Security Architect
Role details
Job location
Tech stack
Job description
· Develop and manage security architecture specifications, threat models, standards and roadmaps.
· Apply Secure by Design principles across collective training and deployed IT environments.
· Lead security engagement with senior internal and external stakeholders, including the British Army.
· Capture, analyse and decompose complex security requirements across the programme lifecycle.
· Drive security technology evaluations, proof-of-concepts and risk assessments.
· Embed security controls within wider system architectures through close collaboration with fellow architects.
· Support development of Risk Management Framework documentation and security assurance activities.
· Advise leadership on cybersecurity risks, emerging technologies and strategic security direction.
Requirements
· Proven experience in security architecture design across complex IT or defence environments.
· Strong knowledge of Information Assurance, Cyber Security and threat modelling methodologies.
· Working knowledge of MoD or Government IT security at SECRET classification and above.
· Knowledge of Enterprise Architecture frameworks such as TOGAF or MODAF.
· Experience formulating, recording and managing security risk using recognised risk methodologies.
· Understanding of Secure by Design principles and their application across a programme lifecycle.
· Ability to communicate complex security risk clearly to both technical and non-technical senior stakeholders.
· Experience leading small teams and operating independently in a senior technical capacity.
The client would also like to see some of the below, but this is not essential:
· BSc in Information Security or significant commercial experience in a programme security environment.
· Professional certification in CISSP, CISM, CRISC or CGRC.
· Demonstrable knowledge of Government Standard 007, ISO 27001 and NIST frameworks.
· Experience or knowledge of Cloud security architecture across one or more major Cloud providers.
· Experience with DevSecOps tooling, processes and Supply Chain security management.
· Problem management and/or ITIL experience, or knowledge of intelligence disciplines such as GEOINT, SIGINT or OSINT.
Benefits & conditions
· 25 days holiday (increasing to 27 days) + statutory public holidays.
· Contributory Pension Scheme (up to 10.5% company contribution).
· 6 times salary 'Life Assurance'.
· Flexible Benefits scheme.
· Discretionary Bonus scheme.
· Enhanced family friendly policies.
· 37hr standard working week, with an early finish on Fridays whilst operating a 'Hybrid Working Model'*
· Canteen facilities are available in some sites., RECOMMEND A FRIEND: If you have professional friends/colleagues who would be interested in one of our roles and our excellent levels of service too, we'd like to recognise your recommendations with a 'thank you' of our own. For every friend you refer who then starts a role through Datasource either Contract or Permanent, we will send you £200 of Love to Shop Gift Vouchers & gift your friend £100 in Love to Shop Gift Vouchers as well!