skip navigation
skip mega-menu

Security Architect Principal - ONS - G6

Government Digital & Data -

Full-time (Permanent)
National (£70,335 - £74,617) and London (£75,163 - £79,362) Plus a skills allowance of up to £10,000 (non-pensionable and non-contractual) may be payable.
Published on
27 February 2025
Deadline
11 March 2025

ONS operates a flexible hybrid working model across the UK, with colleagues linked to one of our contractual locations in Newport, Titchfield (Fareham), London, Manchester, and working between office and remote throughout the week.


As part of the hybrid working arrangement there is 40% a minimum office attendance requirement. Attendance is typically at your contractual office, with occasional travel to alternative locations. Due to estates constraints, there are currently temporary exceptions to this for colleagues based at Manchester who are required to attend the office for a minimum of 20% of their work time.

About the job

Job summary

The Office for National Statistics (ONS) has a long history of working with personal, economic and commercial information. Security and the management of information used for corporate and statistical activities is critical to business operations and the trust that citizens place in us. ONS has a strong commitment to protecting this information.

The last few years has seen an extensive overhaul of security and information management to meet the challenges of corporate and statistics transformation in technology, methods and practice, the Digital Economy Act and organisational risk appetite. The capability is evolving and expanding to address changes in threat and business direction.

Security and Information Management Directorate (SaIM) operates five key services across ONS: security risk advice and management; knowledge and information management (KIM); physical security and business continuity; security compliance and audit; security operations including our Security Operations Centre.

Job description

The Security Architect Principal role forms part of the Advisory Security team within the Security and Information Management Division at the Office for National Statistics (ONS). The role reports to the Head of Cyber Security Risk Management.

Security architecture relates to the secure design of systems. It combines technical architecture and risk management, along with knowledge of how systems can be compromised to help design systems that (among other things) are sufficiently hard to compromise or disrupt while being sufficiently easy to monitor and maintain.

The primary focus of the role is to provide the Organisation with security advice and best practice to develop ‘Secure by Design’ protections for organisational assets and embed the ONS Security Framework - principles; policies; processes; threat model; security risk management into the ONS. 

The Security Architect advises and enables technical teams to make security decisions. They provide advice and guidance to ensure common tools and patterns are used effectively to deliver secure systems, and they implement proportionate controls to enable business outcomes.

The focus, outcomes and responsibilities are aligned to the Government Security Profession framework of the Security Architect – Principle.

Responsibilities

  • Supporting the development of business-focused security solutions for digital products and business operations that cover data collection, storage and processing, deployed both internally and externally.
  • Advise projects with high strategic impact, setting a strategy that can be used in the long term and across the whole organisation.
  • Develop vision, multiple projects and strategy for Security Architects for multiple projects or technologies.
  • Recommend security design across multiple projects or technologies, up to an organisational or inter-organisational level, solving unprecedented issues and problems.
  • Influence key organisational and architectural decisions and interact with senior stakeholders across organisations to reach and influence a wide range of people across larger teams and communities.
  • Reviewing system architectures to:
    o identify single points of vulnerability and common architectural flaws.
    o identify security issues relating to configuration of components in an architecture.
    o Validate and explain how common attack methods are mitigated by the design.
  • Validate and explain how common attack methods are mitigated by the design.
  • Identify areas where detailed technical analysis will be required to understand important nuances that could have significant security implications.
  • Articulates security issues identified, proposes and prioritises appropriate mitigation options, taking into consideration other potential constraints (functional impact, cost etc.).
  • Contributes to the design of system architectures that solve common business problems, including specifying required security controls.
  • Understands the context and has required domain knowledge to tailor advice to the specific need of the business.
  • Designs and review system architectures for a broad range of complex or uncommon requirements to identify security weaknesses and recommend mitigation's.
  • Design (or significantly influence) the technical design of a system to enforce security properties that have been derived from first principles to meet a complex or uncommon set of requirements.
  • Follow a methodical and repeatable approach to reviewing the security of a system architecture and can describe that approach.
  • Advise on security architecture implications of technological trends when applied to existing systems, such as migration to the cloud. Can explain how those technologies change the security approach required.
  • Contributes to new and innovative security architecture guidance for others to re-use.
  • May have one or more technology specialisms where they are regarded as an expert in how their specialism supports security architecture design (e.g. telecoms, power, micro service architectures, identity).

Person specification

Essential skills criteria

  • Expert knowledge of application, infrastructure and networking security controls and systems covering physical, procedural and technical (ICT) areas, particularly in relation to data management.
  • Experienced in providing detailed security advice and technical security solutions in a UK Government Department.
  • Good knowledge of UK Government Security Policy Framework, Information Assurance Standards, e.g. ISO 27001, DPA.
  • Working towards relevant professional qualifications and memberships e.g. Senior Practitioner level within the CESG Certified Professional scheme Principal (CCP), British Computer Society (BCS).
  • Track record in working as part of a multi divisional team covering a multi-discipline environment.

