Rolls-Royce

Rolls-Royce

Designs and manufactures power and propulsion systems for aerospace, marine, defence and energy sectors.

50,000Civil aerospaceDefencePower SystemsElectricalCommercial marineYachtMarineIndustrial constructionBuilding constructionWebsite

Crypto Custodian

Manage secure handling, storage, and governance of cryptographic materials for Defence.

Bristol, England, United Kingdom
Full Time
Intermediate (4-7 years)
-uk national security clearance (developed vetting) required

Job Highlights

Environment
Onsite
Security Clearance
-uk national security clearance (developed vetting) required

About the Role

The Crypto Custodian will be accountable for secure handling, storage, accounting and distribution of cryptographic assets, providing governance for crypto delegates, overseeing suppliers and assuring senior stakeholders of compliance with UK national standards, MOD policies and corporate requirements. The role includes travel to secure Defence and supplier facilities and requires Developed Vetting security clearance. • Create and maintain crypto policies, registers, audits and incident processes. • Control, store, account for and dispose of physical and digital cryptographic material throughout its lifecycle. • Implement security measures and maintain accurate inventories and logs in line with national and organisational standards. • Brief, debrief and train users on crypto responsibilities and standards. • Lead and task crypto delegates, ensure compliance and manage succession planning. • Own crypto accounts, delegate responsibilities and oversee cryptographic suppliers for security and contractual compliance. • Establish governance, escalation routes and assurance checks across the crypto domain. • Ensure compliance with JSP 440, JSP 490, DEFSTAN 05‑138, SDIP 27/29 and MOD/NCSC guidance. • Support accreditation, lead internal audits, facilitate external inspections and implement corrective actions. • Manage the cryptographic asset risk register and report to Information Security governance forums. • Investigate and report crypto incidents, coordinating with authorities as needed. • Engage with business, programme, IT, engineering and security teams to meet cryptographic needs. • Act as primary contact for MOD, primes and partners on crypto matters, providing expert advice on confidentiality, integrity and availability risks. • Promote awareness and training to embed a culture of crypto security.

Key Responsibilities

  • crypto policy
  • asset management
  • security measures
  • audit management
  • risk register
  • incident response

What You Bring

Successful candidates will have proven experience in cryptographic account management or related INFOSEC roles, strong knowledge of UK Defence security frameworks (JSP 440, JSP 490, DEFSTAN 05‑138, SDIP 27/29) and demonstrated leadership of staff or delegates. They must be able to obtain or already hold Developed Vetting clearance. • Demonstrated experience in cryptographic account management, COMSEC or INFOSEC roles. • Strong understanding of UK Defence security frameworks and audit/incident reporting experience. • Proven leadership skills managing staff or delegates. • Ability to obtain or hold Developed Vetting security clearance.

Requirements

  • cryptography
  • comsec
  • infosec
  • uk defence
  • leadership
  • developed vetting

Benefits

Rolls‑Royce offers a safety‑first environment, opportunities for mid‑career development, and a culture that encourages integrity, accountability and continuous learning. The role supports the company’s multi‑year transformation to become a high‑performing, competitive and resilient organization.

Work Environment

Onsite

Apply Now