Head of Security Architecture

UK Civil Service
Bristol
7 months ago
Applications closed

Related Jobs

View all jobs

Cloud Security Architect

Cybersecurity (Infrastructure) Engineer

Senior IT Security Analyst

Cybersecurity (Secure Software/Cloud Integration) Engineer

Cybersecurity (Secure Software/Cloud Integration) Engineer

Head of Cybersecurity

Job summary

The Cabinet Office supports the Prime Minister and ensures the effective running of government. It is also the corporate headquarters for government, in partnership with HM Treasury, and takes the lead in certain critical policy areas.

We are the Cabinet Office�s Cyber and Information Security function. Our mission is to secure the Cabinet Office�s digital and information assets against misuse, and enable the secure delivery of the department�s mission. We do this by developing, operating, and governing the cyber and information security controls which protect our nationwide internal IT infrastructure, and high-profile citizen-facing digital services such as

Job description

We are seeking an experienced and strategic Head of Security Architecture to lead our security architecture team within the Cyber and Information Security function. As a key leader and member of the senior management team you will be responsible for leading the Security Architecture and Advisory Team which is responsible for the department-wide enterprise security architecture strategy, framework and roadmap, and helping the department�s IT and digital services to be secure by design. This role reports to the Deputy Director for Cyber and Information Security.

Responsibilities

Develop and execute the design and implementation of the enterprise security architecture vision, principles strategy, framework and roadmap for the Cabinet Office. Ensure that central cyber security activities are aligned with wider strategic goals and the risk management framework for the Cabinet Office. Lead central engagement with Cabinet Office IT and digital services throughout the technology lifecycle to ensure that they are secure by design. Lead the central delivery of security architecture advice and guidance to the organisation. Lead the definition of relevant cyber security policies and standards for the Cabinet Office, aligned with best practice and cross-government standards. Represent the Cyber and Information Security function in technology governance and assurance meetings, at both a departmental and service level. Lead the Cyber and Information and Cyber Security function�s engagement with the wider architecture and technology community within the Cabinet Office. Work with cross-government stakeholders (, GSG, NCSC) on wider cyber security initiatives and challenges. Maintain a strong understanding of IT, digital, and cyber security trends and emerging technologies. Act as an escalation point for, and provide coaching and mentoring to, security architects. Be responsible for leadership and line management of security architects.


Person specification

Essential Criteria

Extensive experience in cyber security, across multiple technical domains and technologies including public and private hosting. Strong knowledge of enterprise security best practices, frameworks, and principles. A proven track record of implementing enterprise security architecture solutions that adhere to industry standards and regulations. Deep and evolving technical cyber security expertise. Experience successfully delivering challenging cyber security projects. Ability to establish and maintain trusted working relationships with key stakeholders. Excellent verbal and written communication skills with both technical and non-technical audiences. Proven track record of leading and managing security architecture team in a complex, multi-disciplinary environments. Excellent analytical and problem solving skills with a proactive and forward thinking approach to solving security challenges.

Desirable Criteria

Experience defining, leading or delivering threat modelling activities. Experience using the NCSC�s Cyber Assessment Framework. Relevant certifications such as SABSA, CISSP, or CISM.

Additional information:

A minimum 60% of your working time should be spent at your principal workplace. Although requirements to attend other locations for official business will also count towards this level of attendance.

Behaviours

We'll assess you against these behaviours during the selection process:

Seeing the Big Picture Making Effective Decisions Communicating and Influencing Delivering at Pace

Benefits

Alongside your salary of �64,700, Cabinet Office contributes �18,743 towards you being a member of the Civil Service Defined Benefit Pension scheme. Learning and development tailored to your role.An environment with flexible working options.A culture encouraging inclusion and diversity.A which provides an attractive pension, benefits for dependants and average employer contributions of 27%.A minimum of 25 days of paid annual leave, increasing by one day per year up to a maximum of 30.

Get the latest insights and jobs direct. Sign up for our newsletter.

By subscribing you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Portfolio Projects That Get You Hired for Cyber Security Jobs (With Real GitHub Examples)

With rising cyber threats and increasingly sophisticated attacks, cyber security has become a critical priority for organisations worldwide. From penetration testers (pentesters) and SOC analysts to cloud security engineers and threat intelligence specialists, the demand for skilled cyber security professionals continues to surge. But how do you stand out in a growing field? Alongside your CV, an impressive cyber security portfolio can be the distinguishing factor that convinces employers you’re the right fit. In this comprehensive guide, you’ll discover: Why a cyber security portfolio is essential for job seekers in this domain. How to align portfolio projects with different cyber security career paths. Real GitHub examples that demonstrate best practices in security-focused projects. Actionable project ideas you can start today, from penetration testing labs to blue-team detection pipelines. Best practices for organising your repos and presenting your work so hiring managers can instantly see your impact. When you’re ready to pursue your next opportunity, remember to upload your CV on CyberSecurityJobs.tech. Our specialised platform connects talented security professionals with employers who need your expertise—exactly what your portfolio will showcase.

Cyber Security Job Interview Warm‑Up: 30 Real Coding & System‑Design Questions

The need for skilled cyber security professionals has never been greater. As organisations rapidly digitise their operations and store increasing amounts of sensitive data online, cyber threats loom large—ranging from sophisticated ransomware attacks to insider threats and state‑sponsored espionage. Against this backdrop, cyber security jobs remain some of the most in‑demand and mission‑critical roles on the market. If you’re preparing for a cyber security interview, expect to be tested on a broad spectrum of topics—from secure coding and incident response to network security architecture and compliance standards. In many cases, companies also include problem‑solving exercises and system design scenarios to gauge how well you can apply theoretical knowledge to real‑world threats. To help you ace these assessments, we’ve compiled 30 real coding & system‑design questions you might encounter. Each reflects a key area of cyber security—whether it’s encryption and key management, threat modelling, or designing a zero‑trust network. Along the way, we’ll offer insights and best practices so you can stand out from the crowd. If you’re on the lookout for exciting cyber security roles in the UK, head to www.cybersecurityjobs.tech. There, you’ll discover a range of positions—covering everything from penetration testing and threat intelligence to compliance management and security operations. Let’s dive into the essentials of interview readiness.

Negotiating Your Cybersecurity Job Offer: Equity, Bonuses & Perks Explained

How to Secure Compensation That Reflects Your Value in the UK’s High-Stakes Cybersecurity Sector Introduction As cyber threats grow more sophisticated and frequent, cybersecurity professionals have never been more in demand. From thwarting ransomware attacks to architecting secure cloud infrastructures, mid‑senior cybersecurity experts play a critical role in safeguarding a company’s data and reputation. Thanks to this growing reliance on cybersecurity, employers in the UK are going above and beyond simple salary offers to attract the top echelon of talent. Although base salary remains a key component of any job offer, the broader package—encompassing equity, bonuses, and perks—can often surpass what you’d gain from a small bump in monthly pay. For cybersecurity specialists working in areas such as threat intelligence, incident response, penetration testing, or compliance, the complexity and risk mitigation you bring to the table is massive. Knowing how to negotiate the entire package ensures you are duly rewarded for keeping an organisation’s data, assets, and operations safe. In this guide, we’ll delve into every aspect of negotiating a cybersecurity job offer. Whether you’re pivoting to a mid‑senior role or cementing your expertise at an established security consultancy, understanding the full range of compensation elements will help you secure an offer that acknowledges the criticality of what you do. Let’s explore equity options, performance bonuses, and the perks that matter most, so you can come out of your next job negotiation confident that you’re getting more than just a salary.