Security Architect (OMNIA)
Role details
Job location
Tech stack
Job description
The Omnia Security Architect role requires a versatile individual who can make effective and highly valued contributions to activities across the project lifecycle in collective training and deployed IT environments. The candidate is expected to be capable of operating in a senior technical role working closely with customer and delivery teams; alone and unsupervised if necessary. This position is critical to the successful delivery of the Collective Training Transformation Programme (CTTP), ensuring that training is delivered to meet the British Army's needs. This role concentrates on Information Assurance and Cyber Security but does not exclude supporting Physical and Personnel security elements., * Developing, contributing and management of the security vision, security architecture specifications, security architecture analysis, threat-modelling, security requirements, security standards and design patterns, reference architectures, security strategies and roadmaps
- Applying security design principles to develop security architectures
- Lead security interactions with senior internal and external stakeholders
- Supporting security assurance of systems
- Developing and/or carrying out the strategic direction of security projects to enable execution of the information security strategy
- Capturing, expanding, and analysing security requirements
- Developing innovative security solutions to enable execution of the long-term security architecture
- Driving security technology evaluations and proof-of-concepts
- Building strong cross-organisational relationships and effectively influencing the architecture team and stakeholders
- Support the security technologies lifecycle
- Working closely with the other architects and colleagues to ensure that security is properly embedded in their technology domain architectures
- Assisting other architects in peer reviews
- Evaluating and assessing security risk as part of application and system lifecycle management
- Staying current with security technologies and making recommendations for use, based on business value and security risk mitigation
- Advising leadership on Cybersecurity issues, systems, processes, products, and services
- Maintaining oversight of the design and implementation of systems to ensure appropriate and effective security controls are included
- Serving as a Cybersecurity expert to contribute to the definition of overall system architecture
Requirements
The successful candidate needs to be able to talk to both technical experts and wider organisational stakeholders, applying a holistic approach to create solutions that will help the Organisation achieve its goals. The candidate must be a team player who is prepared to lead from the front and work with a multi-skilled engineering team and the customer community., We're after individuals who want to serve. You'll have a mission focus, and the enthusiasm and drive to 'get things done'. You'll want to work in collaboration with other defence training organisations, and the British Army. You won't let bureaucracy get in the way of what needs to be done whilst maintaining the highest security and safety standards. You'll learn lessons and share these lessons across the team. You won't necessarily have a military background, but you'll understand what it means to serve and to put the mission first., * Self-starter with the ability to appropriately prioritise and plan complex work in a rapidly changing environment
- Forward facing - experienced in talking to customers both internal and external)
- Strong critical thinker with problem solving aptitude
- Highly organised, discrete, outcome focussed, with a "can do" attitude.
- Enjoys working within a fast-paced environment
- Able to articulate and solve complex security problems and concepts, by interrogating and using data or intelligence to formulate and influence plans
- Collaborative approach to teamwork - able to constructively challenge.
- Able to interpret complex and diverse business and technical requirements and issues, and identify and communicate viable solutions or controls
- Strong strategic business acumen and understanding of business strategy and the ability to identify Solutions to deliver that strategy
- Effectively translate and accurately communicate security risk implications at the most senior levels across diverse technical and non-technical stakeholders
- Strong management of stakeholders' expectations across high-risk and complexity and/or under constrained timescales
- Lead security design and review solutions with the other Omnia architects
- Knowledge of Enterprise Architecture methodologies such as TOGAF and MODAF or equivalent
- Understanding of formulating, recording and managing security risk and applying risk methodologies
- Support developing plans and estimates, task execution, project tracking, reporting, and risk identification and mitigation plans
- Supporting the development of Risk Management Framework documents and controls
- Understands security requirements and how to decompose them
- Understanding/experience of Secure by Design
- Understanding/experience of waterfall and agile methodologies
- Understanding how obsolescence impacts Information Assurance
- Support the Omnia Security Lead in identification of new technology, new security advances and new security risks to best develop future solutions
- Broad understanding or a qualification in Cloud hosting and Cloud architectures for one or more major Cloud providers
- Experience in, or knowledge of, DevSecOps Tooling and Processes
- A working knowledge of MoD or Government IT Security environments and requirements at various classifications including SECRET and above
- Proven experience of leading a small team
- Ability and willingness to travel
- Hold a security clearance above BPSS , or the ability to gain it, * BSc. Information Security or significant commercial experience in a programme security environment
- Professional Information Security certifications in at least one of the following: CISSP, CISM, CRISC, CGRC
- Demonstrable knowledge of Government Standard 007: Security, ISO 27001 and NIST
- Strong communication skills (oral, presentation and written)
- Experience or knowledge of Supply Chain security management
- Competencies in security awareness and education programmes
- Passion for Information Security and continuous learning
- Problem management and/or ITIL experience.
- Knowledge of GEOINT and SIGINT, ACINT, MASINT, OSINT, HUMINT and the analysis of the data and information
Benefits & conditions
- A Culture Built on Collaboration Work in an inclusive, high-performing team that celebrates ideas, supports growth, and is laser-focused on delivering results.
- Team dynamics You will be part of a team that works together, across multiple organisations united in one mission.
- Work Across Borders, United in Purpose Operate across organisations with one shared goal - improving capability across all domains.
- Drive Innovation Your voice matters. We champion new ideas, welcome change, and believe in continuous improvement with a growth mind-set.
- Shape the Future Play a crucial role in a long-term, future-facing programme with real-world impact on national defence.
- Career Growth & Benefits Enjoy a strong benefits package, ongoing development opportunities, and clear pathways to progress within a trusted defence industry partner.
OMNIA® Training and its partners are proud to be an equal opportunity employer. We welcome applicants of all backgrounds and identities - what matters is your passion, your expertise, and your dedication to the mission.