cover image
UK Health Security Agency

Head of Protective Security

On site

London, United Kingdom

Freelance

02-04-2025

Job Specifications

Birmingham, Chilton, Leeds, Liverpool, London (Canary Wharf or Colindale), Porton (Core HQs and Scientific Campus’)

Job Summary

The Division of Workplace, and Health and Safety is responsible for leading and transforming the delivery of UKHSA’s workplace services, including asset, estate and office management, protective security, occupational health and health and safety. The Protective Security Team provides professional expert support, training, guidance and advice on all matters relating to protective security, to facilitate and ensure compliance with relevant legislation, and to prevent incidents and protect UKHSA employees.

UKHSA operates nationally and internationally, including at its scientific campuses at Chilton, Colindale and Porton Down. Within the working remit of UKHSA key aspects of our activities include research and operational health protection work with the most dangerous pathogens and associated security requirements and health protection operations teams across the country. More generally, our expert staff work with and advise a range of government partners on health security matters; physical and personnel security is therefore of paramount importance to the organisation.

The role will be the head of the security profession within UKHSA and the focal point into the Government Security Group for UKHSA. The Head of Protective Security has direct line management responsibilities for 4 grade 7 posts, (Personnel Security, Physical Security, Security Education & Awareness and Threat Analyst).

We pride ourselves as being an employer of choice, where Everyone Matters promoting equality of opportunity to actively encourage applications from everyone, including groups currently underrepresented in our workforce.

UKHSA ethos is to be an inclusive organisation for all our staff and stakeholders. To create, nurture and sustain an inclusive culture, where differences drive innovative solutions to meet the needs of our workforce and wider communities. We do this through celebrating and protecting differences by removing barriers and promoting equity and equality of opportunity for all.

Job Description

Specific, key duties and responsibilities will include:

Corporate lead for the physical and personnel security strategy, with a corporate link to the Audit & Risk Committee of the UKHSA Advisory Board and, when required, the CEO and UKHSA’s Executive Committee, the senior executive decision-making body.
Evaluating and managing risk, including trend analysis and data interpretation Overseeing UKHSA alignment to security standards and policies.
Development and implementation of measures in relation to counter-terrorism to protect UKHSA staff and assets as appropriate to their workplace circumstances.
Provision of advice on physical and personnel security to UKHSA management and staff.
Meeting security monitoring and assurance requirements such as the Department Security Health Check, and utilising intelligence and information from those processes to identify areas for improvement and achievement of government security standards.
Acting as an intelligent customer, establishing the need for and requesting and monitoring services from the Cluster Security Unit and Government Security Centres, and supporting the Government Chief Security Officer through governance structures to ensure security requirements are being met.
Responsible for security incident management design and implementation, working with other relevant stakeholders across UKHSA.

This is not an exhaustive list please see Job description document for full list of duties

Reporting to the Deputy Director of Workplace and Health and Safety, you will be responsible for leadership and direction of the Protective Security team, maintaining requirements for our highly regulated Science Estate, and across our wider GB portfolio of sites and activities.

Working Closely With Colleagues Across UKHSA, You Will:

Support us in delivering effective security for UKHSA. You will be leading on the management and mitigation of security risks and incidents physical and personnel issues holistically.
Be responsible for mitigating security threats and for ensuring continuous improvement of statutory security compliance applicable to UKHSA.
Support business delivery leads and colleagues with their responsibilities, helping to build and embed a strong security culture within UKHSA and associated partners.
Working collaboratively with Cabinet Office Government Security Group, the Department of Health and Social Care’s Senior Security Adviser external partners including local stakeholder manager for interactions with the Police, especially CTSAs (and oversight of CTSA interactions in other regions for example, via local site security managers at UKHSA’s scientific campuses).
To work with and provide expert guidance and advice on physical and personnel security issues for any future proposals for the development of the Science Hub Programme.
Acting as a security professional, championing and sharing best practice through the community and embedding government security culture within UKHS, across technology, operations and suppliers which includes the oversight and management of ROSA.

