skip navigation
skip mega-menu

Principal Cyber Risk Management and Assurance Advisor - Government Digital Service - G6

Government Digital & Data -

Full-time (Permanent)
National: £67,126 - £79,769, London: £71,370 - £87,521 including additional allowance.
Published on
3 March 2026
Deadline
15 March 2026

Location

Bristol, London, Manchester

About the job

Job summary

The Government Digital Service (GDS) is the digital centre of government. We are responsible for setting, leading and delivering the vision for a modern digital government.

Our priorities are to drive a modern digital government, by:

  1. joining up public sector services
  2. harnessing the power of AI for the public good
  3. strengthening and extending our digital and data public infrastructure
  4. elevating leadership and investing in talent
  5. funding for outcomes and procuring for growth and innovation
  6. committing to transparency and driving accountability

We are home to the Incubator for Artificial Intelligence (I.AI), the world-leading GOV.UK and at the forefront of coordinating the UK’s geospatial strategy and activity. We lead the Government Digital and Data function and champion the work of digital teams across government.

We’re part of the Department for Science, Innovation and Technology (DSIT) and employ more than 1,000 people all over the UK, with hubs in Manchester, London and Bristol.

The Information Security team at GDS protects the people, services and information used to deliver critical government digital infrastructure such as GOV.UK and One Login. We do this by supporting a secure software development lifecycle, setting and checking proportional organisation policies and building a positive, no-blame security culture across the organisation.

The Government Digital Service is where talent translates into impact. From your first day, you’ll be working with some of the world’s most highly-skilled digital professionals, all contributing their knowledge to make change on a national scale.

Join us for rewarding work that makes a difference across the UK. You'll solve some of the nation’s highest-priority digital challenges, helping millions of people access services they need

Job description

  • lead cyber and information security risk management, assurance, and architectural advisory for major applications and digital services during alpha, beta, and early live phases
  • deliver critical security assessments and IT Health Checks, providing expert assurance across portfolio projects, with a focus on SaaS tooling compliance against NCSC Cloud Security Principles
  • facilitate and oversee Security Working Groups throughout all key development and deployment stages, ensuring risks are tracked, logged, and reported to the Head of Cyber Risk and Assurance, with actionable recommendations provided
  • produce formal risk assessments and risk treatment plans (RTPs) for all digital services and associated tooling, ensuring robust protection in accordance with business risk appetite
  • develop, review, and advise on Secure by Design policies/practices, including safe use of AI, secure coding, and regulatory compliance frameworks (e.g., OWASP, DPIA, GovAssure)
  • coordinate cross-platform activities and enable secure delivery of new GDS services, including supporting incident management and continuous improvement of live service security practices
  • routinely provide monthly (and ad-hoc) risk briefings to senior leaders, evidencing assurance, identifying risks outside tolerance, mapping exposure, and recommending mitigations and controls
  • mentor and train digital service teams and wider Information Security staff, sharing best practices and building internal capability for risk assessment and management
  • support implementation and ongoing usage of risk management tooling, ensuring all details are uploaded promptly and appropriately, such as the SureCloud risk register
  • engage proactively with senior internal and external stakeholders, promoting security culture and enabling confident delivery aligned with organisational priorities
  • future line management activities as the team grows

Person specification

  • demonstrable experience delivering high-quality, detailed cyber security risk assessments and assurance in large, fast moving, complex digital environments, ideally government or critical infrastructure
  • in-depth understanding of cyber risk management, threat modelling, security architectural advice, and formal IT Health Checks, including experience with SaaS environments and cloud security principles
  • experience interpreting and applying relevant cyber security standards, regulatory frameworks, and secure by design principles within a multi-disciplinary digital team
  • a self-starter, using your considerable experience and skills to work independently and with confidence 
  • track record of building cross-functional relationships and leading multi-platform security initiatives, with the ability to brief, influence, and advise senior stakeholders
  • strong written, verbal, and interpersonal communication skills, able to distil complex findings into actionable recommendations for non-technical and executive audiences
  • evidence of personal commitment to continuous learning and sharing of best practices, with experience mentoring, coaching, or enabling capability-building in others
  • ability to assess the implications and risks of emerging technologies (such as AI, SaaS, cloud services) and proactively recommend security interventions
  • knowledge of Civil Service values: respect, collaboration, inclusivity, and commitment to public service, with a strong focus on organisational culture

Indicative professional qualifications / accreditations

  • relevant industry qualifications and accreditations e.g. , CISSP or hold a Master’s Degree in a relevant discipline.

