Cyber Design Authority

Cyber Design Authority

Full-Time 60000 - 80000 £ / year (est.) Home office (partial)
Hitachi Rail

At a Glance

  • Tasks: Lead cybersecurity design activities and ensure compliance with security standards.
  • Company: Join Hitachi Rail, a global leader in digital transformation and technology.
  • Benefits: Flexible working hours, market-leading training, and career development opportunities.
  • Other info: Inclusive workplace with diverse opportunities for growth and mentorship.
  • Why this job: Make a real impact in cybersecurity while working with cutting-edge technology.
  • Qualifications: Degree in cyber security or related field; experience in systems engineering and security solutions.

The predicted salary is between 60000 - 80000 £ per year.

About Us

A career at Hitachi Rail will help create a legacy. With operations in every corner of the world, our work goes to the cutting-edge of digital transformation and technology. From the multi-cultural strength of our global organisation to the sustainable and innovative ways we work to bring people together, there’s something for everyone to get stuck into. And that’s where you come in.

London, Greater London, United Kingdom (Hybrid)

Our Opportunity

We are currently looking for a Cyber Design Authority who will be the technical authority for all cybersecurity design activities across the SRS portfolio. You will provide strategic direction and expert oversight to ensure that all cyber practices, controls, and solutions meet required security standards, regulatory compliance, and operational effectiveness.

You will be responsible for defining and implementing cybersecurity policies, standards, and governance frameworks, ensuring robust risk management, regulatory alignment, and assurance. This includes making certain that all technical, procedural, and operational controls are compliant and effectively aligned with business objectives.

Working closely with security architects, engineers, SMEs, and delivery teams, you will drive a cohesive, proactive, and integrated approach to cybersecurity across SRS programmes and services. This is a hybrid role working a minimum of two days per week from our office in Canary Wharf.

Key Responsibilities:

  • Analyse customer needs/requirements and assess solution architecture and technical choices.
  • Ensure security solution compliance with customer needs, product policy, make-team-buy (MTB) strategy & applicable legislation, standards & technical security risks and opportunities and related mitigation plans throughout the bid or project.
  • Ensure best trade-off between customer requirements & product policy consistent with schedule, costs, MTB strategy & risks/opportunities.
  • Check the production and the maintenance/service aspects of the solution with the Production Process/Technology Manager (PPTM) and the Service Engineering Manager.
  • Approve the technical specification and source selection of subsystems/products to be outsourced, by taking into account MTB policy, export restrictions and offset requirements.
  • Check that the engineering environment for the solution is consistent with country/company instruction, and overall solution cost, technical risks & schedule.
  • Ensure, with the support of engineering SMEs & safety stakeholders that solution design takes into account contract requirements and applicable security legislation, standards & regulations, and that related certification activities are performed correctly.
  • Review and approve the completion of security specific integration, verification, validation and qualification results.
  • Lead bid/project security engineering reviews and approve the security deliverables at each project decision milestone.
  • Organise appropriate technical meetings and peer reviews together with the Engineering Delivery Manager and other technical stakeholders and experts, in order to perform the solution technical assessment and to business strategy and product development as required.
  • Interface with the client to define the solution.
  • Keep abreast of technical, legislative and industry specific standards developments in security both within and outside of the company.

Technical Skills and Experience

  • Strong technical writing skills and excellent interpersonal communication skills.
  • Expertise in cyber and information security solutions relevant to the company, e.g. urban signalling, mainline signalling, communication systems, integrated control systems, etc.
  • Excellent understanding of risk assessment frameworks and compliance methodologies.
  • Strong knowledge of business case development, resource planning, and effective budget management.
  • Extensive experience across systems engineering lifecycle disciplines with a focus on security, including secure-by-design principles, requirements capture, modelling, analysis, system design, and independent verification and validation (IV&V).
  • In-depth knowledge and experience of full systems engineering lifecycles for large, complex systems.
  • Expertise in industry specific security standards and legislation.
  • Well-proven technical/project experience in the development and application of security solutions to critical OT or IT control systems and/or safety critical systems.

Additional qualifications

  • Mandatory: Qualified to Degree level (preferably Masters) in a relevant field, e.g. cyber security, networks, computer science, etc.
  • Desirable: Certified or working towards a senior level security accreditation, such as CISSP, CISM, etc.

Human Skills

  • Proven track record of building and maintaining cross-functional relationships to deliver outcomes that benefit both the immediate team and the wider business.
  • Excellent presentation skills.
  • Effective personal organisation and an ability to remain composed and focused under pressure.
  • Demonstrated ability to lead, manage, mentor and coach a diverse team.
  • Excellent problem-solving ability, trade-off skills and attention to detail.

