Principal Enterprise Security Architect

National Physical Laboratory
Teddington, Greater London
  • About the Role

  • The National Physical Laboratory (NPL) is seeking a Principal Enterprise Security Architect to lead cyber security design and assurance for national-scale Position, Navigation, and Timing (PNT) programmes; requiring expertise in enterprise security architecture frameworks, cloud and IT technologies, risk mitigation, and relevant certifications such as CISSP or CISM, while collaborating with senior stakeholders and ensuring alignment with NPL’s security strategy and compliance with government and industry standards.

    This role will be responsible for the overall cyber security design, development and delivery across strategic PNT programmes. The role will be responsible for delivering assurance relating to activities of high complexity and risk, making decisions that will enable NPL to achieve its goals within its risk appetite.

    The Principal Enterprise Security Architect will lead the Cyber Security pillar within the PNT Technical Design Authority, overseeing the implementation of solutions to ensure technology and digital solutions align with the enterprise security roadmap.

    This specialist position will be report into the head of NPL’s Cyber Security Team, part of the NPL CIO function helping to provide all of NPL with day-to-day information risk consultancy, advice, and guidance. It will also support with prioritisation of risk mitigation activities, tracking of risk tolerance and reporting while supporting the design and implementation of the assurance framework.

    Key Responsibilities:
    • Lead the cyber security architecture and design function across NPL’s PNT programmes to deliver at National Scale
    • To oversee the design, delivery, and running of Cyber Operational capability that is dedicated for NPL's PNT programmes
    • Develop an enterprise architecture and guiding principles for the PNT programmes which aligns with the NPL’s security strategy
    • Communicate with senior stakeholders (across NPL and UK Government) and be responsible for defining the vision, principles and strategy for security architecture.
    • Work alongside the Enterprise Architecture team to provide a consolidated and aligned architectural position to guide NPL in the safe use of IT technologies and systems
    • Lead the technical cyber security design of systems and services across multiple PNT programmes and projects / technologies, up to an organisational or inter-organisational level
    • Make and influence important business and architectural decisions
    • Research, identify, validate and adopt new security technologies and methodologies that help NPL achieve its business objectives
    • Research and apply innovative security architecture solutions to new or existing problems, and be able to justify and communicate design decisions
    • Lead the engagement with NPL’s customers within both the UK Government and the private sector on security risk and architectural decisions
    • Understand the impact of decisions, balancing requirements and deciding between approaches based on the business requirements and risk appetite of NPL
    • Identify and communicate current and emerging threats, whilst designing security architecture elements to provide mitigation against those threats
    • Maintain an understanding of the emerging threat profile, work with the wider team to contextualise this threat in terms of NPL’s own business/delivered programmes and ultimately develop a prioritised mitigation strategy. Develop a security posture which delivers this this mitigation through both technical implementation, operating procedures and business processes
  • About You

  • Essential:

    • Referenceable, in-depth knowledge and experience in Cyber Security and IT; including business process design
    • Ability to work with Enterprise Security Architecture frameworks (SABSA / TOGAF)
    • Designing and constructing business processes, functions and organizational structures using appropriate tools/modelling languages
    • Significant knowledge of cloud architecture and integration technologies 
    • Understanding of IT, networking and virtualisation technologies 
    • Proven ability to define architecture roadmaps, associated strategies, including design analysis.
    • In-depth assessment of IT systems, cloud offerings (IaaS, PaaS and SaaS), services and IT Security controls to provide an independent view of their compliance and effectiveness with Security Policy, IT Security standards and external regulatory requirements.
    • Assessing architectural designs to determine whether the relevant IT Security controls have been identified in line with business objectives and risk mitigation.
    • Experience of cross-security domain approaches and solutions
    • A working knowledge of IT Security risk assessment processes and ability to identify a proportionate set of IT Security controls, aligned with business objectives.

    • Excellent communicator, verbal and written, with the ability to explain complex issues to a variety of stakeholders; technical and non-technical.

    Desirable:

    • Secure delivery of scale national infrastructure and subsequent managed service; including the ability to design and build practical security infrastructure within this environment, based on a contextualised understanding of risk.
    • Experience of operating in Critical National Infrastructure (CNI) and the requirements around cyber security and operational resilience
    • Understanding of threats in a government, mission and critical national infrastructure environments.
    • Analysis, creation and compilation of relevant documentation determining the compliance level of systems and services, technical security controls with applicable certification, accreditation, and internal policy requirements
    • Stakeholder engagement; promoting a mind-set of developing secure systems, transferring knowledge of security standards / processes and acting as a subject matter expert (SME)
    • Experience of leading and mentoring colleagues

    • Ability to work in small teams, across highly-specialised technology areas with diverse projects

    Essential Cyber Security Certifications:


    One of the following:

    - Certified Information Security Systems Professional (CISSP)

    - SABSA Chartered Security Architect (SCF)

    - Certified Information Security Manager (CISM)

    Two or more of the following certifications (or equivalent):


    - CompTIA Security+

    - Certified Cloud Security Professional (CCSP)

    - Systems Security Certified Practitioner (SSCP)

    - GIAC Security Essentials Certification (GSEC)

    - Certified Ethical Hacker (CEH)

    - Certified in Risk and Information Systems Control (CRISC)

    - ISO 27001 Lead Auditor

    - ISO 27001 Lead Implementer

    - Certified Information Systems Auditor (CISA)


    We actively recruit citizens of all backgrounds, but the nature of our work in specific departments means that nationality, residency and security requirements can be more tightly defined than others. You will be asked about this throughout the recruitment process. To work at NPL, you will need to obtain BPSS security clearance.

