Security Architect (UKSV)

Cabinet Office
Glasgow, UK
10 days ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Part-time / full-time
Experience level
Expert
Compensation
ÂŁ45,292.0 - ÂŁ49,988.0
Working hours
Shift work
Job source

Tech stack

Amazon Web Services Microsoft Azure Cloud Computing Security Cyber Security Databases Continuous Integration Identity and Access Management Intrusion Detection Systems Network Security Oracle (Applications) Zero Trust Network Access Security Information and Event Management
+9 more
Trusted Systems Software Vulnerability Management Wide Area Networks Software Security Multi-Cloud SC Clearance Containerization Patch Management Oracle Cloud Infrastructure

Job description

As an SEO Security Architect, you will provide guidance to technical teams, enabling them to make risk-informed design decisions across services, infrastructure, and platforms. Operating at the Practitioner level within the Government Digital and Data Framework, you will balance security requirements with delivery needs, applying NCSC principles and “Secure by Design” guardrails., You will work closely with Delivery Managers, Technical Architects, Software Engineers, and Information Risk Owners to design systems that are resilient to compromise, easy to monitor, and proportionate in their security controls.

Example of tasks performed within the role:

  • Support the design, documentation and review of secure multi-cloud and hybrid architectures
  • Participate in structured threat modeling and architecture risk assessments across cloud and on-prem workloads
  • Maintain and evolve security architecture artefacts while tracking emerging cloud security capabilities
  • Assist in configuring and monitoring cloud security posture, vulnerability management and telemetry tools
  • Provide architectural guidance and control recommendations in response to internal cybersecurity inquiries
  • Report to Lead Security Architect and expect to grow into architectural ownership with mentorship, If a person with disabilities is put at a substantial disadvantage compared to a non-disabled person, we have a duty to make reasonable changes to our processes., Please note that this role requires SC clearance, which would normally need 5 years’ UK residency in the past 5 years. This is not an absolute requirement, but supplementary checks may be needed where individuals have not lived in the UK for that period. This may mean your security clearance (and therefore your appointment) will take longer or, in some cases, not be possible.

For further information on National Security Vetting please visit the Demystifying Vetting website.

Applicants who are successful at interview will be, as part of pre-employment screening, subject to a check on the Internal Fraud Database (IFD). This check will provide information about employees who have been dismissed for fraud or dishonesty offences. This check also applies to employees who resign or otherwise leave before being dismissed for fraud or dishonesty had their employment continued. Any applicant’s details held on the IFD will be refused employment.

A candidate is not eligible to apply for a role within the Civil Service if the application is made within a 5 year period following a dismissal for carrying out internal fraud against government.

Please note terms and conditions are attached. Please take time to read the document to determine how these may affect you.

New entrants are expected to join on the minimum of the pay band.

Feedback Feedback will only be provided if you attend an interview or assessment.

Security

Successful candidates must undergo a basic (or equivalent) criminal record check. Successful candidates must meet the security requirements before they can be appointed. The level of security needed is security check .

See our vetting charter . People working with government assets must complete baseline personnel security standard (opens in new window) checks.

Requirements

  • Personally taking responsibility for delivering a timely, high quality and cost effective service with focus and energy.
  • Ability to empower and make changes that add value, with a strong focus on improved outcomes and performance by encouraging innovation, giving people the space to take initiative in flexible interdependent communities.
  • Be visible, accessible, you communicate confidently and provide clear direction reflecting genuine care for colleagues.
  • Demonstrate positive customer service outcomes by understanding the complexity and diversity of customer needs and expectations.
  • Have the ability to establish and maintain strong relationships at all levels in the organisation, working collaboratively across teams, engaging and building trust to generate commitment to goals.
  • Have an interest in looking for flaws in the way systems are used, built and maintained and the identification of mitigation opportunities.

Essential:

  • Security Architecture Principles: Proven experience applying secure design patterns, Zero Trust concepts, and protective security controls to cloud (Oracle/AWS/Azure/GCP) or hybrid infrastructure.
  • Enabling Risk-Based Decisions: Ability to evaluate vulnerabilities, articulate risk impact clearly, and recommend cost-effective, proportionate mitigations.
  • Technical Knowledge: Strong grounding in core infrastructure and application security, including identity management (IAM), network security, cryptography, containerisation, and CI/CD pipelines.
  • Standards & Frameworks: Familiarity with UK Civil Service and national cyber security frameworks (NCSC Design Principles, GovAssure / Cyber Assessment Framework, Secure by Design).
  • Communication: Strong interpersonal skills with the ability to influence delivery teams, challenge non-secure practices pragmatically, and explain technical risks to non-technical partners.
  • Hands-on experience with security solutions (e.g. EDR/AV, MDM, patch management and endpoint hardening).
  • A strong understanding of how vulnerabilities occur and how they are exploited.

Desirable:

  • Similar architecture experience in public sector.
  • Experience of legacy migration and re-platforming of digital services.
  • Interest in forming government best practices, standards and policies.
  • Experience in managing commercial suppliers to deliver digital services.
  • Experience with Oracle Cloud Infrastructure (OCI).
  • Experience with Vulnerability Management and Remediation.
  • Knowledge of network security tools (e.g. SIEM, IDS/IPS and SD-WAN)., This vacancy is using Success Profiles , and will assess your Behaviours, Experience and Technical skills., At interview, you will be assessed on the Behaviours, Experience and Technical elements of the Success Profiles.

The Behaviours being assessed are Changing and Improving and Making Effective Decisions.

Please refer to the Government Digital and Data Profession Capability Framework here then search for the role and grade you are applying for. Technical is the demonstration of specific professional skills, knowledge or qualifications which will be assessed at interview. We’ll be assessing your experience and specialist technical skills against the following skills defined in the Digital, Data and Technology Profession Capability Framework for Security Architect.

  • Analysis
  • Communication (Security Architect)
  • Designing Secure Systems
  • Enabling and informing risk-based decisions
  • Research and Innovation
  • Security Technology
  • Understanding security implications of transformation

Interviews will be held face-to-face in Glasgow and York. If you are not able to attend any of the available interview dates we may not be able to offer alternatives.

Benefits & conditions

ÂŁ45,292 - ÂŁ49,988, Alongside your salary of ÂŁ45,292, Cabinet Office contributes ÂŁ13,121 towards you being a member of the Civil Service Defined Benefit Pension scheme. Find out what benefits a Civil Service Pension provides .

  • Learning and development tailored to your role.
  • An environment with flexible working options.
  • A culture encouraging inclusion and diversity.
  • A Civil Service Pension which provides an attractive pension, benefits for dependants and employer contributions of 28.97%.
  • A minimum of 25 days of paid annual leave, increasing by one day per year up to a maximum of 30.

About the company

This role will be based in either Glasgow or York. UKSV operates a hybrid working policy.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:22 min

Overcoming developer challenges in multi-cloud environments

Sandeep Pal Sandeep Pal ¡ Coffee With Developers

4:01 min

Managing application isolation via pluggable database models

Wei Hu Wei Hu ¡ World Congress 2022

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira ¡ Coffee With Developers

1:20 min

Introduction to multi-cloud development infrastructure

Sandeep Pal Sandeep Pal ¡ Coffee With Developers

3:04 min

Database evolution and the funding behind vector databases

Erik Bamberg ¡ LIVE

10:42 min

Essential soft skills and evaluating security candidates

Kurt Eder ¡ LIVE

Videos

See all

Related articles

See all