Principal Security Architect

·
Full time
Location: Cardiff
·
Job offered by: Onyx-Conseil
·
Category: IT & Technology
Ofgem operates at the forefront of data protection and cyber security, ensuring public data is safe and secure and we set the standard for the energy industry. We're looking for a Principal Security Architect to join us and lead the design and implementation of innovative security solutions that protect critical systems and enable us to deliver on our mission of a fair, sustainable and secure energy future.

Ofgem is Great Britain's independent energy regulator. We're at the forefront of change across the energy sector, driving toward Net Zero whilst protecting energy consumers - especially vulnerable people.

We're offering a permanent role with significant autonomy and the opportunity to make a tangible impact on the security of digital services across Ofgem. As an expert in the field, you'll lead high-profile projects, shaping our security posture and implementing best practices in line with National Cyber Security Centre (NCSC) guidance. This is a chance to be at the forefront of meaningful change, championing secure by design principles and influencing digital strategies that benefit millions.

This role provides a rare opportunity to combine technical expertise with strategic leadership. You'll provide guidance and direction to a knowledgeable and supportive team, working in an agile environment to improve our security architecture across our digital services. With the freedom to innovate and shape how the security programme progresses, you'll play a key role in transforming our approach to digital security.

We're looking for someone with proven expertise in security architecture, applied security practices and a strong ability to communicate complex concepts to diverse audiences. You'll need a solid foundation in risk assessment, certifications such as CISSP or TOGAF, and the ability to collaborate effectively across teams.

At Ofgem, we offer more than just a job - we provide a supportive and flexible working environment designed to help you thrive. With hybrid working arrangements, newly refurbished offices in central London, Glasgow, or Cardiff, and a generous rewards package that includes excellent professional development opportunities, you'll find everything you need to excel both professionally and personally.

We have a critical purpose to fortify digital security within energy regulation. By leading the security design for our digital projects, you'll improve our overall security posture and play a pivotal role in ensuring the resilience and integrity of our digital systems.

Key Responsibilities Lead the technical design of systems and services, justifying and communicating all design decisions, applying research and innovative security architecture solutions to new or existing problems. Communicate the vision, principles and strategy for security architects for one project or technology. Decipher subtle security needs and understand the impact of decisions, balancing requirements and deciding between approaches. Lead on quality assurance. Collaborate with stakeholders across organisations, teams, or communities. Key Outputs and Deliverables Use applied security expertise to identify key programme and technical risks, leading the design of mitigating security architectures. Create and clearly communicate security expectations to stakeholders, providing expert guidance to operators on interpreting such statements into meaningful and appropriate security requirements. Provide expert cyber architecture design creation and review of operator system architectures to identify security weaknesses and recommend mitigations. Provide expert advice on security architecture implications of technological trends when applied to existing systems how innovative technologies change the security approach required. Effectively communicate difficult risk and security concepts in accessible ways that can be clearly understood by business leaders. Contribute to and develop risk communication strategies. Follow a methodical and repeatable approach to reviewing the security of a system architecture and describe that approach. Essential Criteria Proven expertise in security architecture and applied security capability. (Lead criteria) Practitioner in information risk assessment and risk management. Extensive experience working collaboratively with diverse colleagues. Develops, plans and delivers work outcomes, including clear and transparent work objectives, milestones and success metrics. Certified to one, more or equivalent: CISSP, GICSP, GRID, SABSA, TOGAF. Able to achieve and maintain SC clearance. Desirable Criteria Membership in a professional association. Experience of cross-government Secure by Design approach.

#J-18808-Ljbffr

Recent Jobs

London (On site) · Full time

Are you a smart, driven professional who takes pride in making a difference in local communities? Turner & Townsend’s Real Estate division is experiencing significant growth and we’re looking for an experienced industry professional with health project experience to join our high-performing and collaborative Project Management team. Why Join Us? Impactful Work: Contribute to social [...]Read More... from Assistant Project Manager – Healthcare See details

Chasetown (On site) · Full time

My client, Autosmart International are a manufacturing success story! Site Operations Manager – leading fast-paced manufacturing and warehousing About Our Client Autosmart International is a manufacturing success story, leading the field in vehicle cleaning products. We are the No.1 choice of automotive trade customers across the UK. We have doubled in size in the last [...]Read More... from Site Operations Manager See details

London (On site) · Full time

CSS are looking for an experienced duty officer to join our client’s team who are a local council responsible for all areas within the Tendering district. Working hours: All shifts are 8 hours long with various start times available: Monday to Friday – start times between 6AM – 3PM Saturday & Sunday – 6AM – [...]Read More... from Duty Officer See details