Overview
In this role you lead the practical delivery planning for LSEG’s PQC programme, translating NCSC expectations into actionable roadmaps. You guide engineering teams through cryptographic migrations with risk-aware prioritisation, ensuring secure, scalable adoption across the technology estate. You act as the technical lead for PQC and cryptographic agility, delivering governance-ready updates and viable implementation playbooks. You work closely with cross-functional teams to align strategy with business priorities and risk management, driving secure modernization at scale.
Pay / Benefits
- healthcare
- retirement planning
- paid volunteering days
- wellbeing initiatives
- tailored benefits and support
Responsibilities
- Act as the organisation’s technical lead for PQC and cryptographic agility
- Build migration plans aligned to NCSC milestones and business priorities
- Lead discovery of cryptographic dependencies across applications, infrastructure, cloud, networks, PKI and third-party services
- Identify quantum-vulnerable technologies and prioritise remediation using a risk-based approach
- Create reusable migration patterns, reference architectures and implementation playbooks
- Define migration scenarios (certificates, TLS, authentication, digital signatures, VPNs, key management)
- Assess vendor readiness and challenge supplier roadmaps with TPRM
- Support engineering teams through design reviews, pilots and technical decision making
- Produce executive-ready updates, investment recommendations and risk assessments
- Simplify complex technical issues for senior stakeholders and governance forums
Key requirements
- Extensive experience as a senior security architect in a large enterprise
- Proven delivery experience in complex security or infrastructure transformation programmes
- Strong understanding of PKI and certificate management, TLS and cryptographic protocols, key management and HSMs, identity and authentication platforms, cloud/hybrid infrastructure
- Experience developing enterprise roadmaps and implementation strategies
- Strong stakeholder management and communication skills
- Strong documentation skills and ability to influence across technology teams without direct authority
- Stakeholder management
- Communication
- Influencing without authority
- PKI and certificate management
- TLS and cryptographic protocols
- Key management and HSMs
…
