SOC Service Design Consultant - Inside IR35 - SC Cleared

SOC Service Design Consultant - Inside - SC Cleared

  • Loction: Remote/Southend
  • Type: 1-2 days a month on-site
  • IR35: Inside
  • Rate: £600 - £700 Per Day
  • Clearance: SC Cleared

Sanderson G&D are seeing a SOC Design specialist to Lead the Low-Level design and provide technical consultancy in the Public Sector.

The high-level future-state design has already been completed and defines the principal security capability towers, including:

  • Security Operations Centre
  • Wider Security Operations
  • Security Engineering
  • Governance, Risk and Compliance
  • Security Architecture
  • Security Product Management
  • Office of the CISO

The role will focus principally on the Security Operations capability tower, including the SOC and wider operational security services. It will define how each service should operate and mature across people, process, technology, governance and service integration.

Role purpose:

To develop the low-level operating and service designs for future Security Operations capabilities, providing a clear and practical roadmap from the current environment to the target state.The role will ensure that the future operating model is sufficiently detailed to support implementation, organisational restructuring, technology decisions, workforce planning and the transition.

Role Profile: Security Operations Service Design Lead

Client: HMRC
Engagement: Security capability transformation
Likely duration: 6 months, starting ASAP
Location/working model: Remote
Clearance: SC Cleared

Assignment overview

HMRC is undertaking a significant transformation of its security function, moving from its current operating model towards a leaner, service-led target state for 2030. The high-level future-state design has already been completed and defines the principal security capability towers, including:

  • Security Operations Centre
  • Wider Security Operations
  • Security Engineering
  • Governance, Risk and Compliance
  • Security Architecture
  • Security Product Management
  • Office of the CISO

The customer now requires a senior Security Operations subject-matter expert to translate the agreed high-level design into detailed, implementable capability designs.

The role will focus principally on the Security Operations capability tower, including the SOC and wider operational security services. It will define how each service should operate and mature over the next 6, 12 and 18 months across people, process, technology, governance and service integration.

This is not primarily a security architecture role. The successful candidate must understand how Security Operations functions work in practice and be able to convert a target operating model into detailed services, processes, accountabilities and a credible transition roadmap.

Role purpose: To develop the low-level operating and service designs for HMRC's future Security Operations capabilities, providing a clear and practical roadmap from the current environment to the agreed 2030 target state.The role will ensure that the future operating model is sufficiently detailed to support implementation, organisational restructuring, technology decisions, workforce planning and the transition from approximately 750 personnel to a proposed future-state organisation of approximately 280.

Key responsibilities

  • Review and validate the existing high-level design and Security Operations target operating model.
  • Define the detailed scope, purpose and boundaries of the SOC and wider SecOps services.
  • Decompose the Security Operations capability tower into clearly defined component services and sub-capabilities.
  • Produce low-level service designs covering:
    • People, roles, skills and capacity
    • Processes, procedures and operational workflows
    • Technology and tooling
    • Data and information flows
    • Governance, controls and decision rights
    • Service ownership and accountability
    • Interfaces with adjacent security and enterprise functions
    • Service performance measures and reporting
    • Sourcing and delivery model considerations
  • Define how each service will operate at different maturity points.
  • Develop a sequenced and achievable transformation roadmap, including dependencies, decision points, risks and enabling activities.
  • Clarify the interfaces between the SOC and wider capabilities such as security engineering, threat intelligence, vulnerability management, incident response, GRC, architecture, product management and the Office of the CISO.
  • Facilitate design workshops with operational leaders, service owners, technical specialists and customer workstream leads.
  • Challenge assumptions constructively and ensure that proposed designs are operationally viable rather than merely theoretically sound.
  • Identify opportunities for automation, standardisation, consolidation and improved use of technology.
  • Support workforce and organisational design by defining future roles, responsibilities, skills and indicative capacity requirements.
  • Establish measurable service outcomes, maturity criteria, KPIs and operational performance measures.
  • Document design decisions, assumptions, dependencies and areas requiring further client agreement.
  • Ensure that the detailed designs align with the overarching transformation principles and 2030 target state.

Reasonable Adjustments:

Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients.

If you need any help or adjustments during the recruitment process for any reason , please let us know when you apply or talk to the recruiters directly so we can support you.

Job Details

Company
Sanderson Government & Defence
Location
Southend-on-sea, Essex, United Kingdom SS1 1
Employment Type
Contract
Salary
GBP 600 - 700 Daily
Posted