Job description
Details
Reference number
Salary
Job grade
Contract type
Business area
Type of role
Information Technology
Knowledge and Information Management
Risk Management
Other
Working pattern
Number of jobs available
Contents
Location
About the job
Benefits
Things you need to know
Apply and further information
Location
About the job
Job summary
About DBT DDaT
We are the Department for Business and Trade (DBT). We champion free trade, help British businesses unleash their potential, and create new investment opportunities. The Digital, Data and Technology (DDaT) team develops and operates tools, services, and platforms such as great.gov.uk that enable the UK government to provide world leading support to businesses in the UK and overseas. Have a look at our video!
Work with us to constantly push boundaries in an environment free of heavy legacy, driven by curiosity, social purpose, diversity of thought, entrepreneurship, and the aspiration to offer an incredible experience to all our users. Find out more on our blog, Digital Trade.
Find the DDaT framework for a security architect here: https://www.gov.uk/guidance/security-architect.
This role is available in seven UK locations and can only be worked from within the UK, not overseas. Most DBT employees will be working a hybrid pattern, spending 2-3 days a week (pro rata) in the office on average. Changes to these working arrangements are available in certain circumstances but must be agreed with the vacancy manager and in line with the requirements of the role and can only be discussed with successful candidates. Travel to your primary office location will not be paid for by DBT, but costs for travel to an office which is not your main location will be covered.
Find out about life at DBT, our benefits and meet the team by watching our recruitment video, visiting our website or reading our blog!
If you would like to find out more about the role, the Cyber team and what it’s like to work at DBT, we are holding a Hiring Manager Q&A session for this role where you can virtually 'meet the team' on Tuesday 22nd August at 12.30pm. Please click here to book your spot.
Job description
This role sits within DBT’s Cyber Security function, reporting to the Lead Cyber Security Architect. You will work across multiple projects and programmes, providing cyber security guidance, identifying risks, and ensuring all services align to the department’s cyber security policies and standards. You will operate within both the cyber security team as well as the wider architecture team lead by DBT’s Chief Architect. This role will require you to work across DDaT and wider DBT teams, alongside solution, software, and technical architects as well as integrate with the entire cyber security function, such as governance risk and compliance, engineering, and security operations teams.
You will work alongside software engineering teams to ensure that cyber standards and guidance such as the Software Development Lifecycle and Digital Logging standards are applied to DBT built services. You will also work with third party operators to ensure that services they deliver are designed and deployed in a secure manner and in line with policy. Where gaps in policy or standards are identified you will work with the Lead Cyber Security Architect to update and maintain the central cyber policy and guidance.
The role will require you to work with the cyber security operations teams, handling incident detection and response, as well as vulnerability management and threat hunting to ensure that the cyber initiative of ‘secure by continuous improvement’ is adopted and exploited to its maximum potential.
This role will be suitable for an individual who has some experience in software engineering and is looking to increase their cyber security knowledge and apply this to the art of architecture.
Responsibilities
In your day-to-day role, you will:
Provide support to DBT delivery teams ensuring that either services which are built or those that are brought in are designed and delivered in line with DBT cyber security policies and guidance.
- Work across the wider architecture and cyber teams to develop the existing relationship and ensure that processes and expectations are lined up.
- Engage widely across DBT being the “go-to” team for cyber security advice and guidance, embedding cyber security culture across large teams and communities of practise.
- Produce architectural cyber security artefacts to the standards set out by the lead cyber security architect or chief architect.
- Help produce secure and repeatable security patterns.
- Aid the wider cyber security architecture team on leading the technical design of systems and services.
- Engage with the wider cyber security team to understand risk or vulnerabilities across DBT systems and services and work to reduce these through architectural processes.
- Ensure that risks are identified, assessed, and recorded appropriately.
- Support the cyber security mantra of maturing people, processes, and technology through continuous improvement.
Person specification
Essential Skills and Experience
You should be able to demonstrate knowledge and experience of:
Design or implementation experience with cloud platforms or understanding of software engineering concepts
- The ability to identify and articulate risk
- A basic understanding of system architectures and security technology
- Effective communication with a variety of stakeholders
- A willingness to learn and the ability to effectively work in a team
Desirable Skills and Experience
- Designing secure systems for fast-paced organisations
- Previous experience of working across multiple technical teams
Benefits
- Learning and development tailored to your role
- An environment with flexible working options
- A culture encouraging inclusion and diversity
- A Civil Service pension with an average employer contribution of 27%
Things you need to know
Selection process details
Assessment and Interview
This vacancy is using Success Profiles, and will assess your Technical Skills and Behaviours.
Unless otherwise specified, all interviews are currently being held online. Please ensure that you check your emails regularly as all updates from us will be sent to you this way.
Sift will take place week commencing: 28th August 2023
Interviews will take place week commencing: 11th September 2023
Please notes these dates are indicative and may be subject to change.
