Physical Security Assurance Lead

Birmingham, Leeds, Manchester, Newport (Gwent), Nottingham

Job summary

The GPA is committed to representing the communities we serve by making Diversity, Equality and Inclusion part of everything we do.

To ensure that we are always recruiting and retaining a diverse mix of talent, we are particularly inviting applications from candidates who are disabled, ethnically or gender diverse, and people who identify as being part of the LGBTQ+ community.

The Government Property Agency is changing the way the Civil Service works and is at the forefront of the Government’s transformation agenda; reshaping the relationship civil servants have with their place of work. The Agency is central to the delivery of key Government policies including moving 22,000 Civil Service roles out of London by 2030 and tackling climate change by contributing to the Net Zero agenda. To do this we are delivering a major change programme across the UK and consolidating our portfolio in order to save £1.4 Bn over 10 years.

Beyond the bricks and mortar, the GPA is about providing great workplaces for our people. Through programmes like Hubs, Whitehall Campus and Smart Working you will be in the vanguard of creating model working environments and promoting flexible working practices.

This is an ambitious and exciting task, for which we need innovative people, with strong commercial acumen, who are passionate about visualising and implementing customer needs. Launched as an Executive Agency of the Cabinet Office in 2018, we’re a relatively new department and we are growing fast so we also need people who thrive in ambiguity, can adapt quickly to change and are comfortable stepping outside of their remit to drive outcomes.

Job description

The key purpose of the Workplace Services, Security Assurance Lead is to ensure effective management arrangements for GPA client departments in respect of physical security and building related security management. The post holder will be part of a small team of discipline specific managers. The successful candidate will provide support by ensuring that GPA successfully discharges its security obligations for all client departments and associated stakeholders. These objectives will be achieved by proactively identifying and supporting the delivery of operational security solutions/services across the GPA estate. As part of a small team, you will carry out incident management responsibilities, security health checks, audits and physical security inspections. Annually, the team also assists client departments with their physical security compliance obligations, as part of the Departmental Security Health Check process.

Key Responsibilities: 

  • Support the GPA Head of Security and/or the Operational Security Manager in GPA security policy design, process development, implementation and management across the client department group
  • Provision of on-site advice regarding physical security matters including incident management investigations
  • Work with client departments to develop their understanding of their own roles and responsibilities in relation to physical security compliance
  • Carry out physical security assessments/inspections and security health checks across the GPA estate and provide practical advice to client departments and stakeholders regarding vulnerabilities, near misses, risks and issues
  •  Identify effective corrective actions to mitigate or repair physical security weaknesses
  •  Liaise directly with stakeholders, client departments and facilities management partners/suppliers to review security related documentation (this includes risk registers), to help them understand compliance obligations and delivery expectations, in line with HMG physical security policies/standards
  •  Build and maintain effective working relationships with all key stakeholders
  •  Attend internal, customer and supplier security meetings and forums as required

Person specification

The successful candidate(s) will be able to demonstrate:

  • Experience in conducting security/compliance assessments/audits
  • Experience of working in a multi-client service organisation
  • The ability to interpret and understand business needs of clients in order to build positive relationships
  • Working collaboratively in a small team environment and in a positive manner to build trust and rapport across the GPA
  • The ability to communicate effectively both verbally and in writing to gain support for initiatives and to enable solution implementation
  • To work autonomously, prioritising tasks effectively in order to meet deadlines (both internal and external) and communicating progress wherever necessary
  • Competent in the management of clients, stakeholders and contractors
  • Conversant with IT systems and the ability to analyse management information to inform decision making
  • Practical experience in negotiation skills that have achieved positive outcomes
  • Commitment to continuous improvement

Qualifications

Any security related qualifications and/or membership of relevant professional bodies.

Behaviours

We’ll assess you against these behaviours during the selection process:

  • Making Effective Decisions
  • Communicating and Influencing
  • Delivering at Pace
  • Working Together
  • Seeing the Big Picture

Technical skills

We’ll assess you against these technical skills during the selection process:

  • Customer Perspective
  • Commercial Acumen
  • Property Market knowledge
  • Innovation
Alongside your salary of £39,100, Government Property Agency contributes £10,557 towards you being a member of the Civil Service Defined Benefit Pension scheme. Find out what benefits a Civil Service Pension provides.
  • Learning and development tailored to your role
  • An environment with flexible working options
  • A culture encouraging inclusion and diversity
  • Civil Service pension with an average employer contribution of 27%
  • Generous annual leave

Information Security Officer

This role is available in the following locations: London SW1P 3BT, Coventry CV1 2WT, Darlington DL1 5QE, Manchester M1 2WD, Nottingham NG2 1AW, Sheffield S1 2FJ. We welcome flexible working and are open to a blended approach of working from home and in an office. Regular travel may be required to one of our hubs in Darlington, Sheffield, Manchester, Coventry, London and Nottingham.

Job summary

We encourage applications from a diverse range of candidates  

At DfE, we are proud of the commitment we make to diversity and inclusion and of the progress we have made. We have active & vibrant staff networks, special leave policies and workplace adjustments put in place for those who need them. We are continuing to build a diverse DfE, in an inclusive environment which nurtures and realises potential in all, at all levels.

