Security Architect

J&C Associates
London, UK
18 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
£5,586.0 - £20,000.0
Working hours
Regular working hours

Tech stack

Microsoft Windows Microsoft Azure Microsoft Online Services Cloud Computing Security Cyber Security Databases Data Centers Data Governance Data Security Database Design Intrusion Detection Systems Microsoft Security Essentials
+14 more
Microsoft Office Windows PowerShell Azure Active Directory Security Information and Event Management Software Engineering Software Vulnerability Management SSL Certificate Management Data Logging Information Security Management System Software Security Microsoft InTune Build Management Information Technology Malware Detection

Job description

  • Work closely with enterprise architects, other functional-area architects, engineering, and security specialists to ensure adequate security solutions and controls are in place throughout all IT systems and platforms to mitigate identified risks sufficiently, and to meet business objectives and regulatory requirements;
  • Assess and understand current security posture and future architecture, providing recommendations for improvement and risk reduction
  • Develop the business, information, and technical artefacts that constitute the enterprise information security architecture and solutions
  • Serve as a security expert in application development, database design, network and/or platform (operating system) efforts, helping project teams comply with enterprise and IT security policies, industry regulations, and best practices
  • Contribute to the alignment of security governance with ISO27001 and contribute to the development and maintenance of the information security strategy in accordance with the standard
  • Researches, designs, and advocates modern technologies, architectures, and security products that will support security requirements for the enterprise and its customers, business partners, and vendors
  • Analyses business impact and exposure, based on emerging security threats, vulnerabilities and risks
  • Communicates security risks and solutions to business partners and IT staff
  • Design security configuration guideline for information technology devices and systems, as well as mechanisms for assessing compliance with the guidelines
  • Design and build controls to address security risks and events as identified
  • Embrace a culture of continuous service improvement and service excellence
  • Stay up to date on security industry trends

Requirements

Required 5-10 years in the Information Security industry Strong experience with security strategy, with a passion to make security realistic, achievable and interwoven with the business fabric Strong experience with a broad range of Microsoft security technologies, including Defender, DLP, EOP, NAC, IDS/ IPS, IDAM, Certificate Management, SIEM, Endpoint Protection, Anti-malware, vulnerability management; Exposure to Office 365 E3 and EMS E3 security features such as; · Microsoft Intune · Azure Multi Factor Auth · Conditional Access Control · Self Service Password Reset configuration · Microsoft Cloud App Security · Azure ATP · Azure Sentinel · Azure Information Protection · Azure AD P1 & P2 · E5 features · Advanced eDiscovery · Customer Lockbox · Advanced Data Governance · Service Encryption with Customer Key (nice to have) · Office 365 Privileged Access Management · PowerShell scripting skills

  • Strong oral, written, and presentation abilities -able to convey risk to all levels of the business, from C-level executives to operations and development teams
  • Strong experience in migrating enterprise companies from traditional data centre infrastructure, application and data designs to hybrid or fully-cloud enabled practices
  • Strong experience with cloud provider ecosystems, including Microsoft Office 365 E5 SKUs and Microsoft Azure.
  • Some experience with Unix/Linux and Windows system administration
  • Some experience with logging and alerting platforms, including SIEM integration
  • Some proven ability in security process and organizational design
  • Current understanding of Industry trends and emerging threats
  • Knowledge of incident response methodologies and technologies.
  • Well-rounded background in network, host, database, and application security, * BSc 2:1 or better
  • Azure Administrator Associate
  • SSCP - Systems Security Certified Practitioner OR CCSP - Certified Cloud Security Professional
  • AZ-103 Microsoft Azure Administrator
  • MS-500 Microsoft 365 Security Administration
  • MS-101 Microsoft 365 Mobility and Security
  • MS-100 Microsoft 365 Identity and Services

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www1.jobdiva.co.uk

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

3:04 min

Database evolution and the funding behind vector databases

Erik Bamberg · LIVE

51 sec

Repurposing hardware and operating underwater data centers

Chris Heilmann +1 · LIVE

1:10 min

Exposing sensitive information through partial search logs

Dennis Schulz Dennis Schulz +1 · WWC Europe 2026

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

4:01 min

Managing application isolation via pluggable database models

Wei Hu Wei Hu · WWC 2022

Videos

See all

Related articles

See all