Security Architect - SC Cleared

Sanderson Recruitment Plc
London, UK
1 day ago
Apply on www.careerboard.com
Prepare application

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Compensation
£141,700.0 - £153,400.0
Working hours
Regular working hours

Tech stack

Amazon Web Services Microsoft Azure Bash Shell Cloud Computing Cloud Computing Security Cloud Engineering Cyber Security Continuous Integration DevOps Github Identity and Access Management Information Systems Security Architecture Professional
+21 more
Python (Programming Language) Open Web Application Security Windows PowerShell Cloud Services Zero Trust Network Access Sherwood Applied Business Security Architecture Google Cloud Cloud Platform System Gitlab Togaf SC Clearance Kubernetes Microsoft Sentinel CIS Benchmarks Terraform Prisma Cloud Platform Splunk Devsecops Qualys Docker Jenkins

Job description

We are seeking an experienced Security Architect to join a specialist consultancy supporting the delivery of critical government projects and digital transformation programmes.

This is an exciting opportunity to play a key role in shaping and securing complex cloud environments, ensuring the confidentiality, integrity, and resilience of essential public services. As a Security Architect, you will lead the design and implementation of secure cloud architectures, provide architectural assurance, and champion security-by-design principles across large-scale programmes.

Working closely with engineering, DevOps, infrastructure, security, and delivery teams, you will provide technical leadership, influence strategic decisions, and help clients strengthen their cyber security posture within highly regulated environments., * Define and maintain cloud security architecture, standards, and security frameworks across multiple projects.

  • Design secure cloud solutions that meet business, operational, security, and compliance requirements.
  • Ensure architectures align with recognised security standards, industry frameworks, and architectural best practices.
  • Establish security patterns, principles, and reusable standards for adoption across delivery teams.

Security Strategy & Governance

  • Lead the development and continuous improvement of cloud security strategies and roadmaps.
  • Ensure security requirements are Embedded within technology and business initiatives from inception.
  • Support governance activities through architectural assurance and security guidance.
  • Conduct design reviews and provide recommendations relating to security risks and control effectiveness.

Security Controls & Risk Management

  • Define, document, and oversee the implementation of cloud security controls.
  • Identify security risks within cloud environments and recommend mitigation strategies.
  • Conduct security assessments and architecture reviews to validate security and compliance requirements.
  • Support threat modelling activities and risk assessments for new and existing services.

Cloud Security Operations

  • Support the transition of cloud solutions into operational security environments.
  • Ensure operational teams have the controls, monitoring capabilities, and processes required to manage secure services.
  • Collaborate with Security Operations, Incident Response, Engineering, and Platform teams to maintain secure systems.
  • Drive continuous improvement within security monitoring and incident response capabilities.

Stakeholder Engagement

You will work closely with:

  • Cloud Engineering Teams
  • Infrastructure Teams
  • Security Operations Teams
  • DevOps Teams
  • Enterprise Architects
  • Programme and Delivery Leadership

You will provide expert security guidance throughout solution design and implementation while communicating technical risks and recommendations to senior stakeholders.

Requirements

  • Proven experience as a Security Architect, Cloud Security Architect, or Enterprise Security Architect.
  • Expertise in:
  • Cloud Security Planning
  • Cloud Security Architecture
  • Cloud Infrastructure Security
  • Cloud Security Assessment
  • Managed Cloud Security Services
  • Strong understanding of secure cloud design principles and architecture methodologies.
  • Experience securing large-scale cloud environments.
  • Strong knowledge of cloud-native security controls and services.
  • Experience with threat modelling, risk assessments, and security architecture reviews.
  • Ability to translate business requirements into secure technical solutions.
  • Experience working within highly regulated environments.
  • Strong stakeholder management and communication skills.
  • Active SC Clearance.

Desirable

  • Experience supporting government departments, public sector organisations, or Critical National Infrastructure programmes.
  • Knowledge of:
  • Zero Trust Architecture
  • Secure by Design Principles
  • DevSecOps Methodologies
  • Security Operations & Incident Response
  • Identity & Access Management (IAM)
  • Data Protection & Privacy Controls
  • Enterprise Security Architecture Frameworks
  • Familiarity with:
  • NCSC Cloud Security Principles
  • ISO 27001
  • NIST Cybersecurity Framework
  • CIS Controls
  • OWASP

Technical Experience

Cloud Platforms

  • AWS
  • Microsoft Azure
  • Google Cloud Platform (GCP)

Security Technologies

  • Microsoft Defender Suite
  • Splunk
  • Microsoft Sentinel
  • CrowdStrike
  • Prisma Cloud
  • Wiz
  • Lacework
  • Tenable
  • Qualys

Infrastructure & DevOps

  • Kubernetes
  • Docker
  • Terraform
  • GitHub
  • GitLab
  • Jenkins
  • CI/CD Security Tooling

Scripting & Automation

  • Python
  • PowerShell
  • Bash

Preferred Certifications

  • CISSP (Certified Information Systems Security Professional)
  • CCSP (Certified Cloud Security Professional)
  • SABSA
  • TOGAF
  • Microsoft Certified: Azure Security Engineer Associate
  • Google Professional Cloud Security Engineer
  • CRISC
  • CISM

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerboard.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

6:14 min

Structuring CI/CD pipelines with integrated security and quality checks

Christoph Ruggenthaler · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

4:54 min

Implementing geographic salary tiers for compensation equity and fairness

Rudi Bauer Rudi Bauer +1 · Cappuccino with HR

Videos

See all

Related articles

See all