Equality and Diversity – Department for Education

The Cyber and Information Security (C&IS) Division was established in 2018. We have been going through a period of change since and continue to mature whilst transforming the way the Department for Education and the sector thinks about and delivers security. This is a great opportunity if you want a challenge at a national level. Joining C&IS means you will help to safeguard children and ensure their education and care is delivered effectively by building ways of working and systems that adapt to evolutions in technology, methodology and threat.

Job description

We are looking for an Information Security Officer (ISO) to act as a partner, adviser, and authority in the implementation of the department’s security assurance model.

The nature of your workload will vary from developing the Departmental security policies, defining risk reporting, managing compliance with Government policy and external audit recommendations to enable the assurance of business services and applications through to the more complex assessment of towers of services and of platforms.

The combination of professional IT capabilities within this team will provide you with the opportunity to be involved in a variety of areas based on your expertise along with a clear personal development path.

As part of the role, you will be expected to hold or apply to the National Security Vetting process in order to obtain Security Clearance (SC).

Person specification

Responsibilities in this role will include:

  • Supporting the implementation and development of supporting policies.
  • Maintaining a frequent security partner relationship with the Department’s organisational pillars and senior leadership.
  • Building and maintaining a strong working relationship with both internal and external stakeholders.
  • Supporting the improvement of Information Security processes, business engagement, policy suite, documentation and service offering.
  • Ensure alignment to appropriate standards and supporting suitable control improvements.
  • Acting as an information security technical team member supporting the businesses with the risk management for their service.
  • Providing input to briefings for the Senior Responsible Owners for new and business as usual services, specifically adding value to our high value systems and platforms through the department’s assurance processes.
  • Supporting and guiding business services on maintaining compliance with relevant legislation.

Essential Criteria
It is essential that you have:

  • Experience of performing or knowledge of technical and information risk assessments.
  • Ability to analyse and synthesise numerous sources of information.
  • Evidence of making good judgements and recommendations to senior stakeholders and management.
  • Excellent written and verbal communication skills. Ability to demonstrate that you comprehend the value of managing expectations and have a proven track record of doing so.
  • A broad knowledge of technologies, including common vulnerabilities and exploits with knowledge of security controls.
  • Familiarity with the NCSC suite of security policy, guidance and standards.

Desirable Criteria
It is desirable that you have:

  • Experience in using good practice standards such as ISO 27001 and Center for Internet Security controls.
  • Experience of undertaking information security in both a waterfall and an agile context.
  • Experience of Security Architecture Design.
  • Knowledge of security operations, vulnerability management and security awareness.

Qualifications
It is desirable that you hold a relevant security qualification such as:

  • Certified Information Security Auditor (CISA)
  • NCSC Certified Cyber Professional (CCP)
  • Certified Information Systems Security Professional (CISSP).
  • Certificated Information Security Manager (CISM).
  • CompTIA Advanced Security Practitioner (CASP+).
  • ISEB Practitioner Certificate in Information Risk Management.

Desirable criteria will only be assessed in the event of a tie break situation to make an informed decision.

Applicants currently holding a permanent post in the Civil Service should note that, if successful, their salary on appointment would be determined by the Department’s transfer / promotion policies.

As a member of the DfE, you will be entitled to join the highly competitive Civil Service Pension Scheme, which many experts agree is one of the most generous in the UK, with an average employer contribution of 27%.

You will have 25 days leave, increasing by 1 day every year to a maximum of 30 days after five years’ service. In addition, all staff receive the King’s Birthday privilege holiday and 8 days’ bank and public holidays.

We offer flexible working arrangements, such as job sharing, term-time working, flexi-time and compressed hours.

Most DfE employees will be working a hybrid pattern, spending at least 60% of their time in an office or work setting. Changes to these working arrangements are available in exceptional circumstances but must be agreed with the line manager and in line with the requirements of the role.

Travel to your primary office location will not be paid for by DfE, but costs for travel to an office which is not your main location will be covered.

As an organisation, which exists to support education and lifelong learning, we offer our staff excellent professional development opportunities.

EO Associate Cyber Security Analyst

East Kilbride

Job summary

Calling all graduates looking for their first job in Cyber Security or candidates with a passion for Cyber Security…

Would you be interested in making a meaningful contribution to the UK’s national security, whilst enjoying an enviable work-life balance, 25 days holiday (rising to 30), all with the added benefits of a civil service pension scheme?

You’re home.

Whilst we sit in an established government department, the team structure and ethos is dynamic and agile, more akin to a modern tech start-up. We are pioneering new ways of delivering classified technology services across government, and we’re having fun doing it.

Job description

This role is part of a unique UK Government shared service organization that is revolutionizing the way Government shares and collaborates on some of its most sensitive information. We need to stay ahead of the latest threats, proactively defend our systems and continuously improve our tools, techniques, and processes. We’re looking to add great people to our growing team for this genuinely unique opportunity.

Joining the team within our Security Operations Centre (SOC) you will report to the SOC team lead and play a critical role in protecting our people, information, and technology. We are looking for someone with a passion for computing and an interest in software, coding and cybersecurity technologies.

Graduates looking for their first role, after studying a degree in Cybersecurity are encouraged to apply.

The role is based in East Kilbride, near Glasgow and is a key member of the Chief Information Security Officer (CISO) team.

