Principal Infrastructure Engineer - Security Operations (Ref: 18755)
- Civil Service
- Part Time
- Ruskington
- 71,381 - 85,257
Job Description
Job summary
Job description
Principal Infrastructure Engineer - Security Operations
Location: National*
Closing Date: 2nd July
Interviews: w/c 20th July
Grade: Grade 6
(MoJ candidates who are on a specialist grade, will be able to retain this grade on lateral transfer)
Salary**: National: 71,381-88,900 which may include an allowance up to 17,519: London : 75,674- 93,025 which may include an allowance up to 17,351
Working pattern : Full-time, Part Time, Flexible working
Contract Type: Permanent
Number of vacancies: 1
Vacancy number: 18755
*We offer a hybrid working model, allowing for a balance between remote work and time spent in your local office. Office locations can be found ON THIS MAP
Please note that unless you are an existing member of staff at Justice Digital, Data and Science, the only London location being recruited to is 10 South Colonnade, E14 4PU. We are no longer recruiting to 102 Petty France, SW1H 9AJ.
The Role
Please note this role requires you to pass Security Check clearance. Please click on the link for details
Were recruiting for a Principal Infrastructure Engineer for our Networks service area here a Justice Digital, Data and Science , to be part of our warm and collaborative Digital Infrastructure and Security Operations (DISO), team .
This role aligns against Principal Infrastructure Engineer from the Government Digital and Data Framework
DISO is part of Technology Services in Justice Digital, Data and Science , a modern and diverse workplace that promotes a healthy work-life balance and flexible working options.
The relevant DISO service area is:
- Security ownership of our Security Operations Centre, tooling infrastructure and Identity and Access Management services.
DISO designs, builds and supports user-centred digital and technology services for the justice system: services that make a real difference to our staff and users. Millions of people every year interact with our services, and DISO plays an important role in improving access to justice and making communication and connectivity experiences simpler and more efficient for all users.
We want to hear from people who want to make a difference by building excellent services that meet user needs and change their experience by creating a simpler, faster and better system for everyone. Our mission is to deliver a world-class justice system that works for everyone in society.
As a Principal Infrastructure Engineer at MoJ, you will work with colleagues across Technology Services and build strong relationships with Service Owners, Information Security, Customer Service Operational Teams, Delivery Managers, Product Managers and other key stakeholders. You will share knowledge of tools and techniques with the wider team and community. You will be comfortable working across multi-disciplinary teams and flexible enough to adjust, at short notice, to immediate demand.
The role will provide a dedicated support function dealing with service requests, tickets and major incidents. Occasionally you will participate in support during Out of Hours (OoH), for which youll be paid an allowance and further payment if dealing with incidents.
Key Responsibilities:
- Act as the senior engineering authority for security platforms, including SIEM/XDR tooling, ensuring effective onboarding of services, data sources and integrations.
- Oversee the implementation of Identity and Access Management solutions, ensuring strong authentication, authorisation and least-privilege access across services.
- Establish and enforce engineering standards, reusable patterns and guardrails to ensure secure, scalable and consistent deployments.
- Drive onboarding of new services into security platforms, establishing scalable patterns, playbooks and automation to reduce time to onboard and improve coverage.
- Collaborate with architecture, infrastructure and product teams to ensure security is embedded across the technology lifecycle.
- Drive continuous improvement through metrics, threat modelling, testing and learning from incidents and audits.
- Build capability through mentoring, communities of practice and leadership of engineering excellence initiatives.
If this role feels like an exciting challenge, something you are enthusiastic about, and want to join our team please read on and apply!
Please note in addition to the Principal Infrastructure Engineer Security Operations we are currently advertising for a Principal Infrastructure Engineer Automation (closes 22nd June) and for a Principal Infrastructure Engineer Network Operations (closes 29th June).
Youll receive a range of excellent benefits when you join our department, including:
- A generous employer pension contribution of 28.97% through the Civil Service Pension Scheme.
- 25 days of annual leave, (increasing to 30 days once you have reached 5 years of service), plus 8 bank holidays and a privilege day for the Kings birthday .
- Flexible working arrangements including hybrid working, working part time or compressed hours. Designed to support a positive worklife balance.
- Employees are allocated 10% of their working time for personal and professional development.
- A 1k per person learning budget is in place to support all our people, with access to best-in-class conferences and seminars, accreditation with professional bodies, fully funded vocational programmes and e-learning platforms.
- Compassionate maternity, adoption, and shared parental leave policies, with up to 26 weeks leave at full pay, 13 weeks with partial pay, and 13 weeks further leave. And maternity support/paternity leave at full pay for 2 weeks, too!
You can find more details of the Benefits we offer here . To help picture your life at MoJ Justice Digital, Data and Science please take a look at our blog.
Person Specification
Essential
- Extensive experience of security engineering in large-scale (>50k user) enterprise environments.
- Experience implementing and operating Palo Alto XSIAM (or similar XDR platforms) at scale.
- Strong experience with Identity and Access Management (IdAM), including authentication, authorisation, federation and privileged access controls.
- Strong understanding of threat detection, ...