At a Glance
- Tasks: Lead the secure design and assurance of digital services across GLD.
- Company: Join the Government Legal Department, a key player in delivering legal services to the UK government.
- Benefits: Enjoy competitive salaries, additional allowances, and opportunities for professional growth.
- Why this job: Be part of a transformative team shaping the future of government digital services.
- Qualifications: Degree in Computer Science or Cybersecurity; relevant certifications preferred.
- Other info: Work from various locations including London, Bristol, and Manchester.
The predicted salary is between 47000 - 65000 £ per year.
Overview
Lead Security Architect (Operational) – GLD – G7 – Manchester Digital
Location: Bristol, Croydon, Leeds, London, Manchester
Job Summary
From healthcare to artificial intelligence, energy to national security, we provide legal advice to government departments on nation-changing subjects. The Government Legal Department (GLD) delivers high-quality legal services across government and supports the Government to govern well within the rule of law.
GLD is a non-ministerial government department with offices nationwide. This is an exciting time to join GLD, with cutting-edge legal work and a transformation agenda to modernise the Civil Service.
About the Digital and Data Team
Government Digital and Data is a community of experts leading digital transformation in government. The Digital and Data Team’s mission is to provide GLD with an IT environment that’s ‘fit for the future’, using an agile, user-centred approach to develop and improve products and services while considering sustainability and staff experience.
About the Role
In GLD our Lead Security Architects are responsible for ensuring the secure design and development of solutions across the department. You will work with stakeholders to understand and meet security requirements in projects, ensuring design standards are applied during delivery. This role focuses on implementing cybersecurity controls across GLD’s digital infrastructure across multiple office locations.
You will:
- Provide secure design and technical assurance for digital solutions, aligning with GLD’s architecture standards, risk appetite, and security best practices.
- Identify, assess, and manage cybersecurity risks throughout project delivery and embed security in all technical design decisions.
- Deliver practical, hands-on support for cloud, network, and application security — particularly within Microsoft environments — and lead or contribute to cybersecurity governance and assurance forums, including business continuity and disaster recovery planning.
- Collaborate with internal and external stakeholders to maintain trust and alignment on security matters. Develop and maintain information security policies; oversee penetration testing and vulnerability management to drive continuous improvement.
Responsibilities
- Ensure secure design and development of GLD solutions and adherence to architecture standards.
- Lead or contribute to cybersecurity governance, risk management, and assurance activities.
- Provide hands-on security support for Microsoft 365, Azure security features, and Entra ID.
- Embed security in project delivery and drive continuous improvement in security practices.
- Engage with other government departments to coordinate security matters.
Person specification
Behaviours
- Delivering at Pace
- Communicating and Influencing
- Managing a Quality Service
Experience (Essential)
- Robust working knowledge of NCSC’s cyber security principles in enterprise/government environments.
- Experience designing secure digital services and providing technical security assurance.
- Ability to assess and manage cyber risks using structured methodologies.
- Understanding of Microsoft 365 and Azure security features, including Entra ID.
- Familiarity with common cybersecurity tools and platforms.
- Strong stakeholder engagement and communication skills for technical and non-technical audiences.
- Ability to contribute to ISO27001 implementation and ongoing certification.
Experience (Desirable)
- Experience planning and delivering projects.
- Hands-on experience with security technologies (e.g., Trend Micro, LogRhythm, CyberArk, Penterra, ManageEngine, Semperis or similar).
Technical Skills
- Implementing enterprise security architectural changes and drafting policies using NCSC guidance.
- Cyber essentials+, ISO27001/27005, DSIT/NCSC Secure by Design framework.
- Proficiency in security frameworks (NIST, ISO 27001, CIS, Zero-Trust).
- Threat modelling, risk assessment, and vulnerability management.
- Ability to evaluate and implement digital security technologies and controls across enterprise systems.
- Microsoft 365 and Azure Security, Entra ID.
Qualifications – Eligibility
- Relevant certifications such as CCSP, CISSP or SANS/GIAC preferred.
Security Clearance
All GLD employees must hold BPSS security clearance. If successful, you must hold, or be willing and able to obtain, DV level security clearance. You may start before obtaining the clearance. More information on vetting and clearance levels is available before applying.
Sponsorship and Visas
GLD may sponsor skilled workers if eligible under current immigration legislation. Sponsorship is not guaranteed. Applicants must ensure eligibility for sponsorship and must notify the Resourcing Team at onboarding if sponsorship is required.
Seniority level
- Mid-Senior level
Employment type
- Full-time
Job function
- Information Technology
Industries
- Technology, Information and Internet
Referrals increase your chances of interviewing at Manchester Digital. Get notified about new Security Architect jobs in Manchester, England, United Kingdom.
#J-18808-Ljbffr
Lead Security Architect (Operational) - GLD - G7 employer: Manchester Digital
Contact Detail:
Manchester Digital Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Lead Security Architect (Operational) - GLD - G7
✨Tip Number 1
Familiarise yourself with the NCSC cyber security principles and how they apply in government settings. Understanding these principles will not only help you in interviews but also demonstrate your commitment to the role.
✨Tip Number 2
Engage with current trends in cyber security, especially regarding Microsoft 365 and Azure. Being able to discuss recent developments or challenges in these areas can set you apart during discussions with stakeholders.
✨Tip Number 3
Network with professionals in the field of cyber security, particularly those who work within government departments. This can provide insights into the specific challenges and expectations of the role, which can be invaluable during your application process.
✨Tip Number 4
Prepare to discuss your experience with security tools like Trend Micro and LogRhythm. Be ready to share specific examples of how you've used these tools to manage risks or improve security measures in previous roles.
We think you need these skills to ace Lead Security Architect (Operational) - GLD - G7
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience and skills that align with the Lead Security Architect role. Focus on your knowledge of NCSC cyber security principles, secure digital service design, and technical assurance.
Craft a Compelling Cover Letter: Write a cover letter that clearly articulates your passion for cyber security and how your background makes you a perfect fit for the Government Legal Department. Mention specific projects or experiences that demonstrate your ability to manage cyber risks and engage stakeholders.
Highlight Relevant Qualifications: Ensure you attach evidence of your qualifications, such as your degree in Computer Science or Cybersecurity, along with any relevant certifications like CCSP or CISSP. This will strengthen your application and show your commitment to the field.
Showcase Your Technical Skills: In your application, emphasise your hands-on experience with security tools like Trend Micro, LogRhythm, and CyberArk. Provide examples of how you've used these technologies to enhance security measures in previous roles.
How to prepare for a job interview at Manchester Digital
✨Understand the Role and Responsibilities
Before the interview, make sure you thoroughly understand the key responsibilities of the Lead Security Architect role. Familiarise yourself with the specific tasks mentioned in the job description, such as secure design, risk management, and stakeholder engagement. This will help you articulate how your experience aligns with their needs.
✨Showcase Your Technical Expertise
Be prepared to discuss your hands-on experience with relevant technologies like Microsoft 365, Azure, and various cyber security tools. Highlight specific projects where you've successfully implemented security measures or managed risks, as this will demonstrate your capability to fulfil the technical requirements of the role.
✨Prepare for Behavioural Questions
The interview will likely include behavioural questions assessing your ability to deliver at pace, communicate effectively, and manage quality services. Use the STAR method (Situation, Task, Action, Result) to structure your responses, providing clear examples from your past experiences that showcase these behaviours.
✨Engage with Stakeholders
Since the role involves collaborating with various stakeholders, be ready to discuss how you've successfully engaged with both technical and non-technical audiences in the past. Share examples of how you've influenced decisions or communicated complex security concepts in an understandable way.