Person specification

Responsibilities

  • Perform initial triage/identification of ‘Events of Interest’ using the SOC toolset and completing analysis/correlation of ‘Events of Interest’ to identify incidents
  • Ensuring that all events, events of interest, exceptions & incidents are responded to in accordance with established SOC work instructions, including remedial action/recommendations
  • Cyber incident management, following Playbooks and completing post-incident procedures, producing reports & vulnerability/trending analysis as requested by key stakeholders
  • Providing log analysis to support SOC services (including threat hunting)
  • Maintaining 24×7 operational cover for security monitoring and incident management processes.

Essential Skills

  • An active interest in Cyber/Information Security, Threat Intelligence, Software Development, ethical hacking and IT
  • Good communication skills, utilising multiple methods of communication
  • Demonstratable ability to manage competing priorities, stay on top of operational requirements while having an input into the continual development of the technical controls, rules and processes

Desirable Skills

  • Cyber Security Qualification
  • Cyber Security Experience
  • CompTIA or similar certifications
  • Security vendor certifications
  • SANS certifications

 

Behaviours

We’ll assess you against these behaviours during the selection process:

  • Changing and Improving
  • Delivering at Pace
  • Making Effective Decisions

Technical skills

We’ll assess you against these technical skills during the selection process:

  • Technical skills may be asked
Alongside your salary of £25,029, Foreign, Commonwealth & Development Office contributes £6,782 towards you being a member of the Civil Service Defined Benefit Pension scheme. Find out what benefits a Civil Service Pension provides.

We understand that people are at the heart of our success. We promote and encourage all our staff to follow continued professional development, offering our staff access to a range of learning and development opportunities.

• An environment with flexible working options
• A culture encouraging inclusion and diversity
• A Civil Service pension

Security Analyst

Birmingham (B5 4UA) based with hybrid working

Job summary

Ofwat (The Water Services Regulation Authority) is a non-ministerial government department. We regulate the water sector in England and Wales.

Our role is to help build trust and confidence with customers, the environment and wider society. Ofwat has an ambitious strategy:  Time to act, together. It matters to us that things on the ground really change so that our impact on customers, the environment and the future of water is tangible and meaningful.

We are seeking a talented Security Analyst to join the recently expanded Ofwat Security team. As a Security Analyst, you will be responsible for monitoring, analysing and maintaining robust security measures to protect our systems, networks, and data from cyber threats. You will work closely with our IT team and across fellow Government organisations to identify vulnerabilities, develop strategies to mitigate risks, and ensure compliance with relevant security standards and regulations.

Job description

In this role you are likely to spend most of your time: 

  • Analysing security logs, events, and alerts to detect and respond to security incidents in a timely manner, and lead incident response efforts when necessary.
  • Conducting security assessments, including vulnerability assessments, penetration testing, and security audits, to identify and assess risks and vulnerabilities in our systems and networks.
  • Monitoring and analysing emerging cyber threats and vulnerabilities, and proactively recommend measures to enhance our security posture.
  • Collaborating with cross-functional teams to integrate security requirements into the design and implementation of new systems, applications, and technologies.
  • Supporting the development and delivery of security awareness and training programs to promote a culture of security across the organization.
  • Contributing to the development and maintenance of security policies, procedures, and standards.
  • Reporting in line with the organisation’s reporting and governance requirement.

Person specification

Essential Experience, Skills and Knowledge 

  • Experience working in a similar cyber security focused position, within a complex and dynamic environment [Lead criterion].
  • Familiarity with vulnerability assessment tools, penetration testing methodologies, and security auditing frameworks.
  • Understanding of security best practices, industry standards, and regulatory requirements related to cyber security, such as the Cyber Essentials framework.
  • Experience with incident response procedures and tools, and ability to coordinate response efforts effectively.
  • Excellent analytical and problem-solving skills, with the ability to assess risks and make informed decisions.
  • Strong communication and interpersonal skills, with the ability to convey complex security concepts to technical and non-technical stakeholders.

Attributes

  • Champion and Leader of Change
  • Builds Trust
  • Adaptable Thinker
  • Delivers Outcomes

You can read more about Attributes in Ofwat’s Framework for Success

Alongside your salary of £35,328, Ofwat (Water Services Regulation Authority) contributes £9,538 towards you being a member of the Civil Service Defined Benefit Pension scheme. Find out what benefits a Civil Service Pension provides.

Why you should Join Ofwat:

We are forward-thinking, creative, innovative and ambitious. We actively encourage autonomy, collaboration and innovation and we have a unique culture fostered by trust, flexibility and respect.

We strive to ensure our people feel connected and valued, where their voice matters. You will be provided with the space and support to shape your future while taking greater control of your own growth and development.

In 2023 we were awarded ‘Smarter Working Maturity’ recognition for the way that Ofwat has embraced new and modern ways of working, reflecting the spaces we provide, technology we have deployed and the culture and leadership we have embedded to empower choice and flexibility for our people

You will also benefit from:

  • Generous Civil Service pension with employer contributions rates of around 27%
  • 25 days annual leave (increasing to max 30 with each year of service) plus bank holidays and 2.5 days privilege leave days
  • access to exclusive discounts on a range of goods and services such as retail outlets, theatre tickets, holidays, insurance and gym membership;
  • flexible working arrangements;
  • fees paid for membership of relevant professional bodies;
  • up to 3 volunteering days per year
  • generous shared parental leave and pay
  • cycle-to-work scheme;
  • season ticket loan for travel between home and office;
  • regular professional development;
  • health and well-being initiatives

Please read the attached “Candidate Information Pack” to find more about why you should join Ofwat.

