
Senior Cyber Security Consultant
Job summary
Do you have extensive knowledge of cyber and information security?
Are you a keen problem solver and able to develop and maintain good relationships with a wide range of stakeholders?
If so, we’d love to hear from you!
Joining our department comes with many benefits, including:
- Employer pension contribution of 28.97% of your salary. Read more about Civil Service Pensions here
- 25 days annual leave, increasing by 1 day each year of service (up to a maximum of 30 days annual leave), plus 8 bank holidays a privilege day for the King’s birthday
- Flexible working options where we encourage a great work-life balance.
Read more in the Benefits section below!
Find out more about what it's like working at DVLA roles: Driver and Vehicle Licensing Agency - Department for Transport Careers
Job description
As a Cyber Security Consultant, you will be part of the Cyber Security Services team, providing cyber security consultancy services for projects and business as usual (BAU) activities and supporting ongoing compliance and assessing risk.
Reporting to the Lead Cyber Security Consultant, you will be responsible for providing advice and guidance to IT workstreams delivering Driver and Vehicle Licensing Agency’s (DVLA’s) services, liaising with other teams in the IT department, providing security architecture input to technical designs and solutions and acting as a source of expert advice and guidance.
You will be an experienced cyber security professional who can:
- Apply your extensive knowledge of cyber and information security.
- Assess risks to existing and proposed systems and technical solutions, and then devise risk management plans to address such risks.
- To a large degree manage your own time and resources to deliver the required outcomes.
- Be actively engaged in the major change programme being implemented at DVLA, including playing an important role in solution evaluation and technology selection.
- Develop and maintain good relationships with a wide range of stakeholders.
- Work as part of a team to deliver cyber security services.
- Develop/progress your own skills and career and also to actively coach and develop others.
This role plays a vital part in delivering secure‑by‑design systems and services for DVLA by ensuring that the architecture and design of DVLA networks and systems remain secure by conducting risk assessments and offering security guidance aligned with UK Government policy and recognised best practice.
The position delivers cyber security consultancy and risk management services, including:
- Providing expert advice, guidance, and direction on cyber security to management, project teams and the wider agency.
- Ensuring that cyber security requirements are included within architectural decisions for solutions.
- Developing, maintaining, and updating documentation relevant to system and security assurance.
Your responsibilities will include, but aren’t limited to:
- Being responsible for developing risk assessments in line with agreed risk assessment methodology within agreed timescales in order to provide senior managers with the appropriate information to make IT and information risk management decisions.
- Managing relationships with:
- Work package stakeholders (senior managers seeking security advice on work packages, project managers etc.).
- Software engineers and other IT specialists
- Providing timely subject matter expert advice and consultancy in accordance with HMG security guidelines and DVLA policy on IT and information security issues to DVLA staff.
- Providing expert advice and recommendations including where relevant risk assessments and business impact analysis in relation to the designated area of responsibility.
- Reviewing security-relevant project documentation, including, but not limited to, High Level Designs and Low Level Designs.
Great line management is important to us as an organisation, and we will equip and support line managers to develop the skills they need. We aim to empower line managers to create teams where people can flourish and deliver excellent outcomes for the public.
For further information on the role, please read the attached role profile. Please note that the role profile is for information purposes only - whilst all elements are relevant to the role, they may not all be assessed during the recruitment process. This job advert will detail exactly what will be assessed during the recruitment process.
Open Sessions: Would you like to find out more about the role, the team and what it’s like to work in our department? If so, we are organising an open session where you can virtually 'meet the team' on Tuesday 17th March at 12pm. Sign up here: https://www.ticketsource.co.uk/dvlaitsrecruitment/senior-cyber-security-consultant-familiarisation-…
Person specification
Required experience
You’ll have demonstrable skills and experience such as:
- Professional cyber or information security certification – such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager or willingness to attain.
- Solid knowledge of various information security frameworks.
- Problem-solving and analytical skills.
- Effective verbal and written communication skills.
- Broad understanding of cloud-based technical environment.
Additional Information
The role is part of the Government Security Profession Career Framework profession and utilises an enhanced Capability–Based Pay Framework which provides access to a Digital and Data allowance.
The base pay is £44,241. In addition to this the role includes a Digital and Data allowance of up to £14,756.
The value of allowance awarded will be based on an assessment of your skills and experience as demonstrated through the selection process. Here are more details on the pay framework.
Working for the DVLA Digital Team
At DVLA, licensing is just the start. Every project you implement, touch and deliver has a ripple effect that’ll wash across the nation. Here the work you’re doing has the capacity to change the way 53 million people interact with our services. As we aim to keep our roads some of the safest in the world, our innovative, transformative digital-led services help optimise a nation of individuals and business every single day.
