Senior Cyber Security Professional - Bristol
1 day ago
Bristol
About the job Job summary Discover a career in your hands at HMRC. Whether you're seeking purpose, growth, or a workplace that gives you a true sense of belonging, hear from some of our employees as they share their story about what it's really like to work at HMRC. Visit our YouTube channel to watch the full series and come and discover your potential. Security Consultancy Services (SCS) are an integral part of HMRC Security. We are responsible for ensuring everyone has capability to fulfil their security responsibilities and develop individual capability to detect, prevent and respond to security risks and threats. Our vision is to be recognised as a centre of expertise, working collaboratively across government to deliver holistic, customer centric cyber security services and consultancy support that continually evolves to emerging technologies and the ever-changing threat and risk landscape to support HMRC/HMG business needs. This is an exciting time to be part of our active and encouraging cyber security community, working within HMRC and across HMG. Job description As a Senior Cyber Security Professional, you will work in a multidisciplinary team in Security Consultancy Services (SCS), you'll be part of our active and encouraging cyber security community, within HMRC and across government. An ideal candidate will work collaboratively with senior business and technical partners, to deliver appropriate risk based technical security advice and guidance, to enable the secure delivery of HMRC solutions and services. You will work collaboratively with a further range of senior business & technical stakeholders, to deliver appropriate risk-based technical security advice and guidance, to enable the secure delivery of HMRC solutions and services. You will be a security champion, driving Secure by Design across HMRC. In addition, you may be encouraged to undertake line management responsibilities. Broadly, we would expect the successful candidate to align with the Government Security Professional Framework. Person specification Ideal candidate: • A leader in the delivery and development of technical security and expertise and capability of the wider team and drive the learning & development strategy for this., • Face off and manage relationships with key partners across the government security network., • Be able to demonstrate a proven history of delivering high value outcomes in challenging and complex environments., • You will be confident in your ability to engage with the UK security community and hold the technical credibility to represent our business at a range of events sharing a point of view and direction., • Be flexible to meet business needs and champion consistency across our business in support of our "one team" ethos., • Always be clear and honest when communicating, sharing knowledge and skills to build consistency and excellence in our work, aiming to achieve great results., • Support and develop the technical security expertise and capability/services of the SCS team and drive learning and development strategy., • You may be expected to undertake task management or line management responsibilities and will provide peer reviews and coaching and mentoring as appropriate., • Support on the delivery of cyber services from our service catalogue, while supporting the 'Secure by Design' security lifecycle., • Escalate problems and issues to ensure they are addressed at the right level., • Research, identify, validate, and embrace new technologies and methodologies., • Extensive experience as a technical cyber security professional, operating at a senior level, with proven ability to deliver technical security in high profile programmes, be accountable for decisions and to manage difficult customers and challenging conversations., • Managing relationships with senior representatives, effective team engagement and strong leadership., • Proven professional experience of how technical security is applied in real life, large scale complex environments., • Ability to demonstrate a deep knowledge of security and privacy risks and threats along with a solid grasp of key technical considerations in relation to confidentiality, integrity, availability and non-repudiation and privacy., • Excellent communication skills to technical, business and non-technical audiences at all levels, presenting with excellent written and verbal skills., • Knowledge of leading standards such as NIST, CAF, Secure by Design and topics such as Security Controls, Risk Management and "Zero Trust" Architecture., • Multiple security domains and disciplines including Cyber, Physical, Personnel, Process, Policy, Privacy, Law & GDPR., • Strong working knowledge of Cloud Security & Risk applied to all service models., • Good working knowledge of Cryptography including symmetric & asymmetric encryption systems, infrastructure, risks, weaknesses and mitigations., • Working knowledge of penetration testing skills and requirements., • Benton Park View, Newcastle - moving to Pilgrims Quarter, Newcastle., • Pension - We make contributions to our colleagues' Alpha pension equal to at least 28.97% of their salary., • Family friendly policies., • Personal support., • UK nationals, • nationals of the Republic of Ireland, • nationals of Commonwealth countries who have the right to work in the UK, • nationals of the EU, Switzerland, Norway, Iceland or Liechtenstein and family members of those nationalities with settled or pre-settled status under the European Union Settlement Scheme (EUSS) (opens in a new window), • nationals of the EU, Switzerland, Norway, Iceland or Liechtenstein and family members of those nationalities who have made a valid application for settled or pre-settled status under the European Union Settlement Scheme (EUSS), • individuals with limited leave to remain or indefinite leave to remain who were eligible to apply for EUSS on or before 31 December 2020