Security Architect

ISR Recruitment
Southampton, UK
18 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours

Tech stack

Application Programming Interfaces (APIs) Cloud Computing Cyber Security Data Security Data Sharing Distributed Systems Federated Identity Management Identity and Access Management OAuth Openid Connect Zero Trust Network Access Security Assertion Markup Language (SAML)
+2 more
Policy as Code Legacy Systems

Job description

The Opportunity: We are seeking an experienced Security Architect (Identity and Access Management Specialist) to support the delivery of a secure, scalable and interoperable data-sharing infrastructure that allows organisations in different sectors to manage and exchange information securely while maintaining control over their own data. Working across multiple workstreams, you will be responsible for leading the design of security, identity and policy enforcement capabilities, focusing on federated identity, Attribute-Based Access Control (ABAC), policy-as-code and secure data discovery and access. You will be working closely with architects, governance leads, developers and stakeholders, that will see you translate business, risk and policy requirements into secure, scalable and practical technical solutions. This role is supporting a major public-sector organisation delivering a large-scale digital transformation programme - replacing legacy systems with a modern, integrated solution that will significantly enhance operational capability across critical services.

Requirements

Skills and Experience:Proven security architecture experience on complex federated enterprise solutions.Strong knowledge of federated identity, trust frameworks (e.g. Zero Trust) and IAM.Strong understanding of cloud, API and distributed system security.Practical experience with OAuth2, OpenID Connect, SAML and SCIM.Practical experience designing ABAC and policy-based access control solutions.Practical experience with Open Policy Agent and policy-as-code solutions at scale.Practical experience HMG security assurance (e.g. NCSC Cyber Assessment Framework).Ability to produce high-quality architecture and security design documentation.Ability to translate complex security concepts for technical and non-technical audiences.Comfortable working with ambiguity and shaping emerging requirements. DesirableExperience with federated data-sharing platforms or data ecosystems.Ontologies, semantic data models or knowledge graphs.Public sector, regulated industry, critical infrastructure or federated ecosystem solutions. Role and Responsibilities:Design security Non-Functional Requirements.Lead on service wide threat modelling.Define and implement ABAC and policy-as-code approaches using Open Policy Agent.Define patterns for discovery, access requests, policy enforcement and auditability.Design integration with identity providers, IAM platforms and node-level services.Support testing, validation and pilot activities to ensure consistent policy enforcement.

Benefits & conditions

IT Security Identity and Access Management Specialist6-month contractRemote WorkingOutside IR35Market Rates (c£600 to £625 per day)

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.apply4u.co.uk

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

3:18 min

Utilizing AI and public data sharing for urban planning

Christian Wiegand +3 · WWC 2024

4:04 min

Embedding data security and applied ethics into developer education

Daniel Tao +3 · WWC 2024

5:21 min

Protecting infrastructure with the shared responsibility model

Mustafa Toroman · WWC 2023

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

Videos

See all

Related articles

See all