Information Security Lead – NPPV3 Cleared – Outside IR35
Information Security Lead – NPPV3 Cleared – Outside IR35
Information Security Lead – Major System Implementation Contract
Length: Initial 3 months
Start Date: ASAP
Location: Primarily Remote with occasional London office presence
Sector: Public Sector (Policing Client)
Clearance: NPPV3
Overview We’re supporting a key public sector programme in the search for an Information Security Lead to oversee the security workstream of a major system implementation. This is a hands-on leadership role requiring close collaboration with architecture, infrastructure, development, and business design teams to ensure security standards are built in from the outset.
The ideal candidate will bring strong delivery experience across complex digital programmes, ideally within secure or regulated environments. Public sector or policing experience is advantageous, but not essential.
Key Responsibilities
- Security leadership across the programme, ensuring all technical and non-technical teams align to security requirements and standards.
- Collaborate with architects and engineers to ensure secure design and implementation of the solution.
- Oversee security testing, including coordination of vulnerability assessments and penetration testing activities.
- Ensure compliance with relevant regulatory and industry standards (e.g. ISO 27001, NIST, GDPR, PSN).
- Provide expert security guidance to technical and non-technical senior stakeholders throughout the programme lifecycle.
- Support development of documentation, processes, and controls to support secure operations and future assurance.
Required Experience
- Proven track record as a Security Lead or Senior InfoSec Consultant on large-scale transformation or system implementation programmes.
- Deep knowledge of secure systems design, risk management and assurance.
- Strong understanding of security architecture principles, infrastructure, and cloud environments.
- Experience overseeing or managing security testing activities (e.g. vulnerability scans, pen testing).
- Ability to clearly communicate risk and recommendations to senior stakeholders and programme teams.
Desirable
- Experience within public sector or policing environments.
- Familiarity with policing-related standards or handling of sensitive law enforcement data.