Talent.com
NCC Group
Rail Cyber Security LeadNCC Group • London, England, UK
Rail Cyber Security Lead

Rail Cyber Security Lead

NCC Group • London, England, UK
5 days ago
Job type
  • Full-time
Job description
We are seeking a highly skilled Cyber Security Rail Lead to join our Global Transport practice. This role is pivotal in strengthening and expanding our cyber security capability within the global rail ecosystem while also supporting cross-domain engagements in maritime automotive and aviation as needed.

The ideal candidate will bring deep knowledge of operational technology (OT) rail systems relevant international cyber security standards (including IEC 62443 TS 50701 IEC 63452) penetration testing methodologies and the broader transport addition to technical leadership the individual will play a key role in supporting business development building client trust and elevating NCC Groups profile within the rail sector.
This is a client-facing role requiring strong collaboration communication and leadership skills.


Key Responsibilities


1. Technical Leadership (Rail Cyber Security)
  • Serve as the subject matter expert (SME) for rail cyber security across global engagements.
  • Lead design and deliver complex cyber security assessments across both operational technology (OT) and information technology (IT) environments.
  • Apply deep knowledge of rail-specific standards and frameworks including:
    • IEC 62443 (Industrial Cyber Security)
    • TS 50701 (Railway Cyber Security)
    • IEC 63452 (Railway Rolling Stock Cyber Security)
  • Conduct or oversee penetration testing activities vulnerability assessments architecture reviews risk assessment and threat modelling for rail clients.
  • Provide expert interpretation of cyber security requirements for railway operators manufacturers and integrators.
  • Ensure security recommendations are aligned with safety operational continuity and regulatory requirements across the rail ecosystem.

2. Rail Domain Expertise
  • Provide expert understanding of the rail ecosystem including:
    • Signalling systems
    • Rolling stock
    • Control centres
    • Wayside and trackside equipment
    • Rail operational processes and safety requirements
  • Translate complex rail operations knowledge into training and mentorship for internal teams.
  • Act as the internal thought leader on emerging rail threats vulnerabilities and industry trends.


3. Business Development & Practice Growth
  • Support the creation and growth of new rail opportunities globally.
  • Build NCC Groups market presence in the rail sector through:
    • Thought leadership (whitepapers webinars industry events)
    • Client engagements and pre-sales support
    • Partnerships with key rail OEMs operators and regulators
  • Collaborate with engagement managers and leadership to define rail-focused service offerings.
  • Contribute to bids proposals and technical scoping activities for prospective customers.


4. Cross-Domain Support (Multi-Modal Transport)
  • Potentially support projects across maritime automotive and aviation domains as required with team backing.
  • Maintain awareness of common OT and safety-critical technologies across transport sectors.
  • Promote knowledge-sharing across the wider Transport Cyber Security practice.


5. Teamwork Collaboration & Mentorship
  • Provide mentoring guidance and technical leadership to consultants at various levels.
  • Work closely with colleagues across global teams to deliver integrated and high-quality engagements.
  • Promote a collaborative supportive and inclusive team culture.


6. Client Engagement & Delivery Excellence
  • Act as a trusted advisor to clients providing clear actionable cyber security recommendations.
  • Communicate complex concepts in a clear professional and client-friendly manner.
  • Ensure high-quality deliverables and maintain strong client satisfaction throughout engagements.

Skills Knowledge and Expertise


Technical Experience
  • Proven experience in rail cyber security ideally within operators OEMs integrators or a cyber consultancy.
  • Strong experience working with and applying:
    • IEC 62443 (critical infrastructure cyber security)
    • TS 50701 (railway cyber security framework)
    • IEC 63452 (rolling stock cyber security)
  • Strong understanding of OT systems and technologies including SCADA industrial control systems (ICS) and safety-critical environments.
  • Practical experience in penetration testing or security assessment methodologies (not necessarily a full-time tester but capable).
  • Experience with secure architecture review threat modelling and risk assessment in industrial or transport environments.

