Cyber Security Architect

2 days ago


London, Greater London, United Kingdom HM Revenue & Customs Full time

Hybrid Working from one of our Regional Centres

SC Clearance required

The Team

The Government Security Centre for Cyber (Cyber GSeC) is hosted by HMRC and provides consultancy and advice services across government to improve cyber security posture across HMG. We work directly in support of the Government Cyber Security Strategy (GCSS).

The Cyber GSeC sits within HMRC Security, which is part of the Chief Digital and Information Officer (CDIO) area of HMRC. Though the GSeC sits within these functions, it is a distinct entity that is separate from the day-to-day HMRC security function.

The Cyber GSeC is split into two teams: Operations and Enabling Capabilities. The Operations team provides support and expertise to organisations to enhance their Cyber Security capabilities improving their ability to meet the evolving cyber security threats facing HMG. The Enabling Capabilities team provides support to the Operations team; as well as undertaking the governance, communications, and business management requirements.

The Role

As a Cyber Security Professional/Security Architect leading service delivery within Cyber GSeC, you will play a key role in improving the cyber security posture of His Majesty's Government. Championing the outcomes of the Government Cyber Security Strategy you will oversee the design, implementation, uptake, and continued improvement of Cyber Security best practice and Cyber GSeC services that provide tangible improvement to the cyber security of Lead Government Departments and their underlying ALBs. You may also be required to contribute to other outcomes of HMRC's Cyber Security Technical Services function.

You will be assigned to one of our technical services, delivering against dedicated milestones. You will be confident in your ability to engage at senior levels across the UK security community and will be expected to be involved in our engagement with a wide range of key stakeholders that may include the Government Security Group (GSG), National Cyber Security Centre (NCSC) and the Central Digital and Data Office (CDDO).

The core element of the Cyber Security Professional/Security Architect role will be to provide targeted, expert and risk-based technical security advice and guidance across the breadth of HM Government. The successful candidate will be able to evidence their technical skills and experience in cyber security fields relevant to the services we deliver.

Responsibilities can include:

  • Delivering outcomes against one of our service lines in support of the Government Cyber Security Strategy (GCSS).
  • The development, implementation, delivery, and continuous improvement of Cyber GSeC advice and guidance services across circa 400 government organisations, ensuring alignment to relevant cyber security standards and architectural requirements.
  • Selecting suitable security techniques, tools, and test strategies to confirm compliance with relevant HMG security standards, providing suggested remediation actions.
  • Leading the development of Security Principles, Policies and Technical Standards aligned to business context and risk appetites and curating communication campaigns for a wide range of stakeholders to encourage an improved cyber security stance and the uptake of Cyber GSeC services.
  • Supporting the delivery of balanced and efficient cyber security risk management decisions, identifying vulnerabilities and resolutions in sophisticated technical environments.
  • Recognising when security measures impact on users or business needs, providing targeted and expert advice to inform business decision making, and handle partner concerns.
  • Identifying, raising, and advancing cyber risks in keeping with HMG risk appetite and delivering effective cyber services from our catalogue, while supporting Secure by Design and the security lifecycle.
  • Research, identify, validate, and lead the adoption of new technologies and methodologies and engage with and contribute to a wider security technology and tooling strategy providing direction to the organisation and HMG.

Essential Criteria

At application and interview, you must demonstrate intensive experience of:

  • Minimum 3-5 years' experience working as a
    Cyber Security Professional or Security Architect
  • Demonstrate intensive senior stakeholder management across partner organisations, clients, and suppliers, using strong communication skills to communicate effectively at all levels to technical and non-technical audiences.
  • Security and privacy risks and associated threats with a solid understanding of key considerations such as confidentiality, integrity, availability, non-repudiation, and privacy.
  • Successful delivery of security aspects of major projects, demonstrating professional credibility and authority.
  • Crafting and conveying information security and risk management guidance aligned to corporate risk appetite across several enterprises.
  • Working with leading standards such as NIST, ISO, CIS, and Cyber Essentials
  • Intensive experience consulting on security assurance and conducting audits

Please ensure your CV clearly demonstrates how you meet this essential criteria

Desirable Qualifications

It is desirable that candidates hold some relevant qualifications.

Relevant IT Security qualifications include (but are not limited to):

  • NCSC Certified Cyber Professional (CCP)
  • Certified Information System Security Professional (CISSP)
  • Certified Cloud Security Professional (CCSP)
  • Certified Information Security Manager (CISM)

Please note that SC Clearance is required for this position.