To see how our people are transforming our digital services, head over to our DVLA Digital Services Blog and, to understand more about the great opportunities and benefits of working at DVLA read our Inside DVLA blog.
Working hours, office attendance and travel requirements
Full time roles consist of 37 hours per week. Whilst we welcome applications from those looking to work with us on a part time basis, there is a business requirement for the successful candidate to be able to work at least 32 hours per week.
This role is suitable for hybrid working, which is a non-contractual arrangement where a combination of workplace and home-based working can be accommodated subject to business requirements.
The expectation at present is a minimum of 60% of your working time a month will be spent at either your designated workplace (the location cited in the advert) or, when required for business reasons, in another office/work location. There may be occasions where you are required to attend above the minimum expectation.
If you have a question about hybrid working, part time/job share hours, flexible working, travelling for work, or require a reasonable adjustment, please contact the Vacancy Holder during the recruitment process to avoid possible disappointment later in the process should your working arrangements not be compatible with the requirements of the role (see below for contact details).
Visa Sponsorship
Please take note that DVLA does not hold a UK Visa & Immigration (UKVI) Skilled Worker License sponsor and are unable to sponsor any individuals for Skilled Worker Sponsorship.
Security Check
Successful candidates must meet the security requirements before they can be appointed. The level of security needed is security check. To allow for meaningful checks to be carried out, candidates will be required to have at least 5 years continuous residency in the UK. All applicants for this role must ensure that they meet this minimum residency requirement - if you do not, your application will be withdrawn.
Behaviours
We'll assess you against these behaviours during the selection process:
- Making Effective Decisions
- Leadership
Technical skills
We'll assess you against these technical skills during the selection process:
- Government Security Profession Skill - Information Risk Assessment and Risk Management – Practitioner Level (page 297)
- Government Security Profession Skill – Applied Security Capability – Practitioner Level (page 279)
- Government Security Profession Skill – Secure Design – Practitioner Level (page 313)
Benefits
Alongside your salary of £44,421, Driver and Vehicle Licensing Agency contributes £12,868 towards you being a member of the Civil Service Defined Benefit Pension scheme. Find out what benefits a Civil Service Pension provides.Being part of our brilliant Civil Service means you will have access to a wide range of fantastic benefits:
- Best in class learning and development tailored to your role
- An environment with flexible working options where we encourage a great work-life balance
- A culture encouraging inclusion and diversity with a range of staff communities to support all our colleagues
- Generous employer contribution of 28.9%, depending on chosen pension scheme
- Flexible working options where we encourage a great work-life balance.
- Digital communities with clear career frameworks
- On-site gym plus personal training available (membership applies)
- On-site nursery, restaurants and coffee bar
- 25 days holiday (plus bank holidays), increasing by 1 each year (up to 30) & 8 Bank Holidays plus an additional Privilege Day to mark the King’s birthday.
- 24-hour Employee Assistance Programme providing free confidential help and advice for staff.
- Free parking
Find out more about the benefits of working at DfT and its agencies (opens in a new window).
Things you need to know
Artificial intelligence
Artificial intelligence can be a useful tool to support your application, however, all examples and statements provided must be truthful, factually accurate and taken directly from your own experience. Where plagiarism has been identified (presenting the ideas and experiences of others, or generated by artificial intelligence, as your own) applications may be withdrawn and internal candidates may be subject to disciplinary action. Please see our candidate guidance (opens in a new window) for more information on appropriate and inappropriate use.Selection process details
This vacancy is using Success Profiles (opens in a new window), and will assess your Behaviours, Experience and Technical skills.How to apply:
Our selection process ensures a comprehensive assessment of each applicant's qualifications, skills, and potential fit within our organisation.
The selection process for this role will be:
Stage 1: Sift of CV by Inspire People (our recruitment Partners)
Stage 2: Sift of CV by DVLA panel
Stage 3: Interview
You must be successful at each stage to progress to the next stage.
Stage 1: Sift by Inspire People
At sift, you will be assessed against the following Success Profile elements:
Experience – you will be asked to provide a CV (unlimited wordcount). Please provide evidence of your Experience of the following:
- Knowledge of the issues and techniques associated with securing a variety of technologies, and a knowledge of the cyber security industry.
- A substantial understanding of risk, and risk assessment and management techniques.
- Delivering cyber security services within a Business or organisation.
