£700 Per day
Inside
Hybrid
Greater Manchester, UK
Summary: The Cyber Security Architect role involves developing and maintaining security architecture for key domains within a financial organization. The successful candidate will work on-site in Knutsford twice a week and will be responsible for ensuring that security principles and requirements are met across various projects. This position requires collaboration with stakeholders and a strong understanding of cyber security trends and technologies. The role is a 6-month contract with the potential for extension.
Key Responsibilities:
- Ensure there is a current Security Architecture defined and maintained for key domains (eg, Endpoint, Cloud, Network, etc.) which clearly outlines the security principles, requirements and capabilities required and how those are instantiated
- Ensure there is an architectural vision for all projects that at minimum has a component architecture and high-level business process defined (including the product owner and operational team)
- Ensure architecture artefacts allow to us to quickly answer and evidence routine regulatory queries and attestations
- Ensure there is a fit for purpose set of Functional and Non-Functional Requirements for project technology deliveries
- Map security tooling deployed in the estate (including non-standard environments and non-CISO managed technologies) to the capabilities it implements (not the set of product features - what is actually in use and operationalised)
- Review all planned CEP projects have correctly aligned scope and technology/platform strategy
- Provide input to and take ownership of relevant architectural artefacts that will be produced as part of CEP outcomes
- Surveil emerging threats and emerging technologies to identify opportunities for targeted innovation exercises such Proof of Value evaluations
- Produce patterns which outline solutions for commonly occurring business security needs and security service consumption
- Validate patterns are adopted by control domain solutions
- Support Security Consultants as required on complex engagements and provide architectural artefacts such as patterns and principles where necessary
Key Skills:
- Ability to collaborate with stakeholders to connect dots and achieve implementation and integration of security capabilities across the organisation
- Understand, pioneer and drive continuous learning within the team around evolving technologies, security, and regulatory trends in domain area (eg, Data Security, Application Security) and identify new opportunities to advance cyber security capabilities in response to them - always driving an outside-in mentality to learn from best in class
- Participate in/contribute to security architecture reviews and governance to identify security design gaps in existing and proposed security projects and recommend approaches to resolve them
- Engage with development teams to ensure they understand and adhere to critical security requirements across all business applications and drive developers toward preferred approaches for achieving those requirements when available
- Able to synthesize and distil key inputs to make rapid and qualified architectural decisions
- Able to identify, log, and track key risks arising because of design choices, where appropriate
- Exhibits strong problem-solving capabilities leveraging significant technical knowhow and wider team knowledge
- Can find innovative solutions to issues and achieve stakeholder buy-in
- Able to instil a focus on quality and security first mentality
- Strong understanding of the methods and means of cyber-attacks and how to defend against them
- In depth technical knowledge of cyber security and continuous integration/continuous delivery development methods
- Knowledge of the cyber security marketplace and how to apply its capabilities to solve cyber challenges
- Proven ability to drive change/provide thought leadership
- Advanced degree and/or work experience in relevant technical topics
- Strong written and spoken communications skills including the ability to develop effective messaging for technical, non-technical, and senior leadership audiences
Salary (Rate): £700 daily
City: Knutsford
Country: UK
Working Arrangements: hybrid
IR35 Status: inside IR35
Seniority Level: undetermined
Industry: IT
Job Title: Cyber Security Architect - Hybrid/Knutsford
Location: Knutsford - Twice a week
Salary/Rate: Up to £700 a day Inside IR35
Start Date: June
Job Type: 6 Month Contract (with scope to extend)
Company Introduction
We are looking for a Cyber Security Architect to join out client in the Financial industry.
*The successful candidate must be able to work onsite in Knutsford twice a week*
Job Responsibilities/Objectives
- Ensure there is a current Security Architecture defined and maintained for key domains (eg, Endpoint, Cloud, Network, etc.) which clearly outlines the security principles, requirements and capabilities required and how those are instantiated
- Ensure there is an architectural vision for all projects that at minimum has a component architecture and high-level business process defined (including the product owner and operational team)
- Ensure architecture artefacts allow to us to quickly answer and evidence routine regulatory queries and attestations
- Ensure there is a fit for purpose set of Functional and Non-Functional Requirements for project technology deliveries
- Map security tooling deployed in the estate (including non-standard environments and non-CISO managed technologies) to the capabilities it implements (not the set of product features - what is actually in use and operationalised)
- Review all planned CEP projects have correctly aligned scope and technology/platform strategy
- Provide input to and take ownership of relevant architectural artefacts that will be produced as part of CEP outcomes
- Surveil emerging threats and emerging technologies to identify opportunities for targeted innovation exercises such Proof of Value evaluations
- Produce patterns which outline solutions for commonly occurring business security needs and security service consumption
- Validate patterns are adopted by control domain solutions
- Support Security Consultants as required on complex engagements and provide architectural artefacts such as patterns and principles where necessary
General skills/expertise
- Ability to collaborate with stakeholders to connect dots and achieve implementation and integration of security capabilities across the organisation
- Understand, pioneer and drive continuous learning within the team around evolving technologies, security, and regulatory trends in domain area (eg, Data Security, Application Security) and identify new opportunities to advance cyber security capabilities in response to them - always driving an outside-in mentality to learn from best in class
- Participate in/contribute to security architecture reviews and governance to identify security design gaps in existing and proposed security projects and recommend approaches to resolve them
- Engage with development teams to ensure they understand and adhere to critical security requirements across all business applications and drive developers toward preferred approaches for achieving those requirements when available
- Able to synthesize and distil key inputs to make rapid and qualified architectural decisions
- Able to identify, log, and track key risks arising because of design choices, where appropriate
- Exhibits strong problem-solving capabilities leveraging significant technical knowhow and wider team knowledge
- Can find innovative solutions to issues and achieve stakeholder buy-in
- Able to instil a focus on quality and security first mentality
- Strong understanding of the methods and means of cyber-attacks and how to defend against them
- In depth technical knowledge of cyber security and continuous integration/continuous delivery development methods
- Knowledge of the cyber security marketplace and how to apply its capabilities to solve cyber challenges
- Proven ability to drive change/provide thought leadership
- Advanced degree and/or work experience in relevant technical topics
- Strong written and spoken communications skills including the ability to develop effective messaging for technical, non-technical, and senior leadership audiences
If you are interested in this opportunity, please apply now with your updated CV in Microsoft Word/PDF format.
Disclaimer
Notwithstanding any guidelines given to level of experience sought, we will consider candidates from outside this range if they can demonstrate the necessary competencies.
Square One is acting as both an employment agency and an employment business, and is an equal opportunities recruitment business. Square One embraces diversity and will treat everyone equally. Please see our website for our full diversity statement.