  • London, Greater London, United Kingdom Elevate Cyber Services Full time £40,000 - £80,000 per year

    The role holder will be responsible for assisting clients gain Cyber Essentials and Cyber Essentials Plus certification.This will involve:• Reviewing Cyber Essentials self-assessment questionnaires with existing and new clients withinagreed timescales• Performing Cyber Essentials Plus assessment and advisory services around it, including...

  • Security Architect

    7 days ago


    London, Greater London, United Kingdom Axiom Software Solutions Limited Full time £80,000 - £120,000 per year

    Security ArchitectPermanent role Job Location : London ( Hybrid) Languages: Python, Bash Tech Stack: NIST, Cyber Essentials, ISO27001, SOC 2, Azure Sentinel, IAM, SOAR, SIEMSecurity Standards: NIST, Cyber Essentials Plus, NCSC Security Guidelines, ISO27001, SOC 2 Cloud Platforms: Microsoft Azure (Security and Architecture frameworks, Well-Architected...


  • London, Greater London, United Kingdom Adecco Full time £100,000 - £150,000 per year

    Cyber Solutions ArchitectUK£100,000 + bonus + perm benefitsCurrently hold DV or have the eligibilty to gain DV clearanceWe are looking for a Cyber Solutions Architect to support the design and development of cyber security solutions across major bids and projects. You will work closely with Sales, Pre-Sales, and Bid Management teams to translate client...

  • Cyber Security

    3 days ago


    London, Greater London, United Kingdom Opus Recruitment Solutions Full time £60,000 - £120,000 per year

    Contract Security Architect – OT & Cyber SecurityLocation:South EastContract Duration:6–12 months+We are seeking an experiencedSecurity Architectto support a major Operational Technology (OT) transformation programme within a highly regulated environment. This role offers the opportunity to contribute to the design and delivery of secure, scalable, and...


  • London, Greater London, United Kingdom QinetiQ Security & Defence Contractors Full time £60,000 - £100,000 per year

    Package:  Competitive Salary + BenefitsRole ID:    SF18379Are you ready to be part of the future? At QinetiQ, we're not just imagining tomorrow we are creating it. From cutting edge defence technology to ground breaking innovations our mission is to empower and protect lives. Join us as a Senior Cyber Security Consultant at one of our QinetiQ UK sites,...


  • London, Greater London, United Kingdom Clifford Chance Full time £1,000,000 - £1,800,000 per year

    Who we areWe are one of the largest international law firms in the world. With over 30 offices across the globe, we strive to exceed the expectations of our clients, providing them with the highest-quality advice and legal insight, which combines the firm's global standards with in-depth local expertise.Our firm, work and people span jurisdictions, cultures,...


  • London, Greater London, United Kingdom 55 Exec Search Full time

    Senior Cyber ArchitectSalary: £70,000 - £80,000 base DOERemote/Home-based role with infrequent travel to client sites as and when required.MUST be eligible for UK Government Security Clearance.We're seeking an experiencedSenior Cyber Architectto join a fast-paced consulting engagement within a complex, high-impact technology environment.This isn't a purely...


  • London, Greater London, United Kingdom QinetiQ Security & Defence Contractors Full time £85,000 - £110,000 per year

    Package:  Competitive Salary + BenefitsRole ID:    SF18379Are you ready to be part of the future? At QinetiQ, we're not just imagining tomorrow we are creating it. From cutting edge defence technology to ground breaking innovations our mission is to empower and protect lives. Join us as a Senior Cyber Security Consultant at any of our main sites, where...


  • London, Greater London, United Kingdom QinetiQ Security & Defence Contractors Full time £55,000 - £110,000 per year

    Package:  Competitive Salary + BenefitsRole ID:    SF19102Are you ready to be part of the future? At QinetiQ, we're not just imagining tomorrow we are creating it. From cutting edge defence technology to ground breaking innovations our mission is to empower and protect lives. Join us as a Senior Cyber Security Consultant at our customer site in...


  • London, Greater London, United Kingdom Orpheus Cyber Full time £60,000 - £120,000 per year

    There is a new and exciting opportunity for a Cyber Threat Intelligence Analyst, or Associate Threat Intelligence Analyst (DOE) to join our team.Orpheus is a specialist CTI provider that uses its understanding of the threat landscape to power its consulting, managed service, cyber risk ratings, and data services. We are also accredited to the highest level...