We’re growing our team and looking for a Cyber Security Assurance Lead to join us, leading a secure-by-design review of a highly secure digital environment underpinning UK defence capability.
This is a modernisation programme: adopting secure-by-design principles, strengthening architectural resilience and keeping pace with the latest defence security standards and best practice. You’ll take a leading role in assessing the current environment, identifying where it falls short of modern standards, and shaping the target architecture for redesign and future operation.
It’s a role that rewards deep technical credibility, sharp risk judgement and the confidence to operate within formal governance and assurance frameworks.
What you’ll be doing
- Leading a comprehensive secure-by-design review of the baseline environment
- Assessing alignment against current defence-aligned security standards and policy frameworks
- Identifying control gaps, architectural weaknesses and systemic risks
- Producing structured documentation: current state analysis, gap assessments, risk articulation and target state architecture
- Defining the security principles, architectural patterns and guardrails for the future platform
- Supporting assurance and governance by clearly articulating risk, mitigation and design rationale
- Working closely with engineering and programme teams to embed security from inception
What you’ll bring
- Proven experience as a Cyber Security Assurance leadwithin defence, government or high-assurance sectors
- Strong grasp of modern security standards, architectural controls and risk-based design principles
- A track record conducting formal security assessments and architectural gap analysis
- The ability to produce structured, defensible documentation suitable for governance and accreditation
- Confident stakeholder communication, including presenting to senior technical and assurance authorities.
Desirable
- Experience supporting secure infrastructure modernisation or high-grade network environments
- Familiarity with defence security policy, structured risk assessment methodologies and accreditation processes
- Knowledge of secure cloud, hybrid or cross-domain architectures
Location and working pattern
- Remote working is possible, though the nature of the programme means regular time on customer site in Stevenage (up to 5 days a week).
- Occasional UK travel may be required, with all expenses reimbursed.
- On-site parking is available.
Clearance
You must hold DV and be a sole UK National.
#J-18808-Ljbffr…