Link to The Government Security Profession career framework

Behaviours

We'll assess you against these behaviours during the selection process:

  • Communicating and Influencing
  • Seeing the Big Picture
  • Delivering at Pace

Technical skills

We'll assess you against these technical skills during the selection process:

  • Applied Security Capability
  • Information Risk Assessment and Risk Management
  • Threat Understanding
  • Security Architecture


More jobs at Government Digital & Data

Lead Business Analyst-Department for Transport
£51,997
Full-time (Permanent)
Technical Architect Vehicle Certification Agency-SEO
£57,400
Full-time (Permanent)
Software Engineer - ONS - HEO
£32,452
Full-time (Permanent)
IT Support Engineer - Met Office - EO
£26,954 - £29,531
Full-time (Permanent)
DDaT Senior BI Design & Integration Manager - MoD - SEO
£43,080
Full-time (Permanent)
Lead Applied AI Engineer (i.AI) - CO - G6
£67,126 - £103,924
Full-time (Permanent)
DDAT Lead Technical Architect - MoD - G7
£57,670 - This post is eligible for a Digital Skills Allowance of up to £15,300 per annum
Full-time (Permanent)
Interaction Design Industrial Placement 2025 - Met Office - AO
£25,606
Full-time (Permanent)
Lead DevOps Engineer - DWP - G6
£72,664 - £89,995
Full-time (Permanent)
Software Development Engineer In Test (Automation Test Engineer
Full-time (Permanent)
Defence Business Services (DBS) DevOps Engineer - MoD - HEO
£36,530
Full-time (Permanent)
Security Architect Data Services and Analytics (DSA) - HO - SEO
£44,720 - £52,130 You may be eligible for an additional non-pensionable allowance, pending a Capability and Skills assessment, with a value of up to £12,680.
Full-time (Permanent)
Lead Technical Architect - DEFRA - G7
National: £54,470 - £61,000 London: £59,900 - £67,090 plus additional skills supplement paid up to £24,543.
Full-time (Permanent)
Head of IT Service Management Capabilities (Fixed Term) - DfT - G6
£67,313
Full-time (Permanent)
Data Science Degree Apprenticeship Level 6 - GSS - EO
National min £24,283 / London min £28,300 Salary may vary depending upon department and location
Full-time (Permanent)
Junior Interaction Designer - GDS - SEO
£42,893 - £45,653 Based on capability. The base salary of this grade is £42,382. Offers made above this will be made up with a specialist pay allowance
Full-time (Permanent)
Senior Technical Architect - DfE - G7
£56,353 (National) £60,373 (London) This post is eligible for a Digital, Data and Technology (DDT) capability based pay (CBP) allowance.
Full-time (Permanent)
Senior Technical Architect - MHPRA - G7
£58,983
Full-time (Permanent)
Lead Technical Architect - MHPRA - G6
£73,324
Full-time (Permanent)
DevOps Engineer - HSE - HEO
£36,235 - £39,611
Full-time (Permanent)
Senior Site Reliability Engineer - MoJ - G7
National £56,532 - £96,338 London £61,201 - £69,338 which may include an added allowance please see full job description on Civil Service Jobs
Full-time (Permanent)
Graduate Programme Security Operations Centre (SOC) Analyst - IPO - EO
£31,783 - £33,055
Full-time (Permanent)
Lead Data Architect Data Services and Analytics (DSA) - HO - G7
£60,300 - £70,730 You may be eligible for an additional non-pensionable allowance with a value of up to £20,100 (location dependent).
Full-time (Permanent)
Technical Architect Data Services and Analytics (DSA) - HO - SEO
£44,720 - £52,130 You may be eligible for an additional non-pensionable allowance, pending a Capability and Skills assessment, with a value of up to £12,680.
Full-time (Permanent)
Associate Test Engineer Level II - DWP - HEO
£37,497 - £38,373
Full-time (Permanent)
Senior Performance Test Engineer - DVLA - SEO
£42,848 plus an additional allowance up to £14,552
Full-time (Permanent)
Software Developer in Test - HM Courts and Tribunals Service - SEO
£41,463 - £52,040 location dependant. Offers above will be an additional GDD allowance based on experience.
Full-time (Permanent)
Lead Interaction Designer - DESNZ - G7
National: £55,105 - £62,475; London: £60,620 - £67,565 (pro-rata for part-time hours)
Full-time (Permanent)
Interaction Designer - HM Courts and Tribunals Service - SEO
National £41,463 - £45,276 London £47,657 - £52,040. Your salary will be dependent on your base location
Full-time (Permanent)
Software Developer - DSTL - SEO
£37,769 - £45,000
Full-time (Permanent)
Senior Software Developer (LITE) - DBT - G7
London: £63,248 to £79,133 / National: £59,634 - £75,618 (including allowance)
Full-time (Permanent)
Software Developer - HSE - HEO
£36,235 - £39,611
Full-time (Permanent)
Software Engineer (Navy Aviation) - MoD - EO
£29,580 This post presently attracts a Market Skills Allowance of £3000 per annum
Full-time (Permanent)
Software Engineer - UK Export Finance - SEO
£46,085 to £57,685 (London) and £43,890 to £51,571 (National) A market supplement of 20% of the starting salary will also be payable.
Full-time (Permanent)
Senior Technical Architect ServiceNow - HMRC - G7
£56,344 - £62,590
Full-time (Permanent)
Senior Technical Architect (Software & Solutions) - HM Land Registry
£54,388 - £68,900
Full-time (Permanent)
Senior DevOps Engineer - MoJ - G7
The national salary range is £56,532 - £64,048, London salary range is £61,201 - £69,338. Your salary will be dependent on your base location
Full-time (Permanent)
Web/DevOps Engineer Apprenticeship (Level 4) - Companies House - AO
£24,708
Full-time (Permanent)
Associate Data Scientist - ONS - HEO
£34,075 - £38,718
Full-time (Permanent)
Service Manager - Planning Inspectorate - G7
£59,644 - £66,120
Full-time (Permanent)

Subscribe to our newsletter

Sign up here

" class="hidden">《狩龙战纪》官方网站