Menu

Lead Security Architect

Job details
Posting date: 21 July 2025
Salary: £64,455.00 to £74,896.00 per year
Additional salary information: £64455.00 - £74896.00 a year
Hours: Full time
Closing date: 04 August 2025
Location: Newcastle upon Tyne, NE15 8NY
Company: NHS Jobs
Job type: Permanent
Job reference: G9914-25-0189

Apply for this job

Summary

In this role, you are accountable for Security Architecture/Operations 1. Collaborate to define as-is and to-be architectures to develop full technical solutions designs including preparation of technical artefacts, and blueprints, providing a high quality security proposal for submission into internal and external business cases and assessments. 2. Undertake and lead on investigative analysis within multidisciplinary teams, providing technical authority, making credible and practical technical decisions, communicating these with sensitivity and diplomacy to ensure the right technical direction is followed. 3. Working across/within different programmes and across different layers of architecture as needed and to translate business security requirements into IT services, solutions, investment and migration roadmap. Taking a major role to identify and share good security practices, participating in relevant communities of practice to drive adoption of design standards, trends and patterns. 4. Take ownership of particular areas of the business service, project or programme IT security architecture and ensure consistency with the Enterprise Architecture, HMG Security Strategy, HMG Digital Strategy and DH Digital Strategy and provides input into IT Strategy. 5. Monitoring the development of new and emerging tools, technologies and products to assess potential value and identifying opportunities to enhance security capabilities for products and services used within the organisation. 6. Responsible for the security blueprint solutions for complex protective and vulnerability security management of both physical and data assets clearly defining the as-is and to-be security architectures and document the transition to the to-be solution and its integration in the overall Enterprise and Security Architecture blueprints. Staff Management 7. Management of staff including all line management responsibilities, performance management, appraisals, disciplinary, and standard HR processes for Security operations. 8. Undertake recruitment and selection in line with organisational processes and participate in the implementation and delivery of initiatives to secure suitable resources, increase skills levels and develop talent pools to meet the changing needs of the business landscape. 9. Seeking, providing and taking feedback to support and encourage teams and individuals to develop thinking and independently work through issues, to reach solutions-based outcomes. Taking full accountability for the approach and decision-making practices within area, including providing positive challenge to ideas and solutions. 10. Responsible for prioritising and planning own whilst contributing to the teams work and providing input to the prioritisation of projects and programmes proposed and/or underway. Financial Management 11. Maintain an awareness of financial and personal implications in the use of a range of resources. 12. Responsibility for contributing to budget management processes in accordance with NHSBSAs policies, standing orders, financial regulations and legislative requirements. 13. Develop proposals for future investment including both technology refresh and project- based change; preparing necessary estimates, mandates and business cases within the technology department and providing estimates for such led by other departments. Knowledge Management 14. Research of the marketplace and constant awareness of industry trends, threats and innovation using information to inform the ICT security strategy of the NHSBSA and as input to design activities. 15. To work with NHSBSA staff and Third Parties to ensure that security policy, standards, governance and processes are in place for producingand maintaining up to date, comprehensive, comprehensible documentation which will include IT service security blueprints for all systems and services. Relationship Management 16. Identify opportunities, engaging and fostering relationships and partnership working within the organisation, and with third parties, to identify and deliver value to the organisation. 17. Working across/within different programmes and across different layers of architecture as needed and to translate business security requirements into IT services and solutions. 18. Work with organisations external to the NHSBSA (e.g. the DHSC and GDS) when necessary to assist in clarifying their needs and requirements and be capable of devising options for security solutions, along with full assessment and cost estimation. Information Management 19. Handles sensitive commercial & financial information, ensuring that the security solution architectural designs adhere to relevant legislation and standards including for example, Information Security, NHS Confidentiality and Data Protection legislation. 20. Implement, monitor and report on a number of areas including agreed service levels, KPI's and standards within security operations. 21. Monitor, report, present or escalate issues as appropriate to the Security Operations Manager Delivery Management 22. Operate as an SME and point of authority on security architecture, making credible, pragmatic and practical security decisions and communicate with sensitivity and diplomacy to ensure the right technical direction is followed and to guide the business to make the best use of its existing IT where appropriate and to make recommendation about what other IT assets it needs to invest in. 23. To demonstrate creativity and innovation in applying IT solutions and services to develop and improve services and quality for the benefit of the organization and/or the end user of technology services. This includes devising and managing security initiatives to enable exploitation of digital services, capacity, performance, and system availability improvements that ensure business targets are met or exceeded and legacy services decommissioned, whilst ensuring data security and controlled access to data. 24. Responsible for providing expert help and guidance across the lifecycle of a security solution implementation, including technical and nontechnical aspects. This includes the migration of services across suppliers and closely with Technical Architects ensuring the solution and service design is successfully translated, built delivered and operated to meet security and business requirements. 25. Input into workforce planning, ensuring required operational commitments are fully met, business change is estimated, prioritised, and delivered, resourcing issues are identified, mitigated and managed to deliver business value. 26. Manage, and input into the development and implementation of approaches, strategies, policies, standards and practices across the team, ensuring and monitoring the timely delivery of business objectives within budget through the management of projects and programmes. 27. To identify and interpret DHSC, GDS, local and national security policy changes and directives, and assess the impact on IT Infrastructure and surrounding processes, including influencing policy information within own security specialism. 28. Produce and deliver in depth reports and/or presentations to NHSBSA, HMG or DHSC stakeholders staff and external parties, on any aspect of the work delivered.

Apply for this job