Location: Manchester
Work Pattern: Hybrid
Duration: 7 months
Rate: £600 - £640 per day
IR35 Status: Inside IR35
Clearance: Active SC Clearance
Overview
We are seeking a Senior Business Analyst to support a Central Government Department in mapping access, authorisation, and role-based permissions across a small number of current services, with Searchlight as the primary focus. Working within an established digital service, you will analyse existing functionality and resource access controls, decomposing complex information and mapping it to strategic data mastery domains. You will engage proactively with stakeholders, Product Owners, and Business Analysts, translating business requirements into clear technical drawings and articulating findings to a wider group. This is an analytical, research-led role rather than a hands-on technical build, suited to someone comfortable conducting independent research and challenging existing practice.
Key Responsibilities
- Analyse roles, functionality, and resource access controls across a small number of current services (Searchlight being primary), mapping these to strategic data mastery domains
- Translate business requirements into clear technical drawings and documentation
- Decompose and structure complex access and authorisation information for a wider stakeholder group
- Manage and engage stakeholders, working closely with Product Owners and Business Analysts
- Abstract cross-cutting elements across services to support future authorisation and permissions strategy
Essential Skills
- Strong analytical skills, with proven ability to decompose and structure complex functional and access-control information
- Ability to work proactively and independently, conducting research and gathering evidence without close direction
- Strong stakeholder management and communication skills, able to articulate findings clearly to a wider group
- Previous experience within the UK Public Sector, ideally supporting Central Government digital services
- Active SC Clearance
Nice To Have
- Knowledge of techniques for modelling and enforcing authorisation and permissions (RBAC/ABAC, token scopes, IDP/group memberships, policy tooling, coarse vs fine-grained and row-level/aggregation vs attribution)
- High-level knowledge of Identity Providers (eg Entra), OAuth2, and policy decision tools such as OPA
- Willingness to learn business needs versus wants, not just technology, and to challenge existing practice