Capability Protection Security Advisor

MOD Main Building, London (but see below for information about flexible/ hybrid working)

Job summary

This is an exciting opportunity to be part of a team involved with varied and stimulating MOD business, including protection of military capabilities whilst enabling exports that benefit UK prosperity. This post leads on implementing effective Special Access Programme (SAP) security processes for the Strategic Programmes Directorate SAP portfolio. This includes assurance of all internal SAP activity, as well as SAP work being delivered by industry for the Directorate. The job includes coordinating all aspects of security in the Directorate as well as activities to ensure the Capability Protection team functions coherently. To achieve this the team requires people with good interpersonal and organisational skills who can build and maintain effective relationships with diverse partners.

Capability Protection is the collective term for activities undertaken to protect the Operational Advantage (Op Adv) [battle-winning edge] and ensure the Freedom of Action (FoA) to acquire the equipment we need and use it as we choose, which are essential for, and integral to, the effectiveness of our military capability.

The Capability Protection team of 11 is in two parts, Plans and Operations. Its role is to support the development, and implementation, of strategies across Defence and industry to safeguard UK military capability. The principal way of delivering this is by developing, maintaining, and embedding policy and guidance for Capability Protection, as well as advising on industry export license and MOD F680 applications. It also leads on the security (accurate handling and management) of information, including Special Access Programmes (SAP) across the Directorate and its suppliers.

The team is part of the Strategic Programmes Directorate which is responsible for improving the outcomes from our investment in military capability, including international influence and prosperity objectives. We pride ourselves on bringing people together to achieve remarkable things; seeing the bigger picture, identifying, and seizing opportunities, thinking creatively to tackle difficult issues, and proactively helping Defence to understand and make choices.

This position is advertised at 37 hours per week.

Job description

The Capability Protection Security Advisor reports to the Assistant Head of Capability Protection (Plans) and leads a team of two; the HEO Security Coordinator and AO Support Assistant. The primary focus relates to the effective development and implementation of Special Access Programme (SAP) security processes for the Strategic Programmes’ portfolio. This is about the efficient administration and assurance of security protocols for all SAP activity, both internally and by industry partners, and includes conducting compliance visits to industry sites. The post holder also works closely with the SAPCO Security lead to ensure that a coherent approach is taken across the MOD SAP portfolio. The post leads on the security aspects of all Capability Protection policies and directs effective routine security behaviours across Strategic Programmes’ workspaces. Finally, it ensures efficient administration and knowledge management to ensure coherence within the team, as well as being responsible for business continuity contingencies.

Person specification

The post holder:

  • Ensures the accurate establishment and functional management of Special Access Programmes (SAP) and other compartmented work to confirm compliance with the SAP handbook. Partners for such work include Strategic Programmes, Military Commands, Defence Equipment & Support, Defence Science and Technology Laboratory (Dstl) and industry.
  • Leads compliance visits to industry sites delivering work handled in SAP compartments, ensuring that the physical infrastructure and IT has been accredited, that work is being run in accordance with regulations and that there is evidence of the required security culture and behaviours, providing training and mentorship if required.
  • Provides the secretariat function to ensure effective working of the Strategic Programmes SAP Governance Board. This includes all arrangements for meetings, as well as the preparation and submission of SAP progress reports.
  • Leads on the security aspects of all Capability Protection policies.
  • Directs effective security across Strategic Programmes’ workspaces.
  • Ensures efficient administration and knowledge management to deliver coherence within the team, as well as being responsible for business continuity contingencies.
  • Line manages one Higher Executive Officer and one Administrative Officer.

Essential criteria. You will:

  • have a strong understanding of security policy within the public sector and a proven track record of delivering effective security controls, information assurance and risk management;
  • have good organisational skills to coordinate accurate establishment and functional management of Special Access Programmes, as well as to prepare for and support related review meetings;
  • have good communication skills to build and maintain effective relationships across a broad range of partners;
  • demonstrate excellent collaborative working skills to ensure that security audits, of both Defence and industry, are recognised as supportive rather than punitive;
  • have the ability to identify and translate high level security requirements into realistic action plans, coupled with the credibility to provide authoritative and influential security advice, taking decisions based on relevant information from internal and external sources;
  • be confident using MS Office Applications, particularly Word and Excel.
  • be familiar with wider organisational priorities and understand how they shape our work.

    You must have previous experience in security roles and additional training will be available. You do not need previous knowledge of Capability Protection as this will be developed once in post.

Any experience pertinent to this vacancy should be described in your application. This will be explored in detail during interviews.

Potential applicants are strongly encouraged to get in touch for further information (contact details below).

Behaviours

We’ll assess you against these behaviours during the selection process:

  • Communicating and Influencing
  • Managing a Quality Service
  • Seeing the Big Picture
  • Leadership
Alongside your salary of £43,080, Ministry of Defence contributes £11,631 towards you being a member of the Civil Service Defined Benefit Pension scheme. Find out what benefits a Civil Service Pension provides.

