Skip to main content

This job has expired

Cyber Security Architect

Employer
GardPass Consulting
Location
Hybrid working (Farnborough)
Salary
75,000- 100,000 pa + package
Closing date
4 Feb 2025

Job Details

Required Skills:

As a Cyber Security Architect, you will be able to work with minimal direction on a specific MOD programme. You will ensure that the solution security design meets the customer functional and non-functional security requirements and provides the necessary assurance to our client, highly likely to be backed up by rigorous assurance and certification processes, normally HMG standards (including MOD-specific JSP), NCSC and NIST 800 standards.

You will have responsibility for interfacing to security design partners across the programme, both customer and supplier representatives, and colleagues within our engineering, service, and business development teams. You will ensure that the client can establish and maintain an effective and efficient security architecture for the programme, and that the designs will be able to adapt as customer requirements, legislation and assurance standards change over the programme lifespan.

Within the programme, the role will primarily be responsible to a solution architect and Chief Engineer for developing and delivering the relevant elements of the solution, whilst understanding the whole. 

•    You will be required to work in both delivery and change proposal environments.

•    You will have a complete understanding of cyber risk and treatment approaches. Based on a strong ability to communicate risk and its proportionate management, you will know how this issue is addressed both in traditional ‘on-premise’ highly sensitive platforms, and in public cloud technologies. 

•    You will be experienced and accomplished in meeting the challenges associated with assuring systems in public and private cloud environments.

•    You will be required to develop high- and low-level security architecture designs for systems intended for secure/sensitive environments, with appropriate security based on detailed risk analysis. SABSA qualifications and experience would be desirable.

•    You will be required to hold security clearance under National Security Vetting processes.

•    You may need to work on customer locations or one of our secure development locations, or a mix of both, as well as an element of working from home.


Essential:

•    British - Non-dual national – many of our projects have nationality restrictions


•    DV cleared

Process Skills/Experience:


•    Experience of a taking a defence in depth and multi layered approach to security architecture


•    Experience of applying commensurate detective and protective security controls to reduce risk to an acceptable level


•    Understanding of the controlling processes for, and experience of a significant portion of, the systems engineering lifecycle (e.g. requirements management, configuration management)


•    Understanding of different lifecycles/methodologies (incremental, SAFe agile, DevOps)


•    Experience of the key engineering lifecycle reviews – e.g. System Requirements Review (SRR), Critical Design Review (CDR)


•    Experience in performing design trade off working with other architects and engineers to deliver an integrated and coherent solution


•    Understanding of service operations and security operational management planning


•    Experience working in both delivery and proposal environments


•    Experience of Defence Digital and relevant solutions and approaches across MOD

Technology skills/Experience:


•    Excellent understanding of Confidentiality, Integrity and Availability (CIA) and practical experience in applying that


•    Experience in defining derived security requirements for a system, and managing traceability


•    Experience of gaining and maintaining accreditation or assurance for secure/sensitive systems


•    Experience in producing security assurance documentation sets (such as SyOPS, Security Management Plan, ISMS, and to support DART submissions)


•    Experience of network and boundary protection technologies (firewalls, mail gateways, load balancers, anti-virus), including cross domain technologies.


•    Experience of authentication and authorisation technologies (SAML, LDAP, PKI, etc)


•    Experience of security infrastructure in Public and Private cloud, e.g. virtual network infrastructure, hybrid IaaS/PaaS/SaaS solutions.


•    Experience of Virtualisation technologies.


•    Understanding of MOD ISN 23/09 Secure by Design.


•    Understanding of the implementation, operation and maintenance of SIEM products


•    The ideal candidate will hold CISSP certification and other industry qualifications such as Risk or Public/Private Cloud certifications.

Communication and Soft Skills:


•    Excellent verbal and written communication skills and works well in a team environment


•    Capable of developing and communicating a vision to meet the System Requirements


•    Ability to communicate complex technical ideas across a wide range of different audiences


•    A good level of commercial awareness that will support the bid and delivery environments
 

Company

Intelligent Recruitment

We constantly remind ourselves that people come first, so we have a commitment to providing an excellent personal service to our clients and candidates with the know-how to save you from wasted time and disappointment.

Our clients come from all commercial and industry sectors and, in particular, we have expertise in sourcing candidates in the land, marine, air, weapons, electronics, communications, avionics and cyber security domains.

GardPass Consulting bring a discerning approach to the resolution of both organisational recruitment requirements and individual career aspirations. 

Mobilising and placing individuals and large teams on a global basis at speed in complex situations is one of our specialities. We offer a wealth of experience and expertise in supplying project personnel on a worldwide basis, backed-up by a huge network of qualified, experienced professionals (many of them security-cleared at various levels). Many of our candidates have worked with us on several projects – often for the same client, by request.

Company info
Website
Telephone
+44 203 154 5026
Location
136 Tooley Street
London
London
SE1 2TU
United Kingdom

Get job alerts

Create a job alert and receive personalised job recommendations straight to your inbox.

Create alert