Security Lead

Apply

Overview

The Security Lead is responsible for overseeing service security for a managed service contract within the UK Government context, particularly focusing on the handling of sensitive HR, finance, and project data. Working closely with the client’s Information & Security function, Security Operations Centre, and internal teams, this role will drive security operations, ensure compliance with various security frameworks, and lead incident response efforts. The incumbent will also be pivotal in maintaining high security standards and coordinating responses to potential security threats.

Responsibilities

  • Lead day-to-day operational responsibility for service security.
  • Advise the client on security status and continuously improve the security posture.
  • Provide required reports to the client Security Operations Centre (SOC).
  • Support the SOC in resolving security incidents and document security use cases.
  • Coordinate responses to security incidents following the Cyber Security Incident Response Plan.
  • Collaborate with clients to plan and conduct annual PenTests and Disaster Recovery exercises.
  • Define and maintain Standard Operating Procedures for system administration and security controls.
  • Maintain regular communication with the client throughout the contract.

Requirements

  • 5+ years of experience as a security lead on government contracts handling OFFICIAL-SENSITIVE data.
  • Deep knowledge of NCSC HMG IAS5, Cyber Assessment Framework, Cyber Essentials Plus, ISO/IEC 27001, GDPR, and DPA 2018.
  • Experience integrating with a UK Government SOC for incident response and reporting.
  • Hands-on knowledge of Oracle Cloud security and Oracle SaaS application security.
  • Experience coordinating PenTesting, vulnerability management, and disaster recovery in a government context.
  • Strong written communication skills for audit and governance reporting.
  • Current DV clearance and UK nationality are mandatory.
SkillsCyber Security, Enterprise Architect, Delivery Manager, Oracle Cloud, Security Architect
LocationMaidenhead
TypeHybrid
SourceLinkedIn
RecruiterVE3
Posted26/06/26