Domain Knowledge
  • In-depth understanding of the rail operational ecosystem including signalling rolling stock safety systems and regulatory standards.
  • Direct experience working within or for rail operators system suppliers or rail-integrated cyber projects.

Soft Skills & Professional Attributes
  • Excellent communication skills in both technical and non-technical contexts.
  • Strong client-facing experience and relationship management skills.
  • Ability to lead engagements and influence stakeholders at all levels.
  • Willingness to work collaboratively across geographies and disciplines.
  • Ability to teach and mentor others on rail systems and cyber security.


Desirable (Not Mandatory)
  • Recognised cyber certifications (e.g. CISSP GICSP ISA/IEC 62443 CyberSecurity Expert).
  • Experience contributing to industry standards or regulatory consultations.
  • Background in safety engineering or systems engineering in transport.

Benefits


  • Flexible Working: Balance your work and personal life with our flexible working options.
  • Generous Holiday Allowance: Enjoy 25 days of holiday plus bank holidays with the option to buy up to 5 additional days of annual leave differs for SOC shift workers please speak to your TA partner for more information).
  • Medicash & Critical Illness Scheme
  • Financial & Investment Benefits: Enjoy peace of mind with our Pension Life Assurance and Share Save Scheme.
  • Community & Volunteering Programmes: Make a difference in your community with our volunteering opportunities.
  • Green Car Scheme: Drive green and save money with our eco-friendly car scheme.
  • Cycle Scheme: Stay fit and healthy with our cycle-to-work scheme.
  • Special Time Off: Take time off for those big moments in life like getting married/entering into a civil partnership becoming a grandparent and welcoming home a new pet.
  • Family Planning: Benefit from our generous maternity and paternity leave as well as time off and support for those undergoing fertility treatments.







Employment Type : Full-Time
Experience: years
Vacancy: 1
Create a job alert for this search

Rail Cyber Security Lead • London, England, UK

Similar jobs

Senior Cybersecurity Engineer - OT/Rail & Strategy Lead

SYSTRA UK & IrelandGreater London, England, GB
Full-time

SYSTRA UK & Ireland is looking for a Senior or Principal Cyber Security Engineer to join their growing team in Greater London.The role involves delivering cybersecurity solutions for rail and infra... Show more

 • Promoted

Cyber Security Architect: Lead Secure by Design Orgwide

Aviva plcGreater London, England, GB
Full-time

Aviva plc is seeking a Cyber Security Architect for a 12-month FTC to enhance security across the organization.You will support teams in delivering secure solutions, influence decision-making, and ... Show more

 • Promoted

Principal Cyber Security Architect

Global RelayGreater London, England, United Kingdom
Full-time

For over 25 years, Global Relay has set the standard in enterprise information archiving with industry-leading cloud archiving, surveillance, eDiscovery, and analytics solutions.We securely capture... Show more

 • Promoted

Vendor Cyber Risk Lead — Third-Party Security

Tokio Marine HCCGreater London, England, GB
Full-time

Tokio Marine HCC is hiring a Third Party Cyber Risk Lead based in London, focusing on managing third-party cyber risks.The role involves collaborating with procurement and legal teams to enhance se... Show more

 • Promoted

Security Lead

TaktileGreater London, England, GB
Full-time

Taktile helps financial institutions make smarter, safer decisions with the power of AI.We're looking for a Security Lead to set the technical direction for security across our Platform Team while ... Show more

 • Promoted

Strategic Cyber Security Leader | Risk & Defense

Praxis TechGreater London, England, GB
Full-time

Chelsea Football Club in London seeks a strategic leader for Information and Cyber Security to shape the security vision, embed governance, and reduce risk across football and commercial operations... Show more

 • Promoted

Senior Cyber Security Architect – SDL & PCI ISO

PioneertechlabsGreater London, England, GB
Permanent

Pioneertechlabs is looking to recruit a Cyber Security Architect to join their team in London and Slough.This role is permanent and involves defining and supporting security solutions for various p... Show more

