Le poste Principal Security Architect - Government Digital Service - G6
Partager cette offre
The One Login for Government Programme represents a once in a generation opportunity to simplify and widen access to all digital government services. Sitting at the heart of the government, we are building one simple, safe and secure way for users to log in and prove who they are that will work across all government services.
The One Login programme is full of talented and passionate people who are consistently delivering high quality products for services and individuals. We’re half way through our build phase and features are being shipped almost weekly as we work to mature our product set so that we can expand the range of services and departments benefitting from our work.
Sometimes described as the most strategic programme in government, One Login represents a once in a career opportunity to work on a software product that will be used by the majority of the people living in the UK. It’s a fast paced, dynamic and challenging environment that is sure to offer you career satisfaction as well as a chance to develop and enhance your skills.
If this sounds like the next role for you on your career journey then we’d love to hear from you.
Find out more at the .
One Login is the secure front door for millions accessing digital public services. Given the scale and criticality, security, reliability, and resilience are paramount to our mission. This high-profile role requires an experienced Principal Security Architect and leader with a proven track record of strategic direction and managing security products in a complex environment.
You will be the driving force behind the Security as a Product concept within the One Login system. This involves leading the development, delivery, and continuous improvement of security as an essential, integrated capability across all services. You will seamlessly embed security into systems and operations by collaborating closely with product teams, engineering, architecture, governance, and senior stakeholders. Your mandate will be to manage the entire security product lifecycle, expertly balancing security risks, programme objectives, user needs, and technical constraints.
As a Principal Security Architect, you will be responsible for:
shaping and delivering the security architecture and roadmap in alignment with the overarching cyber security strategy and wider programme objectives, ensuring security objectives support wider business goals and developing metrics and reporting to demonstrate security posture and maturity
defining and evolving security architecture capabilities as part of the overall service ecosystem, communicating the value of security to technical and non-technical stakeholders and collaborating with cross-functional teams
leading cross-functional teams to design and deliver security controls, improvements, and risk mitigation in line with enterprise priorities and compliance requirements
acting as a trusted advisor to senior management and programme boards, on product security matters, risks, and opportunities
establishing and overseeing governance frameworks for One Login products and services, and developing reporting and KPIs to demonstrate security posture and maturity
working with government departments, industry partners, and regulatory bodies to assess and manage shared risks and influence best practices
ensuring the programme meets stringent public sector security requirements, including those from NCSC CAF, Secure by Design principles, or other applicable frameworks
working in close collaboration with the Head of Security Operations for One Login and the GDS CISO, take responsibility for embedding a robust security culture across the programme. Act as a champion for security; setting out a vision and strategy with appropriate governance
Profil recherché
We’re interested in people who:
have a strong track record of experience in security architecture at a leadership level, ideally for a Critical National Infrastructure (CNI) or comparable risk/profile/impact level product
are experienced in managing security as a product/service, evolving capabilities over time, and communicating value to both technical and non-technical stakeholders
are skilled in leading cross-functional teams to deliver security initiatives, controls, and risk mitigations in alignment with enterprise priorities, compliance requirements, and regulatory standards
have hands-on experience managing security against recognised frameworks (e.g., NCSC CAF) and driving continuous improvement through assessment and assurance processes
are a trusted advisor to senior leaders, programme boards, and external partners, with the ability to explain complex security risks and opportunities in a clear and actionable way
have strong interpersonal skills and ability to work with product, engineering, enterprise architecture, privacy, and operations teams to integrate security seamlessly into service delivery
Environnement de travail
The One Login for Government Programme represents a once in a generation opportunity to simplify and widen access to all digital government services. Sitting at the heart of the government, we are building one simple, safe and secure way for users to log in and prove who they are that will work across all government services.
The One Login programme is full of talented and passionate people who are consistently delivering high quality products for services and individuals. We’re half way through our build phase and features are being shipped almost weekly as we work to mature our product set so that we can expand the range of services and departments benefitting from our work.
Sometimes described as the most strategic programme in government, One Login represents a once in a career opportunity to work on a software product that will be used by the majority of the people living in the UK. It’s a fast paced, dynamic and challenging environment that is sure to offer you career satisfaction as well as a chance to develop and enhance your skills.
If this sounds like the next role for you on your career journey then we’d love to hear from you.
Find out more at the .
One Login is the secure front door for millions accessing digital public services. Given the scale and criticality, security, reliability, and resilience are paramount to our mission. This high-profile role requires an experienced Principal Security Architect and leader with a proven track record of strategic direction and managing security products in a complex environment.
You will be the driving force behind the Security as a Product concept within the One Login system. This involves leading the development, delivery, and continuous improvement of security as an essential, integrated capability across all services. You will seamlessly embed security into systems and operations by collaborating closely with product teams, engineering, architecture, governance, and senior stakeholders. Your mandate will be to manage the entire security product lifecycle, expertly balancing security risks, programme objectives, user needs, and technical constraints.
As a Principal Security Architect, you will be responsible for:
shaping and delivering the security architecture and roadmap in alignment with the overarching cyber security strategy and wider programme objectives, ensuring security objectives support wider business goals and developing metrics and reporting to demonstrate security posture and maturity
defining and evolving security architecture capabilities as part of the overall service ecosystem, communicating the value of security to technical and non-technical stakeholders and collaborating with cross-functional teams
leading cross-functional teams to design and deliver security controls, improvements, and risk mitigation in line with enterprise priorities and compliance requirements
acting as a trusted advisor to senior management and programme boards, on product security matters, risks, and opportunities
establishing and overseeing governance frameworks for One Login products and services, and developing reporting and KPIs to demonstrate security posture and maturity
working with government departments, industry partners, and regulatory bodies to assess and manage shared risks and influence best practices
ensuring the programme meets stringent public sector security requirements, including those from NCSC CAF, Secure by Design principles, or other applicable frameworks
working in close collaboration with the Head of Security Operations for One Login and the GDS CISO, take responsibility for embedding a robust security culture across the programme. Act as a champion for security; setting out a vision and strategy with appropriate governance
Postulez à cette offre !
Trouvez votre prochain job parmi +9 000 offres !
-
Fixez vos conditions
Rémunération, télétravail... Définissez tous les critères importants pour vous.
-
Faites-vous chasser
Les recruteurs viennent directement chercher leurs futurs talents dans notre CVthèque.
-
100% gratuit
Aucune commission prélevée sur votre mission freelance.
Principal Security Architect - Government Digital Service - G6
Government Digital & Data