As part of the application process you will be asked to upload a CV which outlines your experience, skills and fit for the role. Inspire People will assess your application against the essential criteria listed above to compile a longlist of applications, which will then be sifted by DBT. If you are progressed through at this stage, you will be asked to complete a short, pre-recorded video screening interview with Inspire People or alternately provide written answers to questions. These applications will then be sifted by DBT hiring managers. If you are successful, you will be invited to interview.
How you’ll be assessed
At the interview stage for this role, you will be asked to demonstrate relevant technical skills and behaviours from the Success Profiles framework. A role-specific list of these can be found below.
Technical skills
There will be a technical element within the interview where you will be asked questions about your specific professional skills and knowledge relating directly to the job role.
We will assess you against the following technical skills:
- Security Architecture (working level: awareness)
- Information risk assessment and management (working level: awareness)
- Threat understanding (working level: awareness)
More details are available here: https://www.gov.uk/government/publications/the-government-security-profession-career-framework
You will also be assessed against the Behaviours of:
- Communicating and Influencing
- Making Effective Decisions
- Changing and Improving
- Working Together
Offer Stage
Appointments may be made to candidates in merit order based on location preferences.
The salary we will offer is determined using interview performance. Scores at interview translate to proficiency levels and an associated salary. Once a successful candidate has a proficiency level and is part of the capability framework, they will be given opportunities to self-assess to progress through the pay scale within their grade during their time at DBT. For further explanation of proficiency levels and more information about DDaT click here.
Candidates who pass the bar at interview but are not the highest scoring will be held on a 12-month reserve list for future appointments. Candidates who are judged to be a near miss at interview may be offered a post at the grade below the one advertised.
Further Information
If successful and transferring from another Government Department a criminal record check may be carried out.
The Department for Business and Trade embraces and values diversity in all forms. We welcome and pride ourselves on the positive impact diversity has on the work we do, and we promote equality of opportunity throughout the organisation.
Harmonised terms and conditions are attached. Please take time to read the document to determine how these may affect you.
Please note – the successful candidate will be expected to remain in post for a minimum of 18 months before being released for another role.
Any move to the Department for Business and Trade from another employer will mean you can no longer access childcare vouchers. This includes moves between government departments. You may however be eligible for other government schemes, including Tax Free Childcare. Determine your eligibility at https://www.childcarechoices.gov.uk
New entrants are expected to join on the minimum of the pay band.
Reasonable adjustment
If a person with disabilities is put at a substantial disadvantage compared to a non-disabled person, we have a duty to make reasonable changes to our processes.
If you need a change to be made so that you can make your application, you should contact the DDaT Recruitment team before the closing date to discuss your needs.
Our recruitment process is underpinned by appointment on the basis of fair and open competition and appointment on merit, as outlined in the Civil Service Commission's Recruitment Principles.
The Civil Service Code sets out the standards of behaviour expected of civil servants. If you feel your application has not been treated in accordance with these principles and you wish to make a complaint, you should in the first instance contact DBT by email: [email protected].
If you are not satisfied with the response you receive, you can contact the Civil Service Commission, which regulates all Civil Service recruitment. Click here to download a PDF about the Civil Service Commission/Complaints.
If you are experiencing accessibility problems with any attachments on this advert, please contact the email address in the 'Contact point for applicants' section.
For further information and to apply please click the link to direct you to the advertisers website.
Security Clearance Details
This role requires you to undergo Security Clearance. The requirement for SC clearance is to have been present in the UK for at least 3 of the last 5 years. You will be asked to provide evidence of your UK footprint where you have been physically present in the UK. Failure to meet the residency requirements will result in your security clearance application being rejected.
If you require SC clearance you will need to provide evidence of the below requirements.
Checks will be made against:
- Departmental or company records (personnel files, staff reports, sick leave reports and security records)
- UK criminal records covering both spent and unspent criminal records
- Your credit and financial history with a credit reference agency
- Security Services record
- Location details
Feedback will only be provided if you attend an interview or assessment.
Security
See our vetting charter (opens in a new window).
Nationality requirements
This job is broadly open to the following groups:
- UK nationals
- nationals of Commonwealth countries who have the right to work in the UK
- nationals of the Republic of Ireland
- nationals from the EU, EEA or Switzerland with settled or pre-settled status or who apply for either status by the deadline of the European Union Settlement Scheme (EUSS) (opens in a new window)
- relevant EU, EEA, Swiss or Turkish nationals working in the Civil Service
- relevant EU, EEA, Swiss or Turkish nationals who have built up the right to work in the Civil Service
- certain family members of the relevant EU, EEA, Swiss or Turkish nationals
Working for the Civil Service
We recruit by merit on the basis of fair and open competition, as outlined in the Civil Service Commission's recruitment principles (opens in a new window).
Apply and further information
Contact point for applicants
Job contact :
Recruitment team