Security Architect

Datasource
UK
3 months ago

Role details

Contract type
Permanent contract
Employment type
Part-time (≤ 32 hours)
Compensation
£80,000.0 - £95,000.0
Working hours
Shift work

Tech stack

Software System Penetration Testing Cyber Security Javaserver Pages Mod Security Software Vulnerability Management Backend

Job description

· Lead the architecture, design, and implementation of endpoint security solutions across backend platforms.

· Design and deliver security capabilities for offline, air-gapped environments including secure update mechanisms.

· Define and implement vulnerability management frameworks covering scanning, risk prioritisation, and remediation.

· Ensure all solutions comply with MOD and UK Government security policies including JSP and NCSC guidance.

· Conduct security assurance activities including design reviews, compliance assessments, and audit support.

· Produce and maintain formal security documentation including HLDs, LLDs, SOPs, and accreditation evidence.

· Support MOD risk management and accreditation processes in line with governance requirements.

· Define penetration testing scope for both backend platforms and end-user endpoints.

Requirements

Our client is looking for an experienced Security Architect with deep expertise in endpoint security and vulnerability management to support a high-profile UK Government defence account. You’ll be designing and delivering security capabilities within secure, air-gapped environments, so hands-on experience in offline network security is essential., · Demonstrable experience as a Security Architect or senior security SME in secure or regulated environments.

· Proven ability to design and deliver enterprise AV and Endpoint Detection and Response (EDR) solutions.

· Strong hands-on experience with vulnerability management platforms, lifecycle processes, and remediation reporting.

· Solid experience working in offline or air-gapped environments including secure patching and AV signature management.

· Working knowledge of MOD security standards including JSP 440, JSP 604, JSP 453, and NCSC guidance.

· Experience applying the NIST Cybersecurity Framework within platform and endpoint security design.

· Ability to produce formal technical documentation including HLDs, LLDs, security architecture docs, and SOPs.

· Experience supporting security accreditation, risk management, and compliance evidence generation for MOD programmes.

The client would also like to see some of the below, but this is not essential:

· Previous experience working within the Defence and/or Aerospace sector.

· Familiarity with classified or high-assurance government environments.

· Understanding of MOD operating models and delivery frameworks.

· Experience supporting incident response within restricted or disconnected networks.

Benefits & conditions

· Flexible working arrangements.

· Provide expert financial guidance to help you select a pension plan tailored to your lifestyle.

· Company culture that places a premium on achieving a healthy work-life balance.

· Offer competitive bonuses and generous compensation packages.

· Prioritise traits such as curiosity and a good-natured sense of humour.

· Encourage and assist staff in participating in local community initiatives.

· 25 days holiday + bank holidays

· Buy/Sell holiday

· Death in Service - 3x salary

· Performance Bonus

· Cycle to work scheme

· Pension Scheme, RECOMMEND A FRIEND: If you have professional friends/colleagues who would be interested in one of our roles and our excellent levels of service too, we’d like to recognise your recommendations with a ‘thank you’ of our own. For every friend you refer who then starts a role through Datasource either Contract or Permanent, we will send you £200 of Love to Shop Gift Vouchers & gift your friend £100 in Love to Shop Gift Vouchers as well!

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on datasourcerecruitment.co.uk

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

1:52 min

Structuring and scaling the backend engineering team

Stefan Lingler Stefan Lingler +1 · Coffee With Developers

2:57 min

Securing sensitive defense infrastructure with dual-vendor cloud strategies

Boris Hecker Boris Hecker +3 · WWC 2025

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

1:12 min

Choosing TypeScript for complex backend applications

Maximilian Otto Maximilian Otto · WWC 2024

Videos

See all

Related articles

See all