Senior Security Architect

SSE plc
Portsmouth, UK
20 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Compensation
£59,800.0 - £89,800.0
Working hours
Shift work
Job source

Tech stack

Amazon Web Services Microsoft Azure Software as a Service Cloud Computing Security Cyber Security Infrastructure as a Service (IaaS) Identity and Access Management Information Systems Security Architecture Professional Platform as a Service (PAAS) Zero Trust Network Access Software Security Devsecops

Job description

The role of the Senior Security Architect demands business insight; technical acuity; and the ability to think, communicate and write at various levels of abstraction. A formal information security architecture process is one of the key enablers of a security programme. It is the planning process that provides the models, templates and principles that are used to design, implement and operate information security solutions. It enables consistency, leverage and reuse to satisfy the business requirements for security services in an optimum manner.

You will

  • Lead the design and assurance of security architectures across digital, cloud and data-driven solutions, ensuring they follow best practice, comply with regulations and meet organisational security standards.
  • Facilitate and guide threat-modelling activities-such as identifying risks, attack paths and mitigations-so that security is embedded early in every solution
  • Ensure consistent and comprehensive application of security controls across the business unit, governing reusable patterns, principles and reference architectures
  • Work collaboratively with architecture, engineering and delivery teams to integrate security into agile and traditional delivery models, including support for DevSecOps and automated security testing.
  • Provide end-to-end ownership of SSEN Distribution security architecture, including oversight of risks, controls, compliance and secure operations, ensuring alignment with frameworks such as NCSC, NIST and IEC 62443

Requirements

  • Proven experience designing and governing security architectures in complex or regulated enterprise environments, ideally covering cloud, identity, data, network and application security
  • Strong understanding of cloud security [SaaS, PaaS, IaaS (including AWS, Azure) etc], including IAM, network protection, encryption, monitoring, zero-trust concepts and secure cloud-native design
  • Hands-on experience with threat-modelling techniques and the ability to translate identified threats into meaningful, actionable technical controls.
  • Practical knowledge of key regulatory and compliance frameworks including NIS, , with the ability to apply to solution design
  • Relevant professional certifications (e.g., CISSP, CCSP, Azure Security Engineer, AWS Security Specialty) or equivalent experience that demonstrates deep security capability

Benefits & conditions

Pulled from the full job description Employee discount Gym membership Private medical insurance Cycle to work scheme Discounted gym membership

Full job description

Base Location: You’ll be expected to spend 50% of your working week in one of the following locations : Glasgow, Perth, Reading, Havant

Salary: £59,800 - £89,800 + performance-related bonus and a range of benefits to support your finances, wellbeing and family.

Working Pattern: Permanent Full Time Flexible First options available, Enjoy discounts on private healthcare and gym memberships. Wellbeing benefits like a free online GP and 24/7 counselling service. Interest-free loans on tech and transport season tickets, or a new bike with our Cycle to Work scheme. As well as generous family entitlements such as maternity and adoption pay, and paternity leave.

About the company

About SSE

SSE’s purpose is to provide energy needed today while building a better world of energy for tomorrow. We do this by developing, building, operating and investing in electricity infrastructure and businesses needed in the energy transition. Our Transforming for Growth investment plan sees us investing £33bn in critical electricity infrastructure across the five years to 2030.

Our IT division powers growth across all SSE business areas by making sure we have the systems, software and security needed to take the lead in a low carbon world. They provide expertise, advice and day-to-day support in emerging technologies, data and analytics, cyber security and more.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on uk.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

1:06 min

Outline of free tools for Microsoft Azure

Radu Vunvulea Radu Vunvulea · WWC 2022

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all