DV Cleared Security Architect

Synergize Consulting Ltd
Corsham, UK
3 days ago

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours

Tech stack

Antivirus Softwares Software System Penetration Testing Cyber Security Software Design Documents Javaserver Pages Mod Security Software Vulnerability Management EndPointSecurity Cloud Platform System Vulnerability Analysis

Job description

We are supporting a leading global technology services organisation on a high-profile UK Government programme and are looking for an experienced DV Cleared Security Architect to join a specialist team delivering security architecture and assurance within highly secure, mission-critical environments.

This is an exciting opportunity for a security professional with expertise in platform security, endpoint protection, vulnerability management and secure infrastructure design to work on a complex programme supporting defence-critical systems.

The Role

As the Security Architect, you will lead the design, implementation and assurance of security controls across Back End platforms and endpoint environments operating within secure, offline (air-gapped) networks.

Working closely with infrastructure, platform and security teams, you will ensure solutions meet UK Government and MOD security standards while supporting security accreditation and operational assurance activities.

Key Responsibilities

  • Lead the architecture and design of enterprise security solutions.
  • Design platform security controls aligned to NIST Cybersecurity Framework and MOD security policies.
  • Deliver enterprise Anti-Virus, Endpoint Protection and Endpoint Detection & Response (EDR) capabilities.
  • Design vulnerability management frameworks, scanning strategies and remediation processes.
  • Develop secure patching, update and threat intelligence processes for air-gapped environments.
  • Produce High Level Designs (HLDs), Low Level Designs (LLDs), security architecture documentation and operational procedures.
  • Support security assurance, compliance assessments and accreditation activities.
  • Work closely with infrastructure and engineering teams to ensure secure-by-design delivery.
  • Define penetration testing scope for Back End platforms and endpoint environments.
  • Engage with technical and business stakeholders across secure customer sites.

Requirements

  • Proven experience as a Security Architect or senior Security SME.
  • Strong background designing enterprise security architectures within secure or regulated environments.
  • Experience with:
  • Endpoint Protection
  • Endpoint Detection & Response (EDR)
  • Anti-Virus platforms
  • Vulnerability Management
  • Endpoint Hardening
  • Platform Security Controls
  • Experience working within air-gapped or highly secure environments.
  • Strong understanding of vulnerability assessment, remediation and risk management.
  • Experience producing technical design documentation including HLDs, LLDs and security architecture documents.
  • Excellent stakeholder management and communication skills.

Security & Compliance Knowledge

Experience working with one or more of the following is highly desirable:

  • NIST Cybersecurity Framework
  • NCSC Cyber Security Design Principles
  • Secure by Design
  • JSP 440
  • JSP 604
  • JSP 453
  • Security Accreditation & Assurance
  • Risk Management & Compliance

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerboard.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

5:25 min

Shifting left and creating internal security champion programs

Vandana Verma Sehgal · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

4:27 min

Embracing a new perspective on mobile cyber attacks

Tom Tovar · WWC 2023

Videos

See all

Related articles

See all