Strategic Programmes actively seeks to provide an inclusive working environment which gets the best from every member of our team, and which recognises people for their dedication and integrity. We are a learning organisation in which everyone is encouraged to develop their careers and build knowledge, skills, and experience across the full span of our work. For example, opportunities include on-line training, short courses, apprenticeships, and part-time MBAs.

We seek and encourage diversity of thought, background, experience, and approach. We do not discriminate on any grounds, including disability, race, religion, colour, ethnic or other identity. We recognise that everyone has different personal and family commitments and encourage applications from those who require flexible working patterns. Although the job is based in London, the team has adopted a flexible hybrid working system; there is scope for some work to be done from home. However, you will be expected to attend the office several days a month, to work with the rest of the team and others, as well as to access information not available on a laptop at home. You will regularly be required to attend meetings at other Defence and industry establishments in UK and occasionally overseas.

• An environment with flexible working options
• A culture encouraging inclusion and diversity
• Learning and development tailored to your role
• Inner London Weighting allowance applies (£3000pa).
• Annual leave – up to 30 days.
• A Civil Service pension.

The post does not offer relocation expenses. 

External recruits who join the MOD who are new to the Civil Service will be subject to a six-month probation period. 

Please Note: Expenses incurred for travel to interviews will not be reimbursed.

Please be advised that the Department is conducting a review of all pay related allowances which could impact on those allowances that the post currently being advertised attracts.

Any move to MOD from another employer will mean you can no longer access childcare vouchers. This includes moves between government departments. You may however be eligible for other government schemes, including Tax-Free Childcare. Determine your eligibility at https://www.childcarechoices.gov.uk/.

The Ministry of Defence is committed to providing a safe and healthy working environment for its staff which includes educating them on the benefits of not smoking, protecting them from the harmful effects of second-hand smoke and supporting those who want to give up smoking. Under the Smoke-Free Working Environment policy, Smoking and the use of all tobacco products (including combustible and chewing tobacco products) will not be permitted anywhere in the Defence working environment however some exemptions are in place, please refer to local guidance. The policy is Whole Force and includes all Defence personnel, contractors, visitors and other non-MOD personnel. All applicants seeking, considering, or accepting employment with the Ministry of Defence should be aware of this policy and that it is already in place at a number of Defence Establishments.

MOD Recruitment Satisfaction Survey – we may contact you regarding your experience to help us improve our customer satisfaction. The survey is voluntary and anonymous. You may however be given the opportunity to provide additional information to help us improve our service which includes the collection of some personal data as defined by the United Kingdom General Data Protection Regulation (UK GDPR). The MOD Privacy Notice sets out how we will use your personal data and your rights.

Head of Security Monitoring & Investigations

Leeds, London, Manchester, Newcastle-upon-Tyne, Sheffield

Job summary

Working to the Head of Cybercrime Detection & Monitoring, you will work in the Department’s Cyber Resilience Centre (CRC) as the Head of Cyber Security Monitoring & Investigations. You will have a critical role to play leading, directing and managing a team protecting the security of DWP systems from both internal and external threat actors. You will have responsibility for the delivery of a 24/7 monitoring service and will lead, manage, and develop a team of analysts using the latest analytical tools. You will operate in a dynamic environment at the forefront of the Department’s cyber protection capability, leading a programme of transformation at delivery and strategic level, influencing internal and external stakeholders including the Government Security Profession.

CRC provides support 24 hours a day, 7 days a week and as a result job holders may be expected to work as part of an on call rota, which may also attract occasional out of hours working, and will include travel to different DWP sites (particularly London) and Government agencies and regular overnight stays.  Leadership of a team with multiple shift patterns requires the post holder to adapt their working hours to retain contact with and oversight of the team.

Job description

Leading a large team of security operations analysts and technical investigators in day-to-day activity and transformation; providing a proactive and alerts based 24/7 monitoring and investigation service.

Developing strategies for Security Monitoring & Investigations in line with the over-arching strategic direction of the Cyber Resilience Centre. Reviewing the demands from operational business areas and other stakeholders to ensure that the team is continually responding to changes.

Your role will be transformational, and will include:

  • Maturing the Security Monitoring service to ensure a single view of abuse from privileged users as DWP business changes.
  • Rationalising data loss prevention controls across the Cyber Resilience Centre.
  • Working collaboratively with Digital Security and Internal Assurance to agree areas of responsibility and coverage across enterprise platforms, ensuring that there are no gaps or areas that can be exploited by internal and external users.

Creating and implementing strategic plans and managing and monitoring implementation.

Developing policies, standards and processes as required to support the work of Security Monitoring and Investigations, and ensuring that proactive activity is lawful, effective and risk based.

Combining analytical skills, insight, and Cyber Resilience Centre Threat Intelligence, to use data and develop Cyber Security intelligence for the wider security community.

Reviewing products and tools used by the Security Monitoring & Investigations Team to ensure that they are fit for purpose and that the Department is continuing to invest in those areas that can provide maximum return on investment.

Working with third-party vendors as required ensuring that we are getting the best possible value from contracts that are in place. Supporting the monitoring of the health and integrity of all Cyber Security data feeds into the SIEM tool and oversee the production of Cyber Security management information as required.

Supporting the Head of Cybercrime Detection & Monitoring to ensure that the analytical platform needs, including security requirements, of Security Monitoring & Investigations, are understood and delivered.

