Hybrid - 2 days per week in Stratford or Bristol
We are supporting a major government technology programme seeking an experienced Security Assurance Lead. Working within an independent assurance function, you will provide security governance, advice and constructive challenge across multiple workstreams and suppliers, ensuring complex digital services are delivered in line with government security standards and Secure by Design principles.
Key Responsibilities
Provide independent security assurance across programme workstreams, projects and third-party suppliers
Review and challenge security designs, architecture artefacts and implementation approaches
Assess compliance with NCSC guidance, HMG security standards and Secure by Design principles
Ensure security risks are identified, assessed, treated and escalated throughout delivery
Support accreditation, Authority to Operate and release decisions through evidence-based assurance
Produce assurance reports and monitor remediation arising from incidents, vulnerabilities and auditsRequired Experience
Active SC clearance is essential
Demonstratable experience as a Security Assurance Lead, Security Assurance Manager, Accreditor or similar
Strong knowledge of NCSC guidance, Secure by Design and wider government security frameworks
Experience providing assurance across large, complex and multi-supplier technology programmes
Proven ability to review security architectures and conduct assessments, audits and assurance reviews
Strong stakeholder skills, including presenting findings to senior leaders and constructively challenging delivery teamsDesirable Experience
Experience within telecommunications, mobile networks, critical national infrastructure or emergency services
Knowledge of modern network-security concepts, including Zero Trust, identity security, SIEM and network segmentation
Relevant professional certification such as CISSP, CISM, CCSP, CRISC or ISO 27001
Salary description
£525.00 - £625.00 per day
