Lead security capability architect
Lead security capability architect
Salary: Circa £60,000 per annum (negotiable based on experience) + comprehensive benefits package
Jisc grade: TCY4 (internal use only)
Job Type: Permanent
Hours: 35 hours per week
Reports into: Head of security intelligence and capability
Working style: Hybrid - A blend of working from home and your nominated hub office. We have hubs located in London, Bristol, Manchester and Oxford.
About Jisc:
At Jisc, we're driven by a simple ambition: to use technology to transform education, research and innovation.
For more than 30 years, we've been the digital partner for the UK's education and research sectors, providing world-class networks, innovative digital services and expert guidance that help universities, colleges and research institutions thrive.
Our work supports millions of learners, educators and researchers every day, enabling everything from ground breaking discoveries and life-changing research to exceptional digital learning experiences. While many people may not realise it, the technology and services we provide help power some of the UK's most important educational and research achievements.
Join Jisc and you'll be part of a purpose-driven organisation where your ideas can have a real impact. Together, we're shaping the future of learning, research and innovation for the benefit of society.
About the Team:
Jisc’s Security Team safeguards the Janet Network whilst also sharing intelligence and advising our members to keep their own networks safe. We draw on a range of market leading solutions, combined with in-house tools, benefiting from the team's expertise in developing a service best suited to our members.
The security capability development function sits alongside the CTI and SOC teams. The CTI team gathers and analyses threat intelligence to ensure our defences are informed by current and emerging adversary activity. The SOC is provided as an Education and Research sector focused service, which requires input from both threat intelligence and a capability development function, to continue delivering detections that are ahead of the threats as well as new solutions that keep pace with member requirements.
About the role:
The Lead Security Capability Architect is a senior technical role responsible for building a function dedicated to the research and development of new security capabilities. This function will shape the future of our SOC, ensuring it remains effective, adaptive and ahead of the evolving threat landscape.
This role has a multifaceted responsibility for research, engineering and security operations. It will require a deep technical knowledge with the ability to identify strategic opportunities for improvement, translating operational requirements into workable solutions and lead the full development lifecycle, taking a solution from initial concept to operational handover.
Working closely with the CTI team and security engineers, the role will ensure that new capabilities are developed collaboratively, informed by intelligence and built to a standard that enables seamless transition into long-term operational management.
What you’ll be doing:
- Lead the end-to-end development of new security tools, integrations, automations and services.
- Oversee the full development lifecycle from requirements gathering through design, build, testing and documentation, ensuring solutions are built to a standard that enables a clean handover for long-term management.
- Work closely with SOC and CTI leadership to understand operational pain points and translate them into capability requirements.
- Engage with vendors and external partners as required during evaluation and development phases.
- Build, lead and develop the security capability function as it establishes and grows.
- Act as a point of escalation and technical authority within the team.
- Continuously assess the threat landscape, vendor market and open-source community to identify emerging tools and technologies relevant to the SOC and CTI teams.
- Evaluate new capabilities through structured proof-of-concept and pilot processes.
What we are looking for:
- Proven experience working within a security operations environment.
- Hands-on experience developing security tooling, integrations and automations.
- Experience managing or delivering projects through a structured development lifecycle.
- Demonstrable experience evaluating security technologies and making evidenced recommendations.
- Scripting and development skills.
- Knowledge of dashboard development, API integration and data pipeline development.
- Strong understanding of threat intelligence concepts and frameworks
- One or more cyber security qualifications.
Don’t meet every single requirement?
We know that sometimes people can be put off applying for a job if they think they can’t tick every box, so we encourage you to apply even if you do not meet 100% of the requirements, but if you feel this role is perfect for you. You may be just the right candidate for this or other roles!
Hybrid working:
Specific patterns for working in the office are not mandated, and the frequency of time worked in the office is agreed with your manager. Meeting in person is something we value, so you may need to travel on occasion to any of our hub offices.
Why work for us?
At Jisc, every role is meaningful, and every individual is valued. We foster a culture of continuous learning and personal growth, offering opportunities to develop new skills and make a real impact in education and research. With a strong focus on work-life balance, we embrace flexible working that prioritises outcomes over hours, empowering you to create a rhythm that energises both your professional and personal life.
Our Guiding Principles:
Jisc’s culture is powered by our four guiding principles: putting customers first, driving innovation, creating impact, and championing inclusive collaboration to deliver sustainable outcomes and shape a better future.
Discover the amazing benefits we provide! Here’s what you can look forward to:
- Flexible work pattern, which can adapt to suit your schedules and personal commitments
- 31 days annual leave (plus bank holidays) that includes three closure days over Christmas
- Buy up to an additional 5 days leave during the flexible benefits window
- Generous flexible pension schemes
- A range of wellbeing lifestyle benefits including company paid health care cash plan, mental health first aiders and support
- A company culture of continuous learning with access to thousands of LinkedIn Learning courses, and lots of resources and opportunities to support your development
- Allocated allowance of up to £250 to equip your home office
- Financial well-being support including access to preferential loan and savings plans, mortgage advice, will writing tools and support and resources to help you make the most of your money
- A wide range of discounts and cashback from retailers and big-name high-street stores
- Family friendly policies including enhanced parental, maternity and paternity and co-parental leave as well as opportunity for career breaks
- Support your volunteering with up to 3 days volunteer leave
Equity, diversity and inclusion:
Jisc believe our people make all the difference in cultivating an inclusive culture that welcomes ideas, encourages innovation, and values belonging.
We work hard to create an equitable experience for our candidates and workforce which embraces all aspects of their identity including race and ethnicity, religion and belief, sex, gender identity, sexual orientation, trans identities, age, class, disability, neurodivergence, or veteran status.
Application process:
Please let us know how we can best accommodate you throughout the recruitment process. We’re committed to making our process accessible and comfortable for everyone - just tell us what works best for you.
Interested? Don’t leave it too late to apply. We may close the vacancy early once we’ve received enough applications.
Just so you know, we review CVs as soon as we can and aim to provide an update on your application within 4 weeks of receiving it. However, you may hear from us a lot sooner, so please keep an eye out for our emails or calls!
We’re really looking forward to getting to know the real you. While we encourage the use of AI tools to help you get started on your CV or cover letter, we encourage you to review your application before submitting. Make sure it truly reflects your own voice, experiences, and personality.
If you are currently a Jisc employee, please apply through your Dayforce Employee profile.
We have a thorough background screening process that verifies the details you share with us in your CV and your application. Any inaccurate information supplied during the application stages can lead to a job offer being withdrawn.
Sponsorship:
Jisc has an active sponsor licence to recruit on a Skilled worker visa basis. Candidates wishing to apply who require sponsorship should determine the likelihood of obtaining a Certificate of Sponsorship for the role by assessing their circumstances against the relevant Home Office criteria. Jisc does not offer any financial re-imbursement towards the applicant costs, such as re-location, skilled worker visa and dependant costs or the immigration health charge.
No agencies please.