Working with stakeholders in the Department and more widely in Government, to promote and support the work of the team and ensure that the team is delivering to the requirements of customers and to Government.

As part of the Cyber Resilience Centre Senior Leadership Team, you will help shape the future and drive Cyber Resilience Centre business forward, especially in the areas of recruiting and retaining skilled personnel.

Person specification

Experience of working in an operational security role with a good working knowledge of cyber security operations

Experience of leading/managing large operationally focused delivery teams, including managing technical specialists, operating in a high-pressure environment across multiple sites and a mix of shift patterns.

Excellent leadership/people management skills with proven experience of direct line and matrix management of staff in remote locations.

An analytical mind set and the ability to switch between a strategic view and an eye for detail.

Ability to learn quickly and grasp essential details and be comfortable relying on others’ expertise to inform decision making/assessments.

Extensive experience of the cyber environment, including knowledge of the breadth of threat actors, depth of threat vectors available and capabilities to respond to attacks across the security discipline and how these threats link to the delivery of digital services.

Ability to develop excellent working relationships with a range of different stakeholders to influence the future direction of travel as well as existing ways of working, with proven experience of presenting technical to a non-technical audience.

Experience of working in an Agile project management environment, understanding agile methodology

Demonstrable evidence of delivering at pace with the ability to prioritise conflicting tasks with the resources available.

The following Essential criteria will be used in the sift, Successful candidates will be expected to demonstrate these through their work history and Statement of Suitability:

Lead Criteria: Experience of leading/managing large operationally focused delivery teams, including managing technical specialists, operating in a high-pressure environment across multiple sites and a mix of shift patterns.

Extensive experience of the cyber environment, including knowledge of the breadth of threat actors, depth of threat vectors available and capabilities to respond to attacks across the security discipline and how these threats link to the delivery of digital services.

Ability to develop excellent working relationships with a range of different stakeholders to influence the future direction of travel as well as existing ways of working, with proven experience of presenting technical to a non-technical audience.

An analytical mind set and the ability to switch between a strategic view and an eye for detail.

Highly developed understanding of political sensitivities and the nuances of effective communication across diverse areas of Government and externally at all grades up to a Ministerial level.

Desirable Criteria: Experience of the National Institute of Standards and Technology (NIST) and achievement of the Foundation qualification.

Behaviours

We’ll assess you against these behaviours during the selection process:

  • Leadership
  • Working Together
  • Making Effective Decisions

Technical skills

We’ll assess you against these technical skills during the selection process:

  • Government Security Profession Skills Framework – Cyber Security Operations [Practitioner] – https://www.gov.uk/government/publications/the-government-security-profession-career-framework
  • Government Security Profession Skills Framework – Intrusion detection & analysis [Practitioner)
  • Government Skills Curriculum Unit – Transformation & Innovation
  • Learning and development tailored to your role
  • An environment with flexible working options
  • A culture encouraging inclusion and diversity
  • Civil Service pension with an average employer contribution of 27%
  • Hybrid working  – This job role may be suitable for hybrid working, which is where an employee works part of the week in their DWP office and part of the week from home. This is a voluntary, non-contractual arrangement and your office will be your contractual place of work. The number of days that anyone will be able to work at home will be determined primarily by business need, but personal circumstances and other relevant circumstances will also be taken into account. If you are successful, any opportunities for hybrid working, including whether a hybrid working arrangement is suitable for you, will be discussed with you prior to you taking up your post.

Physical Security Risk Advisor (EMEA & Canada)


As a Risk Advisor on the Verizon Physical Security Team for EMEA and Canada, you will join a small team of subject matter experts in the areas of Physical Security, Security Technology and Risk Mitigation. Your role will involve assessing, evaluating and mitigating potential risks to the company’s assets, personnel and facilities then advising on relevant and cost effective physical security controls (CCTV, Access Control, Intrusion Detection Systems).

  • Developing and implementing risk management strategies, being a subject matter expert in the areas of Risk and Risk Mitigation.
  • Assisting business operations with Physical Security Risk Mitigation processes and updating audit and Risk Management documents.
  • Conducting remote physical security audits, security gap evaluation and risk assessments across the region of EMEA and Canada.
  • Reviewing and developing physical security policy and processes in line with department and business goals.
  • Collaborating with cross functional teams to ensure compliance with security regulations and audited standards, producing comprehensive risk and security survey reports.
  • Engaging with various departments across the business to project manage multiple region wide security installations and initiatives.
  • Identifying actual or potential security issues/concerns that could affect the security posture at Verizon sites and provide solutions to mitigate them.
  • Carrying out commissioning and surveying as and when required.

Operations and Response Manager

London

Job summary

We recognise the challenges that people with protected characteristics may experience on the job market and in their career progression. We are fully committed to being an inclusive employer and ensuring equal opportunities. We are keen to make our workforce as diverse as possible, and we hope to attract applications from underrepresented groups, including ethnic minorities, people with a disability, and people with gender diverse identities.

Are you an adaptable individual who thrives working within a fast-paced environment?

Would you embrace the opportunity to support the planning and response to civil contingencies, operating at a national level?

If so, we have an exciting opportunity available for an Operations and Response Manager to join the Transport Security Operations Centre (TSOC), and would love to hear from you!