What to expect

We aim to complete a two-stage interview process. The interviews will focus on technical and behavioural competencies. Reasonable adjustments are available with prior notice so please let the Talent Acquisition (TA) partner know if this would be necessary.

What We Can Offer

We’re committed to giving you opportunities to be your best. We believe in embracing the passion and potential of our people, and to achieve this we offer market leading training, development and experiences, along with the opportunity to be mentored and coached by some of the smartest minds in the industry. We hire from within as our first priority, so you’ll have a myriad of opportunities within our diverse, global health and well-being matters to us and that’s why we offer you the flexibility to do what’s important to you; whether that’s part time hours, job sharing, home working, or the ability to flex your start and finish times. Where possible, we support a working pattern that suits your lifestyle and helps you reach your ambitions.

Thank you for your interest in Hitachi Rail. If your application is of interest, we will be in contact. Please do not hesitate to discover more about us and our latest jobs at Hitachi Rail Careers.

At Hitachi Rail, there is a place for everyone. We welcome and value differences in background, age, gender, sexuality, family status, disability, race, nationality, ethnicity, religion, and world view. It is our commitment to create an inclusive environment - we are proud to be an equal opportunity employer.

Some vacancies may require full Security Clearance which can require further evidence to be provided. For further details of the evidence required to apply for Baseline and Security Clearance please refer to the UK Government website.

Cyber Design Authority employer: Hitachi Rail

At Hitachi Rail, we pride ourselves on being an exceptional employer, offering a dynamic work culture that fosters innovation and collaboration. Located in the vibrant Canary Wharf, our hybrid working model provides flexibility while ensuring you have access to market-leading training and development opportunities. Join us to be part of a diverse team where your contributions are valued, and you can grow your career in the cutting-edge field of cybersecurity.

Hitachi Rail

Contact Details:

Hitachi Rail Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Cyber Design Authority

Tip Number 1

Network like a pro! Get out there and connect with people in the industry. Attend events, join online forums, or even hit up LinkedIn. The more people you know, the better your chances of landing that Cyber Design Authority role.

Tip Number 2

Show off your skills! Prepare a portfolio or case studies that highlight your experience in cybersecurity design. When you get the chance to chat with potential employers, share specific examples of how you've tackled challenges in past projects.

Tip Number 3

Practice makes perfect! Before any interview, do some mock interviews with friends or mentors. Focus on both technical questions and behavioural ones. This will help you feel more confident and articulate when it’s your turn to shine.

Tip Number 4

Apply through our website! We love seeing candidates who take the initiative. It shows you're genuinely interested in joining Hitachi Rail. Plus, it’s a great way to ensure your application gets into the right hands.

We think you need these skills to ace Cyber Design Authority

Cybersecurity Design
Technical Writing
Interpersonal Communication
Risk Assessment Frameworks
Compliance Methodologies
Systems Engineering Lifecycle
Secure-by-Design Principles

Some tips for your application 🫡

Tailor Your Application:Make sure to customise your CV and cover letter to highlight your experience in cybersecurity design. Use keywords from the job description to show that you understand what we're looking for.

Showcase Your Technical Skills:Don’t hold back on detailing your technical writing skills and any relevant certifications. We want to see your expertise in cyber and information security solutions, so make it clear how your background aligns with our needs.

Be Clear and Concise:When writing your application, keep it straightforward and to the point. We appreciate clarity, so avoid jargon unless it's necessary. Make it easy for us to see why you're a great fit for the Cyber Design Authority role.

Apply Through Our Website:We encourage you to submit your application through our official website. It’s the best way to ensure your application gets into the right hands and shows your enthusiasm for joining our team at Hitachi Rail.

How to prepare for a job interview at Hitachi Rail

Know Your Cybersecurity Standards

Before the interview, brush up on the latest cybersecurity standards and legislation relevant to the role. Be prepared to discuss how these standards apply to the projects you’ve worked on and how you would ensure compliance in your new position.

Showcase Your Technical Writing Skills

As a Cyber Design Authority, strong technical writing is crucial. Bring examples of your previous work, such as reports or specifications, to demonstrate your ability to communicate complex ideas clearly and effectively.

Prepare for Behavioural Questions

Expect questions that assess your ability to lead and manage teams. Think of specific examples where you've built cross-functional relationships or solved complex problems, and be ready to share these stories during the interview.

Understand the Business Context

Familiarise yourself with Hitachi Rail’s business objectives and how cybersecurity fits into their overall strategy. This will help you articulate how your skills and experience can contribute to their goals and demonstrate your genuine interest in the company.