At a Glance
- Tasks: Lead cyber security initiatives in the rail sector and support cross-domain projects.
- Company: Join a global leader in cyber security with a focus on transport.
- Benefits: Flexible working, generous holiday allowance, and community volunteering opportunities.
- Other info: Collaborative culture with excellent career growth potential.
- Why this job: Make a real impact in rail cyber security while developing your skills.
- Qualifications: Experience in rail cyber security and strong communication skills required.
The predicted salary is between 60000 - 80000 ÂŁ per year.
We are seeking a highly skilled Cyber Security Rail Lead to join our Global Transport practice. This role is pivotal in strengthening and expanding our cyber security capability within the global rail ecosystem, while also supporting cross-domain engagements in maritime, automotive, and aviation as needed. The ideal candidate will bring deep knowledge of operational technology (OT), rail systems, relevant international cyber security standards (including IEC 62443, TS 50701, IEC 63452), penetration testing methodologies, and the broader transport ecosystem. In addition to technical leadership, the individual will play a key role in supporting business development, building client trust, and elevating NCC Group’s profile within the rail sector. This is a client‑facing role requiring strong collaboration, communication and leadership skills.
Key Responsibilities
- Technical Leadership (Rail Cyber Security)
- Serve as the subject matter expert (SME) for rail cyber security across global engagements.
- Lead, design, and deliver complex cyber security assessments across both operational technology (OT) and information technology (IT) environments.
- Apply deep knowledge of rail‑specific standards and frameworks, including:
- IEC 62443 (Industrial Cyber Security)
- TS 50701 (Railway Cyber Security)
- IEC 63452 (Railway Rolling Stock Cyber Security)
- Conduct or oversee penetration testing activities, vulnerability assessments, architecture reviews, risk assessment and threat modelling for rail clients.
- Provide expert interpretation of cyber security requirements for railway operators, manufacturers, and integrators.
- Ensure security recommendations are aligned with safety, operational continuity, and regulatory requirements across the rail ecosystem.
- Provide expert understanding of the rail ecosystem, including:
- Signalling systems
- Rolling stock
- Control centres
- Wayside and trackside equipment
- Rail operational processes and safety requirements
- Support the creation and growth of new rail opportunities globally.
- Build NCC Group’s market presence in the rail sector through:
- Thought leadership (whitepapers, webinars, industry events)
- Client engagements and pre‑sales support
- Partnerships with key rail OEMs, operators, and regulators
- Potentially support projects across maritime, automotive, and aviation domains as required, with team backing.
- Maintain awareness of common OT and safety‑critical technologies across transport sectors.
- Promote knowledge‑sharing across the wider Transport Cyber Security practice.
- Provide mentoring, guidance, and technical leadership to consultants at various levels.
- Work closely with colleagues across global teams to deliver integrated and high‑quality engagements.
- Promote a collaborative, supportive, and inclusive team culture.
- Act as a trusted advisor to clients, providing clear, actionable cyber security recommendations.
- Communicate complex concepts in a clear, professional, and client‑friendly manner.
- Ensure high‑quality deliverables and maintain strong client satisfaction throughout engagements.
Skills, Knowledge and Expertise
- Technical Experience
- Proven experience in rail cyber security, ideally within operators, OEMs, integrators, or a cyber consultancy.
- Strong experience working with and applying:
- IEC 62443 (critical infrastructure cyber security)
- TS 50701 (railway cyber security framework)
- IEC 63452 (rolling stock cyber security)
- Strong understanding of OT systems and technologies, including SCADA, industrial control systems (ICS), and safety‑critical environments.
- Practical experience in penetration testing or security assessment methodologies (not necessarily a full‑time tester, but capable).
- Experience with secure architecture review, threat modelling, and risk assessment in industrial or transport environments.
- In‑depth understanding of the rail operational ecosystem, including signalling, rolling stock, safety systems, and regulatory standards.