Job description

You will sit within the Department for Transport (DfT)’s Transport Security Operations Centre, which manages the Department’s planning for and response to civil contingency & security issues impacting the transport sector. You will be a core part of the team, within the division responsible for leading and co-ordinating whole of department response activity.

You will be working as part of the team responsible for coordinating the DfT response and the wider Department’s preparedness to deal with large scale incidents on the transport network. This is an exciting and high-profile role, where you will need to demonstrate leadership qualities, display resilience, and be adaptable to ambiguous situations.

Your role will involve responding to emergency responses including high pressure situations with real world human impacts. Due to the nature of emergency responses, you will be required to work outside of normal office hours.

Your key responsibilities will include, but are not limited to:

  • Managing and maintaining Standard Operational Procedures (SOPs), ensuring DfT has effective contingency arrangements in place; embedding a more agile and resilient response across the Department.
  • Working with subject matter experts within DfT and its agencies to ensure DfT has effective operational crisis management procedures in place.
  • Identifying and planning for near term risks and anticipating potential operational impacts.
  • Evaluating acute risks and communicating critical information to senior colleagues and ministers.
  • Representing the department at cross-government meetings acting as an advocate for DfT’s interests.

For further information, please see the attached Role Profile.

Person specification

About you

You will be an articulate communicator who is confident liaising with a broad range of senior stakeholders within DfT and across Whitehall. You will have excellent interpersonal skills, allowing you to establish and maintain positive working relationships and collaborate with peers both within the department and external organisations.

You will be a strong critical thinker with the ability to interpret complex information and make judgement-based decisions. You will display flexibility and resilience when faced with ambiguity, and will be comfortable balancing competing priorities within a fast paced, pressured environment.

Additional Information

This role is available to individuals who wish to be spending their office time in London, and we would also expect the individual to be willing to occasionally travel to visit different locations relevant to the role.

A minimum of 40% of your working time should be spent at your principal workplace, although requirements to attend other locations for official business, or carry out detached duty in another DfT workplace, will also count towards this level of attendance.

Behaviours

We’ll assess you against these behaviours during the selection process:

  • Working Together
  • Delivering at Pace
  • Seeing the Big Picture
  • Communicating and Influencing

Being part of our brilliant Civil Service means you will have access to a wide range of fantastic benefits. We offer generous annual leave, attractive pension options, flexible working, inclusive working environments and much more to support a healthy work/life balance.

Data Protection Lead

Blackpool, Leeds, Manchester, Newcastle-upon-Tyne

Job summary

At DWP we are committed to creating a great place to work for all our colleagues; an inclusive and respectful environment that reflects the diversity of the society we serve.

We want to maximise the potential of everyone who chooses to work for us, and we offer a range of flexible working patterns and support to make a fulfilling career at DWP accessible to you.
 
Diverse perspectives and experiences are critical to our success, and we welcome applications from all people from all backgrounds with the experience and skills needed to perform this role.

As one of the largest government departments, almost every individual in the UK is a direct customer of DWP at some point in their lives. DWP’s mission is to improve people’s quality of life, both now and in the future. We do that by focussing on delivering excellent services that make a difference to millions of people. We trust and empower our people to deliver these services to customers every day, including the most vulnerable in society.

We seek to be an exemplar of the modern Civil Service, and to build on our achievements for the benefit of those we serve. When we are at our best, we care, we deliver, we adapt, we work together and we value everyone, and we seek to ensure that these values guide the way we serve our country, our communities, and our fellow citizens.

DWP is looking to fill 1 role in Security and Data Protection. This is a key role, and we are looking for people who will help us deliver our vision for data protection.

We welcome applications from candidates who can demonstrate strong leadership, communication, analytical and stakeholder management skills, have the ability to operate within a complex environment, be able to brief senior leaders clearly and confidently, and lead a team to deliver a high-quality professional service.

Under the UK General Data Protection Regulation (GDPR), every public body who is a data controller or processes personal data must appoint a Data Protection Officer (DPO). The DWP DPO is responsible for monitoring overall compliance with UKGDPR and the Data Protection Act 2018.

The DWP DPO Function is made up of four teams, each managed by a Deputy DPO (DDPO). This vacancy is on the Business Management, Data Breaches and Compliance Team.

The main responsibilities of Business Management, Data Breaches and Compliance Team are:

  • Front door for advice, re-routing or responding to enquiries on data protection related queries;
  • Information Commissioner’s Office (ICO) first point of contact for data breaches and citizen or staff complaints;
  • Manage DPO Team business plans, operating model and Team objectives;
  • Production of all management information dashboards for circulation to wider stakeholders;
  • Coordination of all learning and development opportunities for the DPO Team;
  • Undertake trend analysis to identify areas for upskilling for the team and business;
  • Coordination of personal data breach investigations and remediation activities with the relevant business areas, data subjects and the ICO;
  • Develop and maintain a DWP Data Protection Compliance Framework;
  • Deliver independent compliance monitoring and provide assurance that DWP and third-party suppliers complies with data protection regulatory requirements;
  • Supplier compliance activity.

Job description

The post holder will play a key role in influencing and driving forward a variety of activities to support data protection compliance in DWP.

