NHSCloses in 12 days

Lead Cyber Security Architect

UK Health Security Agency

Remote Working, E14 4PU

Salary

£56,185 to £70,566

Contract

Permanent

Hours

Not specified

Closing date

16 September 2026

12 days left

Job description

UKHSA's Cyber Security Architecture Delivery team is responsible for defining cyber security technical standards for the organisation, providing techn...

The Cyber Security Architecture Delivery team is a mix of permanent civil servants (Three Lead Security Architects and Head of department) and contract Security Architects (6 to 10).

As Lead Security Architect you will

  • Work closely with security architects, overseeing their work and providing assurance that architectural design reviews and threat models are carried out consistently to the required standard
  • Ensure the team have the appropriate blueprints, guidance, policies and standards required to complete their work.
  • Take a risk based and outcome driven approach to secure architecture
  • Develop and communicate meaningful security policies
  • Identify and promote best practices for multidisciplinary teams to deliver resilient, secure and scalable services
  • Identify, own, and respond to security risks and issues as they arise
  • Cultivate and maintain relationships with other security teams within UKHSA, Cabinet Office, NCSC and the rest of government
  • Ensure all work is in line with DSPT-CAF compliance and the security architecture framework (blueprints, standards etc...) are maintained.

This list is not exhaustive.

Youll work closely with a variety of stakeholders including business leads, project managers, delivery partners - as well as multi-disciplinary Technology teams who build and run services.

Please read the eligibility requirements outlined in the security clearance section. If you have any questions, please contact the recruitment manager/Vacancy holder for more information.

Essential criteria

  • Can demonstrate cyber security knowledge in a previous hands-on role, especially working within big programmes, and have experience of security management and information assurance practices
  • Understands security end-to-end, from security considerations in the design of services, through to architecture reviews, threat modelling, controls and remediation against existing live services
  • Builds strong relationships and communicates effectively with senior stakeholders and colleagues, ensuring that security considerations are well accounted for and built into ways of working

Desirable criteria

  • Has experience with modern software engineering practices and cloud infrastructure, including building, managing and deploying modern web services
  • Leading a team of technical specialists

Selection Process Details

This vacancy is using Success Profiles and will assess your Behaviours, Experience and Technical skills.

Stage 1: Application & Sift

You willbe requiredto complete an application form. You will be assessed onthe listed 3 essential criteria,and this will be in the form ofa:

  • Application form(Employer/ Activity history section on the application)
  • 1000 word supporting statement.

This should outline how you consider your skills,experienceandknowledgeprovide evidence of your suitability for the role, with reference to the essential criteria.You will receive a joint score for your application form and statement. (The application form is the kind of information you would put into your C.V please beadvisedyou will not be able to upload your CV. Please complete the application form in as much detail as possible). Please do not email us your CV.

HealthjobsUK has a word limit of 1500, but your supporting statement must be no more than 1000 words. We will not consider any words over 1000 words.

Longlisting

In the event ofa large number of applications we will longlist into 3 piles of:

  • Meets all essential criteria
  • Meets some essential criteria
  • Meets no essential criteria

If used, the pile Meets all essential criteria willproceedto shortlisting.

Shortlisting

In the event ofa large number ofapplications wemay conductan initialsift, on the lead criteria of:

  • Can demonstrate cyber security knowledge in a previous hands-on role, especially working within big programmes, and have experience of security management and information assurance practices.

Desirable criteria may be used in the event ofa large number ofapplications/largeamountof successful candidates.

If you are successful at this stage, you will progress to interview & assessment.

Feedback will not be provided at this stage.

Stage 2:Interview

You will be invited to a single remote interview.

Behaviours, Experience and Technical skills will be tested at interview via questioning.

The Behaviours tested during the interview stage will be:

  • Delivering at pace (Lead Behaviour)
  • Making effective decisions
  • Leadership
  • Communicating and influencing

Interviewsdates are to be confirmed.

Once this job has closed, the job advert will no longer be available. You may want to save a copy for your records.

We pride ourselves as being an employer of choice, where Everyone Matters promoting equality of opportunity to actively encourage applications from everyone, including groups currently underrepresented in our workforce.

UKHSA ethos is to be an inclusive organisation for all our staff and stakeholders. To create, nurture and sustain an inclusive culture, where differences drive innovative solutions to meet the needs of our workforce and wider communities. We do this through celebrating and protecting differences by removing barriers and promoting equity and equality of opportunity for all.

Please visit our careers site for more information https://gov.uk/ukhsa/careers

Application form and supporting statement

Essential

  • Application form and supporting statement

Interview - Behaviours

Essential

  • Making effective decisions
  • Leadership
  • Communicating and influencing
  • Delivering at pace

Interview - Technical Skills/Experience

Essential

  • Technical Skills/Experience

How to apply

Applications are handled entirely by the employer on the original advert. We do not collect CVs, supporting statements or application data.

Provenance

Source

NHS Jobs

First seen

2 September 2026

Last checked

4 September 2026

Salary, closing date and description are taken from the employer's advert. The original advert always takes precedence.

About the employer

UHS
UK Health Security Agency

NHS organisation

This listing was structured from NHS Jobs. Vacancy details and the application process remain the responsibility of the original source.

We would like to set one optional cookie that recognises your browser when you come back, so we can tell returning visitors from new ones. It stays off unless you say yes, and you can change your mind at any time. Cookies that keep you signed in are always on. Read our cookie policy