Security Assurance Manager at Ministry of Defence, Bath, 3 Months, £Contract Rate

Contract Description

The Ministry of Defence (MOD) is a central government department with a mission to protect our country and provide the ultimate guarantee of its security and independence, as well as helping to protect its values and interests abroad.

 

The MOD is one of the biggest public procurement organisations in Europe and the single largest customer for UK industry. It currently manages approximately £20 billion of spend on capital investments in equipment and infrastructure every year. Over the next decade the MOD is committed to spending over £190 billion on equipment and support. The MOD's customers include both the armed forces and national security agencies, and it has a diverse range of requirements, including military fighting vehicles, education services, nuclear submarines and facilities management.

 

The MOD's aim is to provide its armed forces with the best capabilities to enable them to protect the UK's security and advance national interests, both now and in the long term.

 

To do this the MOD has an annual budget of almost £53 billion and a workforce comprising 197,000 people. of which 54,000 are civilians working for the UK MOD.

 

The work really matters; the MOD offers a range of engaging roles which have a direct impact on the quality of services they provide, in many locations across the UK. We support teams working in HR, Primary Health Care, Corporate Services, and many others.

 

As a Security Assurance Manager, your main responsibilities will be:

 

Essential:

Key Responsibilities

  • Provide security oversight and assurance for CPA solutions delivered on the ServiceNow Now Platform.
  • Review and validate the design and implementation of secure automation solutions across Official and future Secret environments.
  • Ensure security-by-design principles are applied throughout the solution lifecycle.
  • Maintain and enhance CPA security documentation, standards, and guidance.
  • Assess and validate security approaches for new technologies and platform capabilities.
  • Recommend appropriate security controls in line with organisational security requirements and business objectives.
  • Conduct security risk assessments and evaluate the impact of proposed changes.
  • Advise on risk treatment options and determine whether identified risks fall within organisational risk tolerance.
  • Assess the impact of security vulnerabilities on existing and planned solutions.
  • Communicate security risks, control requirements, and design decisions to both technical and non-technical stakeholders.
  • Provide specialist security advice to project teams, architects, developers, and customers.
  • Support customer onboarding activities by reviewing and assuring security requirements.
  • Collaborate with wider security, governance, and technology teams to ensure compliance with security policies and standards.
  • Contribute to the ongoing development and maturity of the CPA security capability.

Essential Skills and Experience

  • Proven experience in Cyber Security, Security Architecture, Security Assurance, or Information Security roles.
  • Strong understanding of secure solution design and security architecture principles.
  • Experience conducting security risk assessments and providing risk-based recommendations.
  • Knowledge of security controls, governance frameworks, and assurance processes.
  • Ability to assess vulnerabilities and articulate their business and technical impact.
  • Experience producing and maintaining security documentation and design artefacts.
  • Strong stakeholder management and communication skills.
  • Ability to influence security decisions across diverse technical and business teams.

Desirable Skills and Experience

  • Experience working with ServiceNow or other enterprise workflow and automation platforms.
  • Experience supporting highly regulated, government, defence, or secure environments.
  • Knowledge of cloud security and platform security controls.
  • Understanding of accreditation, assurance, and secure environment requirements.
  • Familiarity with DevSecOps and secure development practices.

 

 

Please be aware that this role can only be worked within the UK and not Overseas.

 

Disability Confident 

 

As a member of the Disability Confident Scheme, the MOD guarantees to interview all candidates who have a disability and who meet all the essential criteria for the vacancy. In cases where we have a high volume of candidates who have a disability who meet all the essential criteria, we will interview the best candidates from within that group.

 

This scheme encourages candidates with a disability and/or neurodivergence to apply. In exceptional circumstances, we may also need to apply the desirable criteria in our shortlisting process which may include holding active security clearance.

 

Armed Forces Covenant

 

The MOD guarantees to interview veterans or spouses / partners of military personnel who meet all the essential criteria for the vacancy. In cases where we have a high volume of ex-military candidates / military spouses or partners, who meet all of the essential criteria, we will interview the best candidates from within that group. In exceptional circumstances, we may also need to apply the desirable criteria in our shortlisting process which may include holding active security clearance.

 

In applying for this role, you acknowledge the following "this role falls in scope of the Off Payroll Working in the Public Sector legislation. Any rates of payment quoted will reflect the gross rate per day for the assignment and will be subject to appropriate taxes and statutory costs. As such the payment to the intermediary and your income resulting from this contract will be different.