 The main responsibilities of the post holder will include but is not limited to:

  • Undertaking trend analysis to identify improvements;
  • Building and maintaining relationships with stakeholders to ensure needs are identified;
  • Leading a team to achieve its team objectives by inspiring, valuing and motivating staff;
  • Building a culture of continuous improvement;
  • Working with external and internal communications to define and develop privacy awareness campaigns, communications and updates;
  • Leading projects that impact the whole DPO Team;
  • Coordinate all recruitment activities within the DPO Team.

Person specification

Essential Criteria:

  • You have strong and demonstrable people management and leadership skills, with the ability to coordinate the activities of others and inspire and motivate teams to be fully engaged in their work. (Lead criteria)
  • Experience or capability to operate within a data protection profession.
  • You encourage, recognise and share innovative ideas from a diverse range of colleagues and stakeholders and create an environment where people feel safe to challenge and know their voice will be heard.
  • You actively build and maintain a network of colleagues and contacts to achieve progress on shared objectives, build strong interpersonal relationships and show genuine care for colleagues. 
  • You communicate with others in a clear, honest and enthusiastic way in order to build trust, and explain complex issues in a way that is easy to understand.
  • You deliver a high quality, efficient and cost effective service by considering a broad range of methods for delivery, ensuring adherence to legal, regulatory and security requirements in service delivery.

Behaviours

We’ll assess you against these behaviours during the selection process:

  • Communicating and Influencing
  • Managing a Quality Service
  • Leadership
  • Making Effective Decisions
  • Learning and development tailored to your role
  • An environment with flexible working options
  • A culture encouraging inclusion and diversity
  • Civil Service pension with an average employer contribution of 27%

Hybrid Working

This job role may be suitable for hybrid working, which is where an employee works part of the week in their DWP office and part of the week from home.  This is a voluntary, non-contractual arrangement and your office will be your contractual place of work. The number of days that anyone will be able to work at home will be determined primarily by business need but personal circumstances and other relevant circumstances will also be taken into account. If you are successful, any opportunities for hybrid working, including whether a hybrid working arrangement is suitable for you, will be discussed with you prior to you taking up your post.

MOD Head Office Security Advice Centre Manager

Whitehall, London SW1A 2HB

Job summary

The successful candidate will support the Ministry of Defence Head Office in the delivery of security services within the Main Building in Whitehall. A key deliverable will be the improvement of security services within Head Office in support of the Security Advice Centre, Establishment Security Officer and the wider security team headed by the Principal Security Advisor. The post holder will need to develop strong working relationships  with key stakeholders to ensure that processes remain relevant and accord with current security policy. The post holder will therefore require good written and verbal communication skills as they will be required to deliver security briefings and produce weekly reports for senior management on the delivery of security advice and services within MOD Head Office.


This position is advertised at 36/37 hours per week Tacos Dependant.

Job description

Responsibilities include:

  • The management of the Security Advice Centre (SAC) which processes building pass applications, issue passes and delivers security advice.
  • Gaining a working knowledge of all tasks performed by the Security Advice Centre to enable oversight and to deal with queries.
  • Delivering security induction briefings having carried out checks and providing advice and education briefings having carried out checks and providing advice and education to those accessing sensitive material, areas and systems in order to protect information.
  • Maintaining a record of all individuals at Head Office who are security inducted and acting as a point of contact for confirming security clearances with the assistance of an Administrative Officer.
  • Line management responsibility for one or more Administrative Officers.
  • Supporting the wider business area in other key security work as directed by the Deputy or Principal Security Advisor.

Person specification

Desirable

  • Experience of working in the Government Security Profession, particularly in a security contact/advice centre, guardroom or pass office, or experience of working in the private security sector.


  • Experience of working in a customer facing administrative/ management role.


  • Knowledge/experience of working with sensitive material/information.

Behaviours

We’ll assess you against these behaviours during the selection process:

  • Communicating and Influencing
  • Making Effective Decisions
  • Managing a Quality Service
  • Delivering at Pace
  • Working Together
  • Leadership

We only ask for evidence of these behaviours on your application form:

  • Communicating and Influencing
  • Making Effective Decisions
Alongside your salary of £27,950, Ministry of Defence contributes £7,546 towards you being a member of the Civil Service Defined Benefit Pension scheme. Find out what benefits a Civil Service Pension provides.
  • Learning and development tailored to your role
  • An environment with flexible working options
  • A culture encouraging inclusion and diversity
  • Civil Service pension with an average employer contribution of 27%
  • Gym facilities
  • Onsite creche
  • Generous annual leave allowance

The post does not offer relocation expenses.

The Ministry of Defence is committed to providing a safe and healthy working environment for its staff which includes educating them on the benefits of not smoking, protecting them from the harmful effects of second-hand smoke and supporting those who want to give up smoking. Under the Smoke-Free Working Environment policy, Smoking and the use of all tobacco products (including combustible and chewing tobacco products) will not be permitted anywhere in the Defence working environment by 31st December 2022. The policy is Whole Force and includes all Defence personnel, contractors, visitors and other non-MOD personnel. All applicants seeking, considering, or accepting employment with the Ministry of Defence should be aware of this policy and that it is already in place at a number of Defence Establishments.

Enquire now

The first step in our joining process is to submit your CV. This will be read to determine the appropriate joining route and you will then be sent an email with a link to the relevant application form.

  • Please upload your CV here