This is an exciting opportunity to join us and play a significant part in ensuring that we meet our wide-ranging obligations for UK biosecurity. The role is also part of the wider Government Security Profession; a community with a mandate to establish transformation, and responsibility for an entirely new security model to protect the UK.

The post holder should be willing to pursue a program of continuous professional development and actively maintain a high level of awareness of best practice and relevant legislation. You must also be comfortable to work flexibly and operate in a highly evolving environment while UKHSA continues its transformation journey and defines its organisational culture.

Working Closely With Colleagues Across UKHSA, You Will:

Support us in delivering effective security for UKHSA. You will be leading on the management and mitigation of security risks and incidents physical and personnel issues holistically.
Be responsible for mitigating security threats and for ensuring continuous improvement of statutory security compliance applicable to UKHSA.
Support business delivery leads and colleagues with their responsibilities, helping to build and embed a strong security culture within UKHSA and associated partners.
Working collaboratively with Cabinet Office Government Security Group, the Department of Health and Social Care’s Senior Security Adviser external partners including local stakeholder manager for interactions with the Police, especially CTSAs (and oversight of CTSA interactions in other regions for example, via local site security managers at UKHSA’s scientific campuses).
To work with and provide expert guidance and advice on physical and personnel security issues for any future proposals for the develo...

About the Company

The UK Health Security Agency (UKHSA) is an executive agency of the Department of Health and Social Care. The UK Health Security Agency (UKHSA) is responsible for planning, preventing and responding to external health threats, and providing intellectual, scientific and operational leadership at national and local level, as well as on the global stage. Know more