 • Promoted

API Security Success Lead

Salt SecurityGreater London, England, GB
Full-time

Salt Security is looking for a high-energy Technical Account Manager to join its Customer Success team in Greater London.This role involves ensuring customers maximize the value of Salt Security's ... Show more

 • Promoted

Cyber Security Presales Lead — Revenue & Solutions

WanstorGreater London, England, GB
Full-time

Wanstor is looking for a Cyber Security Presales Consultant to be the commercial face of their security practice.This role involves leading security opportunities by partnering closely with Sales a... Show more

 • Promoted

Lead Security Architect - CISSP - Banking

Rothstein RecruitmentGreater London, England, GB
Full-time

Lead Security Architect - CISSP - Banking.Lead Security Solutions Architect.Solid, practical and demonstrable experience of information security (technical and non technical aspects).Demonstrable e... Show more

 • Promoted

Security Architecture Lead for Cyber Transformation (Hybrid)

Xcede Recruitment SolutionsGreater London, England, GB
Temporary

Xcede Recruitment Solutions is looking for an experienced Security Architect for a 6-month contract in Greater London.This role will involve defining the target-state security architecture and supp... Show more

 • Promoted

Cyber Security Strategy Lead — Client‑Facing

ElixirrGreater London, England, GB
Full-time

A global consulting firm is seeking an outstanding Cyber Security Consulting Manager based in London or New York.The ideal candidate will have 4-6 years of experience and bring a strategic approach... Show more

 • Promoted

Senior Cyber Risk & Security Leader (Hybrid)

Spirit UK LtdGreater London, England, GB
Full-time

A leading cybersecurity firm is seeking an experienced Cyber Risk & Security Manager to lead cyber risk assessments and drive strategic improvements.The ideal candidate will have over 10 years of e... Show more

 • Promoted

Senior PM - Cyber Security

Randstad EnterpriseGreater London, England, GB
Full-time

Job Title: Senior Project Manager - Cyber Security.Location: Flexible - but ideally based in Norwich, London, Bristol or York.Length of Contract: 12 Month FTC.Consultants on Demand is Randstad Ente... Show more

 • Promoted

Cyber Security Architect: Lead Secure Architecture

Sprytech LtdGreater London, England, GB
Full-time +1

A technology company is seeking a Cyber Security Architect to join their growing team in London and Slough.This permanent, full-time role involves defining and implementing security architecture, s... Show more

 • Promoted

Sr Director Product Security - Cybersecurity

NablaGreater London, England, United Kingdom
Full-time

The Product Security team at NielsenIQ is dedicated to enhancing business application security and making product teams accountable throughout the software development lifecycle.It not only protect... Show more

 • Promoted

Azure Infrastructure & Security Leader

Davies Talent SolutionsGreater London, England, GB
Full-time

A leading professional services firm is seeking an IT Infrastructure & Security Manager to oversee its infrastructure and security strategies.This role involves defining the Azure transition strate... Show more

 • Promoted

Senior Manager – Application Security

MiroGreater London, England, United Kingdom
Full-time

The Senior Manager of Application Security leads a global team responsible for embedding security into Miro’s Software Development Lifecycle (SDLC)—from concept to code to customer impact.This team... Show more

 • Promoted

Lead Azure Security Architect

developrecLondon, England, GB
Full-time +1

Get AI-powered advice on this job and more exclusive features.Direct message the job poster from develop.Head of Global Delivery Centre | Tech Recruitment Partner @ developrec.Lead Azure Specialist... Show more

 • Promoted

Cyber Security Associate Director

RSM UKGreater London, England, United Kingdom
Permanent

We are searching for an experienced Cyber Security Associate Director.As an Associate Director within Technology and Cyber Risk Assurance, you’ll be responsible for advising our clients on cyber se... Show more