More jobs at Government Digital & Data

Interaction Designer - GDS
Full-time (Permanent)
Test Engineer - GDS - SEO
£46,725 - £50,220 (London) / £42,893 - £45,653 (National) plus additional allowance
Full-time (Permanent)
Software Developer (Low Code) - HM Courts and Tribunals Service - SEO
The national salary range is £42,914 - £46,182, London salary range is £49,325 - £53,081.
Full-time (Permanent)
Senior Delivery Manager - National Crime Agency - G7
£67,609 plus additional £4,218 for London
Full-time (Permanent)
Senior Delivery Manager - National Crime Agency - G7
£67,609 plus additional £4,218 London weighting
Full-time (Permanent)
Delivery Manager - National Crime Agency - SEO
£55,575 plus additional £4,218 for London
Full-time (Permanent)
Business Analyst - Active Travel England - SEO
£44,241
Full-time (Permanent)
IT Apprentice - FCDO Services - AO
£27,500 plus location allowance up to £1,750
Internship/ Placement
Innovation, Science and Technology Manager - National Crime Agency - SEO
£55,575
Full-time (Permanent)
Principal Security Architect - Government Digital Service - G6
£76,420 - £103,924 (London) / £69,523 - £91,453 (National) Based on capability
Full-time (Permanent)
Senior Infrastructure Engineer (Database Specialist) - HMRC - SEO
£45,544 - £49,523
Full-time (Permanent)
ICT Senior Systems Engineer - Ministry of Defence - HEO
£37,720
Full-time (Temporary)
Test Engineer - MI5 The Security Service - HEO
£66,332
Full-time (Permanent)
Senior Technical Architect (Azure) - Ministry of Housing, Communities and Local Government - G7
£61,745 (London) £56,167 (National) plus additional allowance
Full-time (Permanent)
Technical (Data) Architect, Data Services & Analytics - Home Office - SEO
National: £46,062 London £50,182 up to £11,338 additional allowance
Full-time (Permanent)
Lead Technical Architect - Government Digital Service - G6
£73,690 - £107,302 (London) & £69,308 - £94,426 (Bristol & Manchester) Based on capability
Full-time (Permanent)
Head of Digital & Transformation Capacity & Capability​ - Department for Work and Pensions - SCS1
£81,000 - £94,000
Full-time (Permanent)
Chief Information Officer, Defence Intelligence - Ministry of Defence - SCS1
£95,000
Full-time (Permanent)
Head of Digital Delivery - HM Courts and Tribunals Service - SCS1
£81,000 - £117,800
Full-time (Permanent)
Digital Apprentice (ServiceNow Administrator) - Companies House - AO
£26,452
Full-time (Temporary)
Senior Infrastructure Engineer (GRIP) - Cabinet Office - G7
National min: £57,204 London min: £62,988 up to £92,802 based on location and capability
Full-time (Permanent)
Apprentice Configuration Analyst - Companies House - AO
£26,452
Full-time (Temporary)
ICT Senior Systems Engineer - Ministry of Defence - HEO
£37,720
Full-time (Permanent)
Senior Software Developer (Python AI ML Specialist) - Registers of Scotland - SEO
£48,544 - £57,155 plus up to 20% additional pay allowance
Full-time (Permanent)
Delivery Manager and Service Designer - HM Treasury - G7
London: £60,670 - £67,500 / National: £57,670 - £64,500
Full-time (Permanent)
Digital Commercial Manager - OFGEM - G7
£47,895 - 58,519 (National), £50,748 - £62,699 (London)
Full-time (Temporary)
Cloud Infrastructure Engineer - Home Office - HEO
National: £38,419 - £41,109 London: £42,539 - £45,517 plus up to £5,000 additional allowance
Full-time (Permanent)
Infrastructure Engineer (M365) - Driver and Vehicle Licensing Agency - HEO
£35,663 and an additional £3,500 allowance
Full-time (Permanent)
Business Analyst - HM Courts and Tribunals Service - HEO
National: £35,335 - £37,847, London: £40,014 - £42,859. Your salary will be depen
Full-time (Permanent)
Lead Quality Engineer - Ministry of Justice - G6
£71,381 - £87,875 depending on location and up to £12,319 additional allowance
Full-time (Permanent)
Principal Technical Architect - Ministry of Defence - G6
£72,840 plus up to £18,000 additional digital skills allowance and weighting for London base
Full-time (Permanent)
Senior Data Architect - Department for Energy Security & Net Zero - G7
National: £55,105 - £62,475; London: £60,620 - £67,565 plus up to £10,000 additional allowance
Full-time (Permanent)
Deputy Director Chief Information Security Officer - GCHQ - SCS1
£96,981 - £130,000 plus additional allowance
Full-time (Permanent)
Deputy Director of Digital Content & Publishing - Office for National Statistics - SCS1
£81,000 - £117,800
Full-time (Permanent)
Director for Working Age Services - Department for Work and Pensions - SCS2
£100,000 - £136,000
Full-time (Permanent)
Lead Technical Architect - Government Digital Service - G7
£58,063 - £79,094 (national) Based on capability.
Full-time (Permanent)
Senior Data Architect - Department for Transport - G7
National Salary: £57,515 London Salary: £62,034 Plus an additional DDaT allowance up to: £22,885
Full-time (Permanent)
C# .NET Software Developer - Department for Education - SEO
£42,806 plus up to £13,000 additional allowance
Full-time (Permanent)
Software Developer - HM Courts and Tribunals Service - SEO
The national salary range is £42,914 - £46,182, London salary range is £49,325 - £53,081
Full-time (Permanent)
Senior Delivery Manager - Maritime and Coastguard Agency - SEO
£44,241
Full-time (Permanent)
Lead Infrastructure Engineer - HM Revenue and Customs - G7
National £58,541 - £64,624 London £65,869 - £72,711
Full-time (Permanent)
Senior Business Analyst - Maritime and Coastguard Agency - SEO
£44,241
Full-time (Temporary)
Lead DevOps Engineer - Department for Science, Innovation & Technology - G7
National: £54,415 - £61,280; London: £58,040 - £64,995 plus up to £10,000 additional allowance
Full-time (Temporary)
Test Engineer - Infected Blood Compensation Authority - SEO
£47,258 plus additional £3,544 after probationary period
Full-time (Permanent)
Senior Test Engineer - Department for Work and Pensions - G7
£57,946 - £78,205
Full-time (Permanent)
Junior Test Engineer - Driver and Vehicle Licensing Agency - EO
£30,485
Full-time (Permanent)
Senior Test Engineer - Driver and Vehicle Standards Agency - SEO
£44,241 plus £14,552 GDAD allowance
Full-time (Permanent)
Head of Quality - Ministry of Justice - G6
National: £71,381 - £80,419, London: £75,674 - £85,257
Full-time (Permanent)

Subscribe to our newsletter

Sign up here