Security Assurance Lead - Secure, on-site Hampshire

DXC Technology

England

On-site

GBP 55,000 - 75,000

Full time

8 days ago
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

DXC Technology is seeking a Security Assurance Analyst to lead security design review and assessment for defence and aerospace IT programmes. The role requires strong security knowledge, risk assessment capabilities, and the ability to work with technical architects and customer teams.

Onsite in Hampshire, candidates must meet UK residency and security eligibility. The successful candidate will conduct detailed security reviews, verify compliance with Defence Security Policy and ITAR, and

Qualifications

  • Experience in information security including security assessment or assurance type role.
  • Demonstrated experience conducting security design reviews and assessments.
  • Strong background in defence, aerospace or government security programmes.
  • Experience with security certification and accreditation processes.
  • Experience managing a team in a security/JDT function.
  • Working knowledge of IT architecture and design principles.

Responsibilities

  • Conduct detailed security reviews of IT architecture and design documentation.
  • Assess security controls and identify gaps against security requirements.
  • Evaluate threat models and security assumptions underlying IT designs.
  • Review security specifications for completeness and compliance.
  • Identify residual security risks and recommend mitigation strategies.
  • Support authority leads and advise third parties.
  • Verify IT designs comply with Defence Security Policy and Classification Guides.
  • Assess adherence to ITAR regulations and export control requirements.
  • Review security controls against IS1 (IS1A) and other security standards.
  • Validate data handling and classification compliance.
  • Ensure personnel security and vetting requirements are addressed.
  • Participate actively in joint design team meetings and architecture workshops.
  • Provide security input to infrastructure, network and application architecture decisions.
  • Review proposed solutions from security perspective and recommend alternatives.
  • Challenge assumptions and help identify security risks early in design phase.
  • Support customer security decision-making through technical analysis.
  • Prepare detailed security assessment reports documenting findings and recommendations.
  • Document security control specifications and implementation guidance.
  • Create security assessment matrices and compliance traceability matrices.
  • Provide executive summaries of security findings for stakeholder communication.
  • Maintain security documentation for compliance and audit purposes.
  • Conduct security risk assessments using appropriate risk methodologies.
  • Develop risk matrices and prioritise risks based on likelihood and impact.
  • Recommend security controls and mitigation strategies for identified risks.
  • Track risk mitigation and provide assurance of control implementation.
  • Validate implementation of recommended security controls.
  • Review security test plans and validation approaches.
  • Provide assurance that security controls operate effectively.
  • Support security certification and accreditation activities.
  • Document security assurance evidence for compliance.
  • Communicate security findings and recommendations clearly to technical and non-technical stakeholders.
  • Facilitate security discussions between design team and customer security teams.
  • Explain complex security concepts in accessible language.
  • Support customer understanding of security requirements and implications.

Skills

Information security experience
Security design reviews
Defence/aerospace/government security
Security certification & accreditation
Team leadership in security/JDT
IT architecture & design principles

Job description

DXC Technology is committed to building diverse, inclusive teams. We welcome applications from all backgrounds and particularly encourage interest from women, underrepresented groups, and neurodivergent candidates. We offer reasonable adjustments throughout the hiring process and are dedicated to creating a supportive, accessible environment for everyone.

Security Assurance Analyst

Location: Hampshire (onsite 5 days per week)

Due to the nature of the work and the customers we support, the successful candidate must be eligible to meet UK Government and contractual personnel security requirements, including the applicable residency requirements for the role, and have the right to work in the United Kingdom. Some roles may also be subject to nationality requirements where these are necessary to meet UK Government or contractual security obligations.

The Security Assurance Lead (Joint Design Team) leads security design review, assessment and assurance for defence and aerospace IT programmes. Providing technical security guidance into joint design teams, you will conduct security assessments of proposed IT solutions, ensure security compliance, identify security risks, and recommend security controls. This role requires strong security knowledge, analytical capabilities and the ability to work collaboratively with technical architects and customer teams.

