Security Architect
Role details
Job location
Tech stack
Job description
· Lead the architecture, design, and implementation of endpoint security solutions across backend platforms.
· Design and deliver security capabilities for offline, air-gapped environments including secure update mechanisms.
· Define and implement vulnerability management frameworks covering scanning, risk prioritisation, and remediation.
· Ensure all solutions comply with MOD and UK Government security policies including JSP and NCSC guidance.
· Conduct security assurance activities including design reviews, compliance assessments, and audit support.
· Produce and maintain formal security documentation including HLDs, LLDs, SOPs, and accreditation evidence.
· Support MOD risk management and accreditation processes in line with governance requirements.
· Define penetration testing scope for both backend platforms and end-user endpoints.
Requirements
Our client is looking for an experienced Security Architect with deep expertise in endpoint security and vulnerability management to support a high-profile UK Government defence account. You'll be designing and delivering security capabilities within secure, air-gapped environments, so hands-on experience in offline network security is essential., · Demonstrable experience as a Security Architect or senior security SME in secure or regulated environments.
· Proven ability to design and deliver enterprise AV and Endpoint Detection and Response (EDR) solutions.
· Strong hands-on experience with vulnerability management platforms, lifecycle processes, and remediation reporting.
· Solid experience working in offline or air-gapped environments including secure patching and AV signature management.
· Working knowledge of MOD security standards including JSP 440, JSP 604, JSP 453, and NCSC guidance.
· Experience applying the NIST Cybersecurity Framework within platform and endpoint security design.
· Ability to produce formal technical documentation including HLDs, LLDs, security architecture docs, and SOPs.
· Experience supporting security accreditation, risk management, and compliance evidence generation for MOD programmes.
The client would also like to see some of the below, but this is not essential:
· Previous experience working within the Defence and/or Aerospace sector.
· Familiarity with classified or high-assurance government environments.
· Understanding of MOD operating models and delivery frameworks.
· Experience supporting incident response within restricted or disconnected networks.
Benefits & conditions
· Flexible working arrangements.
· Provide expert financial guidance to help you select a pension plan tailored to your lifestyle.
· Company culture that places a premium on achieving a healthy work-life balance.
· Offer competitive bonuses and generous compensation packages.
· Prioritise traits such as curiosity and a good-natured sense of humour.
· Encourage and assist staff in participating in local community initiatives.
· 25 days holiday + bank holidays
· Buy/Sell holiday
· Death in Service - 3x salary
· Performance Bonus
· Cycle to work scheme
· Pension Scheme, RECOMMEND A FRIEND: If you have professional friends/colleagues who would be interested in one of our roles and our excellent levels of service too, we'd like to recognise your recommendations with a 'thank you' of our own. For every friend you refer who then starts a role through Datasource either Contract or Permanent, we will send you £200 of Love to Shop Gift Vouchers & gift your friend £100 in Love to Shop Gift Vouchers as well!