Related Jobs

Company background Company brand
Company Name
Excelerate
Job Title
Azure Cloud Security Consultant
Job Description
Position: Azure Cloud Security Consultant Location: Fully Remote (UK-based) Salary: Negotiable starting at £1,105 per week Employment Type: Contract (Outside IR35) About the Role We are seeking an Azure Cloud Security Consultant to design, implement, and manage secure cloud environments supporting critical infrastructure transformation projects. You will play a pivotal role in ensuring security, compliance, and resilience for smart cities, sustainable energy platforms, and intelligent transportation systems. This position requires deep expertise in Azure security solutions, risk assessment, and cloud architecture. Responsibilities Deploy and manage secure Azure-based architectures for InfraTech® projects. Implement and oversee Azure Defender, Security Center, and advanced threat protection solutions. Configure Azure AD, MFA, Conditional Access, and Privileged Identity Management. Conduct risk assessments, threat modeling, and GDPR compliance audits. Secure Azure networking, including VNets, NSGs, Azure Firewall, and VPN Gateways. Integrate security into CI/CD pipelines using Azure DevOps, Terraform, and Bicep. Manage encryption, data protection, and Azure Key Vault access controls. Lead incident response, cloud forensics, and remediation efforts. Required Skills & Experience 5+ years of experience in cloud security, with a focus on Microsoft Azure. Strong knowledge of Azure IAM, network security, and regulatory compliance. Proven experience securing multi-cloud or hybrid environments. Ability to engage with stakeholders and collaborate within technical teams. AZ-500 and relevant cloud security certifications are advantageous Please note you must hold a UK Passport and eligibility for Security Clearance is essential. Why Join Us? 100% remote work with flexible hours (core hours 10 AM – 4 PM). Work on high-impact infrastructure projects in smart technology, energy, and transportation. Access to ongoing training and professional development in cloud security. Opportunities for advancement to Lead Consultant or Cloud Security Architect. If you have a passion for Azure security, risk mitigation, and cloud architecture, apply today!
United Kingdom
Remote
Freelance
04-04-2025
Company background Company brand
Company Name
X4 Technology
Job Title
Security Architect
Job Description
Job Title: Security Architect Job Type: Contract Location: Corsham Rate: £550-600/day (Outside IR35) Security Architect - Responsibilities: Work with Solution Design Authority to provide security input into the development and refinement the technology roadmap HLD/LLD of security solutions Determine the interactions between the infrastructure, platform, and the software environment from a security perspective Provide security input into developing, architecting, and documenting infrastructure solutions for the Development team to implement Identifying vulnerabilities and mitigation strategies for these Review a3rd Party services for security compliance to the MoD policy and industry best practices Help to define and document security elements of the Architectural runway, setting the direction for Platform and cyber teams Security Architect - Required Experience: Active SC Clearance Solution design of secure hardware and software solutions Previous experience delivering on complex, large scale programmes Expert knowledge of applying security architectural expertise across the client's technical environment, including Windows Server, VMware, VMware's VDI, Exchange etc. Security architecture expertise within MoD environments NCSC guidelines Interviews: April 2025 Start Date: May 2025 How to Apply: Apply to Gary Hargreaves at X4 Technology to learn more about the role or connect with me on LinkedIn to hear about regular job updates available with X4 Technology
Corsham, United Kingdom
On site
Freelance
04-04-2025
Company background Company brand
Company Name
Constor Solutions
Job Title
Solution Architect – Computer, storage and Networking
Job Description
Computer, Storage and Networking At Constor we strongly believe in customer first approach and go an extra mile to keep them happy with our technical capabilities. The integrity ,quality, and commitment of our employees are Crucial factors in our company’s Overall growth, market existence and our ability to help our customers puts us ahead of the competition. Our process of hiring the best talents and grooming them to grow both professionally and personally ensures that we grow and thrive both as a company along with the people joining us in our journey. Constor is currently looking for a Solution Architect - Compute, storage and Networking for our growing team based in the United Kingdom Overview The Solution Architect- Compute, storage and Networking owns, creates, influences and augments the Pre-sales, Professional managed services solutions for Constor Solutions Mid market, Corporate and Public segment customers who are in the their process of Business transformation by applying the Industry trend of Digital transformation for which the key element being modernising their IT infrastructure. Compute, Storage and Networking being the key for such transformation we want the Solution Architect to be part of our solution designing team and is accountable and responsible for Positioning the right end to end solution, designing the key elements related to such solution in addressing the customer challenges and also providing the right professional and managed services. The Solutions Architect will also be closely working with our professional services team and the project management team to ensure that the project is implemented successfully till its handed over to the customer with a proper knowledge transfer. He will also be the go to person incase the managed services team need any question on the design implementation of our existing customer. The design and solution proposed to the customers should not only competitive, aggressive and superior in technologically, but also should be able to help the customers achieve their business outcomes along with adhering to any compliance directives required by the region or the company themselves. Role Responsibilities Strengthen Constor services business development efforts by collaborating and providing the required inputs into new opportunities to facilitate the designed solution to further create and enhance the scope of the solution to create and enhance Constor’s Compute, Storage, Networking and all the supporting elements of the datacenter to build such an environment for the customer along with the required professional and managed services. Have a strong hold on all the market offerings on Servers, Storage and network offering of different vendors like Dell EMC, HPE, Cisco, Netapp, Pure storage, Huawei along with technologies such as Hypervisors like vSPhere, Hyper-v, KVM, Citrix etc. in both designing, demonstrating and presenting as a solution