Design Assurance Engineer
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
Work with the Vysiion delivery & service teams, PMO function, and customer, to ensure the efficient, technically, and commercially compliant, and on-time delivery, of assigned contracts.
The focus will be on CNI delivery and support including oversight of the OT Managed Detection and Response (MDR) contracts, their alignment with NIS, and NCSC CAF IGP’s. The Design Assurance Engineer is responsible for ensuring that systems, products, and solutions are implemented, maintained, and used, in accordance with safety, regulatory, and cyber security requirements, with a focus on Operational Technology (OT) environments. The role will contribute to ensuring that secure-by-design and safety-by-design principles are embedded throughout the lifecycle of customer deliveries and engagements.
This is an exciting opportunity for individuals with a passion for cyber security, converged IT/OT systems, and critical infrastructure environments, who thrive in technically demanding, hands-on roles and have a strong attention to detail in both technical delivery and documentation. The successful candidate will become part of the Vysiion CNI Centre of Excellence team, reporting to the Engineering Manager.
Role to Include:
Pre-Sales & Solution Development
- Support technical discovery workshops, customer engagement activities, and bid responses.
- Contribute to secure-by-design OT solution development and technical proposals.
- Identify technical, operational, cyber security, and delivery risks during solution development.
Design Development, Assurance & Implementation
- Contribute to and/or review High-Level Design (HLD) and Low-Level Design (LLD) documentation for OT and converged OT/IT solutions, ensuring alignment with security, operational, and regulatory requirements.
- Ensure designs are technically robust, implementable, and compliant with standards including IEC 62443, NIS Regulations, CAF, and ISO 27001.
- Support implementation, testing, commissioning, and deployment activities.
- Validate requirements relating to:
- Network segmentation
- Secure remote access
- Identity and access management
- Monitoring and MDR integration
- Resilience and recoverability
- Support remediation, troubleshooting, and technical assurance activities throughout delivery.
Operational Support & Service Assurance
- Support ongoing operational assurance activities across live OT environments and managed services.
- Contribute to vulnerability management, change assessment, monitoring, and cyber improvement activities.
- Support OT MDR assurance and operational resilience activities.
- Ensure continued alignment to customer, operational, and regulatory requirements.
Risk, Compliance & Technical Governance
- Conduct cyber security and design risk assessments across project and operational environments.
- Support compliance with NIS Regulations, NCSC CAF, sector-specific requirements, and internal governance frameworks.
- Maintain risk registers and remediation tracking activities.
- Support audits, assurance reviews, and compliance evidence generation.
- Participate in technical governance, design reviews, and assurance forums.
Stakeholder Engagement
- Work collaboratively with engineering, cyber security, service, operational, and customer teams.
- Act as a trusted advisor on OT cyber security, resilience, and design assurance.
- Support customer meetings, workshops, and technical governance forums.
- Build strong working relationships with customers, vendors, and internal stakeholders.
- Provide technical guidance and mentoring where required.
Documentation & Reporting
- Produce and maintain technical documentation including:
- Assurance reports
- Risk assessments
- Compliance evidence
- Technical standards and procedures
- Design and review documentation
- Maintain accurate project and assurance records.
- Present technical findings, risks, and recommendations to internal and customer stakeholders.
Requirements
Technical Skills
- Strong understanding of OT systems, architectures, and cyber security principles within CNI/OES environments.
- Experience with OT/IT convergence, including secure and resilient design considerations.
- Working knowledge of industrial networking and protocols (segmentation, zoning, routing).
- Experience contributing to or reviewing HLDs and LLDs.
- Understanding of cyber security frameworks and standards including IEC 62443, NIS Regulations, CAF, and ISO 27001.
- Experience applying cyber security risk assessment techniques in technical environments.
- Strong technical documentation and structured reporting skills., The successful candidate will have a highly professional approach and good presentation skills, and experience of working with demanding customers within the CNI/OES sectors.
- Excellent communication skills interfacing at all levels up to Director both internal and external.
- Self-motivated, results-oriented with a positive outlook.
- Ability to work well undirected, using own initiative with self confidence in decision making.
- A clear focus on high quality work and excellent customer service.
- Strong analytical and critical thinking skills.
- Ability to challenge designs constructively.
- Excellent communication and stakeholder engagement.
- Attention to detail and governance mindset.
Desired Experience
- Experience in critical infrastructure sectors (energy, water, transport, etc.).
- Exposure to safety-critical environments and/or within regulated industries.
- Familiarity with contractual management.
- Experience supporting or contributing to technical governance, assurance frameworks, or review boards.
- Experience in developing OT security and design assurance strategies., * Engineering qualification or equivalent demonstrable experience in Cyber Security, Operational Technology (OT), Industrial Control Systems (ICS), Computer Science, Networking, Energy, or related discipline.
-
Relevant certifications (desirable): *
- CISSP or CISM (security governance / assurance)
- GIAC (e.g. GICSP, GRID, or relevant OT security focus)
- IEC62443 certifications
- Vendor/networking certifications (e.g. Cisco, Fortinet)
About the company
Founded in 2002, Exponential-e swiftly established itself as a UK Cloud, Connectivity and Communications pioneer. Throughout our history, a focus upon leveraging leading-edge technology to deliver profitable and innovative services to our clients and prospects has resulted in industry and peer recognition for our ground-breaking approach, a truly world-class ICT services company.
We’re a company of innovators who think big and achieve bigger! Our people are crucial to the continuing success of our company. From our CEO to our new Graduates, each of our people demonstrates our PRIDE principles which are at the core of everything we do., Our people are what makes Exponential-e Group the company it is today. This year’s employee survey highlighted that 81% of employees who took the survey, would recommend a friend to work for our organisation.
Learning and development are fundamental parts of daily life at Exponential-e. From their first day at the company, everyone is provided ample opportunities to develop their skills and broaden their horizons, with our own L&D team running a range of bespoke courses, based on the latest innovations and challenges across the digital landscape.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Is Software Engineering Over-Saturated?
How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again
The Most Popular IT Jobs on the Market
Fully Remote Software Engineer Jobs