Key Responsibilities
Security Design Review & Assessment
  • Conduct detailed security reviews of IT architecture and design documentation.
  • Assess security controls and identify gaps against security requirements.
  • Evaluate threat models and security assumptions underlying IT designs.
  • Review security specifications for completeness and compliance.
  • Identify residual security risks and recommend mitigation strategies.
  • Support authority leads and advise third parties.
Compliance & Standards Verification
  • Verify IT designs comply with Defence Security Policy and Classification Guides.
  • Assess adherence to ITAR regulations and export control requirements.
  • Review security controls against IS1 (IS1A) and other security standards.
  • Validate data handling and classification compliance.
  • Ensure personnel security and vetting requirements are addressed.
Joint Design Team Collaboration
  • Participate actively in joint design team meetings and architecture workshops.
  • Provide security input to infrastructure, network and application architecture decisions.
  • Review proposed solutions from security perspective and recommend alternatives.
  • Challenge assumptions and help identify security risks early in design phase.
  • Support customer security decision-making through technical analysis.
Documentation & Reporting
  • Prepare detailed security assessment reports documenting findings and recommendations.
  • Document security control specifications and implementation guidance.
  • Create security assessment matrices and compliance traceability matrices.
  • Provide executive summaries of security findings for stakeholder communication.
  • Maintain security documentation for compliance and audit purposes.
Risk Analysis & Mitigation Planning
  • Conduct security risk assessments using appropriate risk methodologies.
  • Develop risk matrices and prioritise risks based on likelihood and impact.
  • Recommend security controls and mitigation strategies for identified risks.
  • Track risk mitigation and provide assurance of control implementation.
Security Control Validation
  • Validate implementation of recommended security controls.
  • Review security test plans and validation approaches.
  • Provide assurance that security controls operate effectively.
  • Support security certification and accreditation activities.
  • Document security assurance evidence for compliance.
Stakeholder Communication
  • Communicate security findings and recommendations clearly to technical and non-technical stakeholders.
  • Facilitate security discussions between design team and customer security teams.
  • Explain complex security concepts in accessible language.
  • Support customer understanding of security requirements and implications.
What You'll Bring
  • Experience in information security including security assessment or assurance type role.
  • Demonstrated experience conducting security design reviews and assessments.
  • Strong background in defence, aerospace or government security programmes.
  • Experience with security certification and accreditation processes.
  • Experience managing a team in a security/JDT function.
  • Working knowledge of IT architecture and design principles.
Technical Knowledge
  • Comprehensive understanding of IT security controls and security frameworks.
  • Strong knowledge of network, infrastructure, application and data security.
  • Understanding of threat modelling and risk assessment methodologies.
  • Knowledge of ITAR regulations and export control requirements.
  • Understanding of security standards (ISO 27001, NIST CSF, etc.).
  • Practical knowledge of common IT architectures and technologies.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Assurance Lead - Secure, on-site Hampshire
Security Assurance Lead - Secure, on-site Hampshire

DXC Technology Inc. • United Kingdom

Remote
GBP 70,000 - 110,000
Technical Security Architect - Secure, on site Hampshire
Technical Security Architect - Secure, on site Hampshire

DXC Technology • England

On-site
GBP 90,000 - 120,000
Security Assurance Lead, Defence & Aerospace Design
Security Assurance Lead, Defence & Aerospace Design

DXC Technology • England

On-site
GBP 55,000 - 75,000
Defence IT Security Assurance Lead
Defence IT Security Assurance Lead

DXC Technology Inc. • United Kingdom

Remote
GBP 70,000 - 110,000
Security Architect - DV Cleared
Security Architect - DV Cleared

Sanderson Government and Defence • Farnborough

On-site
GBP 70,000 - 85,000
Enhanced pension
Private medical insurance
Flexible working
+2
Security Cyber Risk & Compliance Specialist
Security Cyber Risk & Compliance Specialist

DXC Technology • Farnborough

On-site
GBP 60,000 - 90,000
Security Architect, Farnborough
Security Architect, Farnborough

Cyber UK • Farnborough

On-site
GBP 90,000 - 130,000
Competitive salary
Enhanced pension
Flexible working
Information & Cybersecurity Assurance Manager
Information & Cybersecurity Assurance Manager

Standard 8 Recruitment Ltd • Guildford

On-site
GBP 90,000 - 130,000
IDAM Architect - Secure, on-site Hampshire
IDAM Architect - Secure, on-site Hampshire

DXC Technology • Farnborough

On-site
GBP 80,000 - 120,000
Security Architect - DV Cleared
Security Architect - DV Cleared

Sanderson Government & Defence • Farnborough

On-site
GBP 70,000 - 85,000
Competitive salary
Private medical insurance
Enhanced pension
+1