    However, to work in this role in the Time & Frequency department, you will need to have an SC clearance with no restrictions, or you must have the ability to obtain an SC clearance.

    Please note: Applications will be reviewed, and interviews conducted throughout the duration of this advert therefore we may at any time bring the closing date forward. We encourage all interested applicants to apply as soon as practical.
  • About Us

  • The National Physical Laboratory (NPL) is a world-leading centre of excellence that provides cutting-edge measurement science, engineering and technology to underpin prosperity and quality of life in the UK.

    NPL and DSIT have strong commitments to diversity and equality of opportunity, and welcome applications from candidates irrespective of their background, gender, race, sexual orientation, religion, or age, providing they meet the required criteria. Applications from women, disabled and black, Asian and minority ethnic candidates in particular are encouraged. All disabled candidates (as defined by the Equality Act 2010) who satisfy the minimum criteria for the role will be guaranteed an interview under the Disability Confident Scheme.

    At NPL, we believe our success is a result of the diversity and talent of our people. We strive to nurture and respect individuals to ensure everyone feels valued by treating everyone on the basis of their own individual merits and abilities regardless of their own or perceived identity, as part of our commitment to diversity & inclusion, we hold memberships and accreditations to ensure we’re creating an environment where all our colleagues feel supported and welcome, please see our Diversity & Inclusion page.

    We are committed to the health and well-being of our employees. Flexible working and social activities are embedded in our culture to create a positive work-life balance, along with a broad range of benefits . Our values are at the heart of what we do, and they shape the way we interact, develop our people and celebrate success.

    To ensure everyone has an equal chance, we’re always willing to make reasonable adjustments to the recruitment process. If you would like to discuss, please contact us.

Posted 2026-02-03

Recommended Jobs

Sales Associate - New Bond Street

Chloé
London

Sales Associate – New Bond Street HOW WILL YOU MAKE AN IMPACT? A Chloe Stylist is an ambassador of the maison, in charge of welcoming every guest into the Chloe family. They are a trustworthy …

View Details
Posted 2025-11-03

Procurement Manager

tms
London

TEAM: EU Sourcing - Packaging Category Services CLIENTS: Portfolio REPORTING TO: VP, Indirect Category Management ABOUT US tms unites technology, marketing, and sourcing to drive trans…

View Details
Posted 2025-12-15

Band 5 Locum Cardiac Physiologist - Denmark Hill

Pulse
London

Role: Locum Cardiac Physiologist  Banding: Band 5 Location: Denmark Hill Start Date: ASAP Rate: £20 – £23 per hour  Duration: Ongoing Working hours: Full-time  About the role: …

View Details
Posted 2025-07-31

Site Manager - Grammar School, Merton

Marchant Recruitment
Merton, Greater London

Site Manager – Grammar School, Merton Location: Merton Contract: Full-time, Permanent Salary: Competitive Start Date: January 2026 A prestigious grammar school in Merton is seekin…

View Details
Posted 2025-11-25

Assistant Merchandiser (Hair, Body, Sun)

Space NK
London

If you love beauty, you’re in the right place. As the ultimate curator of over 100 of the most in-demand, highly innovative and boundary-pushing beauty brands, we are the go-to destination for wor…

View Details
Posted 2026-01-17

Trading Quantitative Modeller

SmartestEnergy
London

This is a genuinely exciting time to join our Trading Team as we continue to expand - be a part of our success story in 2025 and beyond. As part of a small team, you will develop analytical tools …

View Details
Posted 2025-12-18

Business Impact Manager Defense and Security, Global

Marsh McLennan
London

Company: Oliver Wyman Description: At Oliver Wyman a Marsh (NYSE: MRSH) business we bring deep industry insight bold innovation and a collaborative approach that cuts through complexity to…

View Details
Posted 2026-01-31

Experienced Electricians

RecruitedUK
Marylebone, Greater London

We have an amazing opportunity for an experienced Electrician to work for one of the country's leading training providers. Sharing your knowledge and experience with new apprentices to realise their p…

View Details
Posted 2025-12-18

Temporary Laundresses

Exclusive Household Staff
London

We are currently looking to register Laundresses across the UK who require work on a Temporary basis. Our clients (HNWI’s and private families) rely on us to find experienced and trustworthy candida…

View Details
Posted 2025-09-10

Senior Campaign Designer

JoJo Maman Bébé
London

Your role in the JoJo story… Do you thrive on leading creative campaigns from idea to execution? Are you looking for a role where you can step up to manage workflow, mentor others, and ensure campa…

View Details
Posted 2025-12-24