- Direct experience working within or for rail operators, system suppliers, or rail‑integrated cyber projects.
- Excellent communication skills in both technical and non‑technical contexts.
- Strong client‑facing experience and relationship management skills.
- Ability to lead engagements and influence stakeholders at all levels.
- Willingness to work collaboratively across geographies and disciplines.
- Ability to teach and mentor others on rail systems and cyber security.
- Recognised cyber certifications (e.g., CISSP, GICSP, ISA/IEC 62443 CyberSecurity Expert).
- Experience contributing to industry standards or regulatory consultations.
- Background in safety engineering or systems engineering in transport.
Benefits
- Flexible Working: Balance your work and personal life with our flexible working options.
- Generous Holiday Allowance: Enjoy 25 days of holiday, plus bank holidays, with the option to buy up to 5 additional days of annual leave.
- Medicash & Critical Illness Scheme
- Financial & Investment Benefits: Enjoy peace of mind with our Pension, Life Assurance, and Share Save Scheme.
- Community & Volunteering Programmes: Make a difference in your community with our volunteering opportunities.
- Green Car Scheme: Drive green and save money with our eco‑friendly car scheme.
- Cycle Scheme: Stay fit and healthy with our cycle‑to‑work scheme.
- Special Time Off: Take time off for those big moments in life, like getting married/entering into a civil partnership, becoming a grandparent, and welcoming home a new pet.
- Family Planning: Benefit from our generous maternity and paternity leave, as well as time off and support for those undergoing fertility treatments.
Rail Cyber Security Lead in City of Westminster employer: NCC Group
Contact Detail:
NCC Group Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Rail Cyber Security Lead in City of Westminster
✨Tip Number 1
Network like a pro! Get out there and connect with people in the rail cyber security field. Attend industry events, webinars, and meetups to make those valuable connections that could lead to job opportunities.
✨Tip Number 2
Show off your expertise! Create a personal brand by sharing your knowledge on platforms like LinkedIn. Write articles or post about the latest trends in rail cyber security to get noticed by potential employers.
✨Tip Number 3
Prepare for interviews by practising common questions and scenarios related to rail cyber security. Be ready to discuss your experience with IEC standards and penetration testing methodologies to impress your interviewers.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, you’ll be one step closer to landing that Rail Cyber Security Lead role!
We think you need these skills to ace Rail Cyber Security Lead in City of Westminster
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Rail Cyber Security Lead role. Highlight your experience with rail systems, operational technology, and relevant cyber security standards. We want to see how your skills align with what we're looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about rail cyber security and how you can contribute to our team. Be sure to mention any specific projects or experiences that relate to the role.
Showcase Your Technical Skills: Don’t forget to highlight your technical expertise in your application. Mention your experience with penetration testing, risk assessments, and any relevant certifications. We love seeing candidates who can demonstrate their knowledge in practical ways!
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way to ensure your application gets into the right hands. Plus, it shows us you’re serious about joining our team at StudySmarter!
How to prepare for a job interview at NCC Group
✨Know Your Cyber Security Standards
Familiarise yourself with the key international cyber security standards relevant to the rail sector, such as IEC 62443 and TS 50701. Be prepared to discuss how these standards apply to real-world scenarios and your experience in implementing them.
✨Showcase Your Technical Leadership
Highlight your experience in leading complex cyber security assessments and penetration testing. Share specific examples of how you've successfully guided teams or projects, demonstrating your ability to communicate technical concepts clearly to both technical and non-technical stakeholders.
✨Demonstrate Rail Domain Expertise
Be ready to discuss your understanding of the rail ecosystem, including signalling systems and operational processes. Prepare to explain how your knowledge can translate into training and mentorship for others, showcasing your thought leadership in the field.
✨Engage in Business Development Conversations
Express your enthusiasm for supporting business growth within the rail sector. Share ideas on how you could contribute to thought leadership initiatives, client engagements, and partnerships, showing that you're not just a technical expert but also a strategic thinker.