Rodeo
Get started

Lenovo

Cybersecurity Compliance Advisor

Farnborough
Posted about 24 hours ago
Sign up to applySee more jobs like this
Get notified of more jobs like this · No spam, ever

How your CV stacks up

1Upload CV
2Analyse CV
3Improve CV

Upload your CV to see how well it fits this job role

?%

We are Lenovo

We do what we say. We own what we do. We WOW our customers.

Lenovo is a US$83 billion revenue global technology powerhouse, ranked #153 in the Fortune Global 500, and serving millions of customers every day in 180 markets. Focused on a bold vision to deliver Smarter Technology for All, Lenovo has built on its success as the world’s largest PC company with a full-stack portfolio of AI-enabled, AI-ready, and AI-optimized devices (PCs, workstations, smartphones, tablets), infrastructure (server, storage, edge, high performance computing and software defined infrastructure), software, solutions, and services. Lenovo’s continued investment in world-changing innovation is building a more equitable, trustworthy, and smarter future for everyone, everywhere. Lenovo is listed on the Hong Kong stock exchange under Lenovo Group Limited (HKSE: 992) (ADR: LNVGY).

This transformation together with Lenovo’s world-changing innovation is building a more inclusive, trustworthy, and smarter future for everyone, everywhere. To find out more visit www.lenovo.com, and read about the latest news via our StoryHub.


This position is for a Cyber Security Compliance Manager in the Solutions Services Group (SSG).

This is an exciting role that will give you the opportunity to work with Lenovo Product teams around the world to help Lenovo Business Units align with various regional, national and international security standards and regulations. You will be working alongside some of the best security teams in the industry. You will join a growing team of security professionals to help assess risk, ensure compliance and to design risk remediation and mitigation strategies and tactics.

This role will work hand in hand with business executives, product managers, architects, engineers, devops, and developers to support operationalization of cybersecurity compliance program to meet regulatory obligations with a primary focus on the EU Network and Information Security Directive 2 (NIS2) and the Cyber Resilience Act (CRA).

Reasons to use Rodeo

I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?

Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.

Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.

Start with a chat, not a search bar

Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.

P

Graduate Consultant — 2026 Scheme

PwC·London, UK
£35,000/yr

Why you're a good match

Strong

Your economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.

See breakdown
Save jobNot relevant
View details

It searches the market for you

Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.

Why you're a good match

You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.

See breakdown
Strong

Experience fit

Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.

See breakdown
Strong

Only hits

No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.

What You Will Do

  • Lead NIS2 CRA compliance readiness by conducting gap assessments, identifying risks, and translating findings into clear, prioritized remediation plans.
  • Partner with engineering and product teams to embed Cyber Resilience Act (CRA) requirements into the product lifecycle, including secure-by-design principles, vulnerability management, SBOMs, and incident reporting processes.
  • Drive implementation of cybersecurity and risk management controls, ensuring compliance with regulatory requirements related to governance, accountability, supply chain security, and operational resilience.
  • Manage compliance programs and projects end-to-end, defining timelines, milestones, and deliverables while proactively tracking progress, risks, dependencies, and blockers.
  • Act as the primary liaison across SSG, collaborating with security, legal, engineering, product, procurement, and leadership teams on NIS2 and CRA compliance initiatives.
  • Develop and maintain compliance frameworks and documentation, including policies, procedures, control matrices, evidence repositories, audit trails, and supporting records.
  • Support internal and external audits, assessments, and regulatory engagements, ensuring the organization is prepared for compliance reviews and regulator inquiries.
  • Monitor evolving cybersecurity regulations and industry standards, including ENISA guidance and harmonized standards, while delivering metrics, reporting, and insights that measure program maturity and communicate compliance status to leadership.

What You Will Need

  • 7+ years of experience in cybersecurity compliance, governance, risk compliance (GRC), IT/cyber risk management, or a related regulatory compliance function.
  • Strong knowledge of EU cybersecurity regulations, including NIS2 and the Cyber Resilience Act (CRA), or experience with frameworks such as GDPR, DORA, and ISO 27001 with the ability to quickly build expertise in emerging regulations.
  • Proven experience developing, implementing, or maturing compliance programs, helping organizations strengthen governance, controls, and regulatory readiness.
  • Excellent project management skills, with the ability to independently lead multiple initiatives, manage competing priorities, and coordinate complex cross-functional workstreams.
  • Strong stakeholder management and influencing capabilities, comfortable partnering with engineering, product, legal, procurement, security, and executive leadership teams to drive alignment and execution.
  • Exceptional communication skills, with the ability to translate complex technical, cybersecurity, and regulatory requirements into clear, practical guidance for both technical and non-technical audiences.
  • Bachelor’s degree in Cybersecurity, Information Systems, Law, Computer Science, or a related field, or equivalent combination of education and practical experience.
  • Professional certifications such as CISSP, CISM, CISA, CRISC, or similar are preferred, along with cybersecurity experience within a technology company, managed services provider (MSP), or connected-product organization operating under Cyber Resilience Act requirements.

Get help with your application

Your very own career expert that helps elevate your application to the next level.

Get help applying for this job

What We Offer

  • An international team with a high focus on Gender Diversity.
  • Employee Assistance Program, e.g., for psychological, legal financial consultancy.
  • You are joining a company that prioritizes sustainable solutions like CO2 Offset, Asset Recovery Services, and the Lenovo Certified Refurbished portfolio.
  • Access to training for personal development - Internal E-learning Development Platform Available for Employees
  • Mentorship program.

We are an Equal Opportunity Employer and do not discriminate against any employee or applicant for employment because of race, color, sex, age, religion, sexual orientation, gender identity, national origin, status as a veteran, and basis of disability or any federal, state, or local protected class.

Trusted by 25,000+ job seekers

“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”

Jessica, London

Get help applying for this job

Skills

Cybersecurity Compliance
Governance Risk Compliance (GRC)
NIS2
Cyber Resilience Act (CRA)
Risk Management
Gap Assessment
Project Management
Stakeholder Management
Secure-by-Design
Vulnerability Management
SBOM
Audit Support
Policy Development
Cross-functional Collaboration
Regulatory Reporting

Location

Farnborough, England, United Kingdom

Sign up to applySee more jobs like this