Stage 2: Sift by DVLA panel
If successful through sift by Inspire People your CV and personal statement will then be sifted by a panel at DVLA
This sift will take place 25/03/26
Stage 3: Interview
At interview stage, you will be assessed against the following Success Profile elements:
- Behaviours – Making Effective Decisions & Leadership
- Technical – Government Security Profession Skill:
- Information Risk Assessment and Risk Management – Practitioner Level (page 297)
- Applied Security Capability – Practitioner Level (page 279)
- Secure Design – Practitioner Level (page 313)
The interviews will take place week commencing 06/04/26
This interview will be conducted in person at DVLA Swansea , Longview Road, Morriston, Swansea, SA67JL Further details will be provided to you should you be selected for interview.
You can find out more about our hiring process, how to apply, and application and interview guidance on our careers site (opens in a new window).
Please note that we will try to meet the dates set out in the advert. There may be occasions when these dates will change.
Further information on the selection process
Feedback on your application can only be provided if you attend an interview or assessment.
We will also hold a12-month reserve list for this role, which may lead to potential opportunities beyond the role you applied for. You can read more about our reserve lists here.
Pre-employment Checking
Applicants who are successful at interview will be, as part of pre-employment screening, subject to a check on the Internal Fraud Database (IFD). This check will provide information about employees who have been dismissed for fraud or dishonesty offences. This check also applies to employees who resign or otherwise leave before being dismissed for fraud or dishonesty had their employment continued. Any applicant’s details held on the IFD will be refused employment.
A candidate is not eligible to apply for a role within the Civil Service if the application is made within a 5-year period following a dismissal for carrying out internal fraud against government.
If your application is successful but you have been dismissed from the Civil Service within the last 12 months, your application could be removed at the pre-employment checking stage.
Feedback will only be provided if you attend an interview or assessment.
Security
Successful candidates must undergo a criminal record check.Successful candidates must meet the security requirements before they can be appointed. The level of security needed is security check (opens in a new window).See our vetting charter (opens in a new window).People working with government assets must complete baseline personnel security standard (opens in new window) checks.
Nationality requirements
This job is broadly open to the following groups:
- UK nationals
- nationals of the Republic of Ireland
- nationals of Commonwealth countries who have the right to work in the UK
- nationals of the EU, Switzerland, Norway, Iceland or Liechtenstein and family members of those nationalities with settled or pre-settled status under the European Union Settlement Scheme (EUSS) (opens in a new window)
- nationals of the EU, Switzerland, Norway, Iceland or Liechtenstein and family members of those nationalities who have made a valid application for settled or pre-settled status under the European Union Settlement Scheme (EUSS)
- individuals with limited leave to remain or indefinite leave to remain who were eligible to apply for EUSS on or before 31 December 2020
- Turkish nationals, and certain family members of Turkish nationals, who have accrued the right to work in the Civil Service
Working for the Civil Service
The Civil Service Code (opens in a new window) sets out the standards of behaviour expected of civil servants.We recruit by merit on the basis of fair and open competition, as outlined in the Civil Service Commission's recruitment principles (opens in a new window).The Civil Service embraces diversity and promotes equal opportunities. As such, we run a Disability Confident Scheme (DCS) for candidates with disabilities who meet the minimum selection criteria.
Diversity and Inclusion
The Civil Service is committed to attract, retain and invest in talent wherever it is found. To learn more please see theCivil Service People Plan (opens in a new window) and the Civil Service Diversity and Inclusion Strategy (opens in a new window).Apply and further information
This vacancy is part of the Great Place to Work for Veterans (opens in a new window) initiative.The Civil Service welcomes applications from people who have recently left prison or have an unspent conviction. Read more about prison leaver recruitment (opens in new window).Once this job has closed, the job advert will no longer be available. You may want to save a copy for your records.Contact point for applicants
Job contact :
- Name : Jemma Avo
- Email : ITSRecruitment@dvla.gov.uk
Recruitment team
- Email : ITSRecruitment@dvla.gov.uk
Further information
If you feel your application has not been treated in accordance with the Recruitment Principles and you wish to make a complaint, in the first instance, you should contact Government Recruitment Services via email: dftrecruitment.grs@cabinetoffice.gov.ukIf you are not satisfied with the response you receive from the Department, you can contact the Civil Service Commission: Visit the Civil Service Commission website Here
Attachments
ITS-GDD-A-SA-SA-SCSC-SEO-Senior Cyber Security Consultant - V3.0 Opens in new window (docx, 207kB)DVLA Digital Job Brochure - V1 2025 Opens in new window (pdf, 2038kB)Salary range
- £44,421 - £58,997 per year