to the customer Working closely with the other solution Architects and sales to deliver accurate costing and pricing techniques, based on the Constor costing guidelines and templates Ensure that we do a proper analysis of the existing customer environment and the challenges they are facing. Educating the customer with the current market trends on technology as a whole and should not only be able to provide Servers, storage and Networking as a solution but should also be able to attach the other hardware and software elements like storage, back up, SDS, Cloud DR etc into design in an optimum way to accomplish the expected levels of functionality , quality and compliance Should be able to articulate the benefits of Servers, storage and networking to the customers and position the value proposition efficiently. Promote existing and new capabilities of the solutions and the market trends to the internal group for them to be able to have confident conversations with the customers and acquire more customers. Build opportunity level cost models and support benchmarking efforts against market pricing, positioning strategy and partner strategy Keep well-informed of new technologies and products emerging in the Server, storage, networking, backup and cloud offerings Assist and coordinate collaborative dialog with sales, pre-sales, partner teams and professional services teams, to provide consolidated input for relevant corporate stakeholders as they relate to new capabilities and repeatable solutions Explore and enable automated sales and solution design methodologies for new and existing capabilities and service offerings. Should be able to demonstrate the products onsite or over a remote session which are part of the solution proposed wherever necessary Must be exceptional with all the necessary documentation related to designs, proposals, Visio, HLD and LLD Be a trusted advisor to the customer Key Skills Proven experience in IT Outsourcing and Managed Services delivery, solution design / pre-sales, practice, product management or a corporate leadership role in professional managed services solution design or consulting, with bachelor’s degree, or equivalent; In-depth experience in creating and managing the creation of infrastructure outsourcing solutions and cost models; This includes analysing the client business requirements, RFP asks, analysing client volumes and tickets, sizing, solution design, costing and rolling out required solution documents / artifacts as needed for each of the pursuits Technical thought leadership, organisational agility and ability to communicate affectively within a global team; Proven Server, storage and networking technical expertise in the following technology / services areas: Data Center technologies and services including DC Migration, colocation, DC consolidation, DC managed services and Operations, Backup, Storage, Virtualisation, HCI and Cloud related technologies (both Private and all Public Cloud Domains esp. Azure, AWS and Google). Hands-on working experience and solution design experience on various Server, Storage and networking solutions. In depth knowledge of services support models and related interdependencies in support of a managed infrastructure ecosystem; Strategic thinker with technical background or related experience who can blend technology and business strategy to develop compelling solutions in server, storage and networking solutions along with backup, Virtualisation, DR and Cloud domains Expert understanding of the impacts of emerging business and technology trends as they relate to Storage & Backup services and their implications for potential clients; Extensive industry knowledge in creating and packaging various IT services offerings, small, medium and large multi-year support services for professional and managed infrastructure services; Ability to take contractual transition and transformational requirements and include in final solution and contract. Industry recognised technical certification(s) in one or mo...
London, United Kingdom
On site
Freelance
03-04-2025
Company background Company brand
Company Name
TieTalent
Job Title
Cyber Security Consultant
Job Description
About IT Security Officer - London 12 Month Contract Outside IR35 Day rate up to £450 IT Security Officer for a leading client based in London, fully remote work is available. My client is currently seeking a IT Security officer to come on board to lead the ISO 27001 compliance and certification process, ensuring the security and resilience of our network and information systems. In this role, you will play a crucial part in establishing, implementing, maintaining, and continuously improving our Information Security Management System (ISMS) to protect client data and critical business information. Key Skills And Responsibilities, Previous IT Security officer experience Develop and implement a comprehensive ISMS in line with ISO 27001 standards. Ensure the confidentiality, integrity, and availability of client data and information systems. Conduct risk assessments and apply a risk management process to mitigate cyber threats. Provide senior management with confidence that cyber risks are effectively managed. Implement security controls to mitigate threats to networks and information systems that support essential services. Develop incident response and business continuity plans to ensure the continued operation of critical services. Lead internal audits and security assessments to measure compliance and identify areas for improvement. Implement Cyber Security Controls including those defined in ISO 27001 Standard; Identify and protect critical information and communication technology systems and data from cyber threats; Implement risk management processes to manage cyber risks and to mitigate threats to the critical infrastructure and services Conduct risk assessment including an asset-based and scenario based; Update and maintain asset and risk register; Implement an information security risk treatment plan (remediation measures / controls) to prevent, or reduce, undesired effects; Continual improvement to effectively manage risks; Mitigate the risks identified using the existing technology and processes and supplementing with new technology/process where applicable; Implement Information security polices, and Standards; Define and implement the procedures/process as required by ISO 27001 Standard and existing Information Security Policies/Standards; and Engage with stakeholders across IT and business to define and implement the control Interested? Please submit your updated CV to (url removed) for immediate consideration. Not interested? Do you know someone who might be a perfect fit for this role? Refer a friend and earn £250 worth of vouchers! Crimson is acting as an employment agency regarding this vacancy Nice-to-have skills ISO 27001 Risk Management Asset Management City of London, England Work experience Cyber Security Specialist Pentester Languages English
London, United Kingdom
On site
Freelance
04-04-2025