deliver on work that impacts the whole business function. Set objectives and coach employees in pursuit of those objectives, appraisal of performance relative to objectives and determination of reward outcomes. If the position has leadership responsibilities, People Leaders are expected to demonstrate a clear set of leadership behaviours to create an environment for colleagues to thrive and deliver to a consistently excellent standard. The four LEAD behaviours are: L - Listen and be authentic, E - Energise and inspire, A - Align across the enterprise, D - Develop others. OR for an individual contributor, they will lead collaborative assignments and guide team members through structured assignments, identify the need for the inclusion of other areas of specialisation to complete assignments. They will identify new directions for assignments and/or projects, identifying a combination of cross functional methodologies or practices to meet required outcomes. Consult on complex issues; providing advice to People Leaders to support the resolution of escalated issues. Identify ways to mitigate risk and developing new policies/procedures in support of the control and governance agenda. Take ownership for managing risk and strengthening controls in relation to the work done. Perform work that is closely related to that of other areas, which requires understanding of how areas coordinate and contribute to the achievement of the objectives of the organisation sub function. Collaborate with other areas of work, for business aligned support areas to keep up to speed with business activity and the business strategy. Engage in complex analysis of data from multiple sources of information, internal and external sources such as procedures and practises (in other areas, teams, companies, etc) to solve problems creatively and effectively. Communicate complex information. "Complex" information could include sensitive information or information that is difficult to communicate because of its content or its audience. Influence or convince stakeholders to achieve outcomes.

Job Focus

We are seeking an experienced cyber security professional to join the Assurance team within Tesco Bank Vulnerability Management, as part of Barclays. In this role, you will liaise with a wide range of stakeholders internally and externally to provide assurance and risk assessments for technical implementations and projects across the bank. You will, through applying a broad spectrum of cyber frameworks and knowledge, ensure that software, applications, and architecture are secure by design and hardened against vulnerabilities, providing high quality and confidence assurance against risk and vulnerabilities within the changing landscape of modern banking.

Qualifications and Experience
  • Strong technical written & verbal communication / Stakeholder management skills
  • Relevant Cyber Security Experience/Qualifications. Either experience of working in cyber security, cyber risk management, penetration testing or cyber assurance OR a relevant active qualification to demonstrate applicable knowledge (e.g. CISM, CPSA, CompTIA, CISSP, etc.)
  • Keen attention to detail (technical focus)
  • Experience of working in banking, financial services, or a related industry
  • Knowledge and awareness of emerging technologies, and industry trends and best practices in cyber security
  • Knowledge of security/assurance needs in the emerging AI/LLM landscape OR Experience of providing assurance or risk assessment for AI/LLM solutions
Key Skills
  • Risk and controls
  • Change and transformation
  • Business acumen strategic thinking and digital and technology
  • Job specific technical skills
Location

This role is based in Edinburgh.