security architect
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+6 more
Job description
- Roles available at multiple seniority levels roles available - suitable for applicants with 5-10+ yearsâ experience
- Base Office Location: Bristol or London
- Mandatory Requirement: Active (or eligible for) UK Security Check (SC) or Developed Vetting (DV) security clearance.
A Security Architect operates as a senior member of the team, responsible for the design of technical security solutions, maintaining documentation and developing architecture patterns and approaches for new technologies and solutions.
The Security Architect will lead the technical engagement and bring together technical security SMEs such as Identity, Security Testing and Privacy to solve the business problem.
As a senior member of the technical team, security architects must develop relationships with key stakeholders, understand a clientâs security policy framework, and design solutions that will meet our client requirements.
Our projects vary greatly and your responsibility as a security architect will differ based on the focus of the client engagement and your skillset, but could include and may require you to:
-
Understand clientsâ policies and security landscapes and create vision, principles and architecture solutions
-
Articulate, communicate, and justify design decisions to non-technical stakeholders
-
Maintain relationships with senior technical stakeholders
-
Learn new technical solutions from vendors and articulate how they solve client problems by providing the technical design to be adopted (Architecture Patterns)
-
Collaborate with vendors and third-party partners to ensure the security of external systems and data exchanges.
-
Provide specialist technical advice, recommended approaches, recommended security controls, & identify solutions that meet client business objectives.
-
Develop and maintain security architectures, ensuring alignment with business goals, industry standards, established patterns and regulatory requirements.
-
Stay up to date with emerging security threats, technologies, and industry best practices, and provide recommendations for improvement.
-
Conduct security audits and assessments to identify gaps and recommend remediation actions.
-
Conduct risk assessments and scoping vulnerability assessments to identify potential security threats and vulnerabilities.
Requirements
All applicants must be willing and eligible to apply for and obtain UK security clearance to Security Check (SC) or Developed Vetting (DV) level, if not holding an existing clearance.
Candidates will be able demonstrate relevant knowledge & experience through a combination of qualifications and evidence of work history such as:
-
Information Security qualification (or equivalent) e.g. CISSP.
-
In-depth knowledge of security frameworks, standards, and best practices (e.g., ISO 27001, NIST, CIS).
-
Experience as a Security Architect or in a similar role, with a strong track record of designing and implementing security controls and/or solutions and leading technical teams.
-
Experience with architecture methodology such as TOGAF or SABSA
-
Experience of threat and risk modelling
-
Strong understanding of network security, encryption, authentication, and access control mechanisms.
-
Experience with security technologies such as firewalls, intrusion detection/prevention systems, security information and event management (SIEM) systems, and vulnerability assessment tools, and their configuration options.
-
Familiarity with cloud security principles and best practices, including securing cloud-based infrastructure and services (AWS, Azure or Google)
-
Experience of DevSecOps
-
Experience researching technology trends and ways to secure those technologies.
-
Experience with automated deployment techniques and CI/CD pipelines.
-
Experience working in or with Government organisations, including the handling of assets subject to the Government Security Classification Policy.
-
Knowledge of Government cyber requirements related to Defence and Security e.g. Secure by Design, JSP 440.
About the company
Distinctive thinking, deep expertise, innovation and collaborative working. Thatâs what connects us. Thatâs what makes us Deloitte. If you want to help solve some of the biggest tech and transformational challenges around, join us. Together, weâll make an impact that matters.
Cyber
The modern world is more complex than ever before, and we are navigating an ever-changing landscape. We help clients to operate with resilience and grow with confidence to secure success and minimise risk., Deloitte drives progress. Using our vast range of expertise, we help our clientsâ become leaders wherever they choose to compete. To do this, we invest in outstanding people. We build teams of future thinkers, with diverse talents and backgrounds, and empower them all to reach for and achieve more.
What brings us all together at Deloitte? Itâs how we approach thousands of decisions we make every day. How we behave, our beliefs, and our attitudes. In other words: our values. Whatever we do, wherever we are in the world, we lead the way, serve with integrity, take care of each other, foster inclusion, and collaborate for measurable impact. These five shared values lead every decision we make and action we take, guiding us to deliver impact on how and where it matters most., âThe opportunities to make a difference here are huge. Weâre constantly encouraged to come up with ideas, so a lot of what we do to drive change comes from within our own workforce.
- Gurpal, T&T
âInnovation is at the heart of everything we do, so weâre using the latest technologies to constantly improve how we deliver our projects and bring insights to our clients. It means Iâm always learning.â - Gurpal, T&T
Our commitment to you
Making an impact is more than just what we do: itâs why weâre here. So, we work hard to create an environment where you can experience a purpose you believe in, the freedom to be you, and the capacity to go further than ever before.
We want you. The true you. Your own strengths, perspective, and personality. So weâre nurturing a culture where everyone belongs, feels supported and heard, and is empowered to make a valuable, personal contribution. You can be sure weâll take your wellbeing seriously, too. Because itâs only when youâre comfortable and at your best that you can make the kind of impact you, and we, live for.
Your expertise is our capability, so weâll make sure it never stops growing. Whether itâs from the complex work you do, or the people you collaborate with, youâll learn every day. Through worldclass development, youâll gain invaluable technical and personal skills. Whatever your level, youâll learn how to lead., A career at Deloitte is an opportunity to develop in any direction you choose. Join us and youâll experience a purpose you can believe in and an impact you can see. Youâll be free to bring your true self to work every day. And youâll never stop growing, whatever your level.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on apply.deloitte.co.ukGood distractions
Talks and stories from around this role â technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
Understanding and Mitigating Common Web Vulnerabilities
9 Ways to Make Money Hacking
The 12 Best Jobs for Software Engineers