Cyber Security Architect

Cyber Security Architect

Posted 1 week ago by Hays

£725 Per day
Inside
Undetermined
Waterside, England, United Kingdom

Summary: The Cyber Delivery Assurance Lead role involves working closely with various teams to ensure the secure delivery of products within a leading airline company. The position requires providing assurance on cyber security policies and standards, managing senior stakeholders, and embedding security by design. The role is based in London and is a 12-month contract, requiring strong leadership and technical knowledge in cyber security. The successful candidate will be responsible for risk management and promoting cyber awareness across the organization.

Key Responsibilities:

  • Provide assurance to the Head of Cyber & IT Risk that product delivery and maintenance meet the client’s risk appetite and that controls are operating effectively.
  • Embed security by design with proportionate appropriate cyber controls aligned to risk.
  • Manage senior stakeholder relationships across multinational organisations, including third-party suppliers and delivery partners.
  • Assist the product team by interpreting and embedding Cyber Security policies, standards, guidelines, and procedures.
  • Engage proactively with the client Cyber Security Office (CSO) project assurance and architecture functions.
  • Provide authoritative advice on the application and operation of security controls, including legislative or regulatory requirements.
  • Advise users on risk management and reduction and promote awareness through cyber awareness programmes.

Key Skills:

  • Ability to undertake threat and risk assessments across varied technology stacks.
  • Demonstrates clear leadership and effective communication skills at senior levels.
  • Initiates and manages change to secure the future direction of the client.
  • Strong prioritisation skills across multiple products based on delivery strategy.
  • Broad technical knowledge of cyber security controls with relevant qualifications (e.g., CISSP, ISO27001).
  • Knowledge of NIST framework, PCI DSS, GDPR, and NIS.
  • Experience in an agile delivery environment is advantageous.
  • Specific cyber knowledge in areas such as cloud security, network security, and security architecture.
  • Experience working in a regulated environment with specific cyber requirements.

Salary (Rate): £725 daily

City: London

Country: United Kingdom

Working Arrangements: undetermined

IR35 Status: inside IR35

Seniority Level: undetermined

Industry: IT

Detailed Description From Employer:

I hope you’re okay! Are you ready for your next professional adventure? We share your motivation to progress your career and achieve your ambitions – so we want to let you know about the latest Cyber Delivery Assurance Lead- London role. Check out the details for this vacancy, with a world-leading airline company, below:

Location : Waterside, London

Contract ended : 12 months

Hours: Monday to Friday (37.5 hours a week)

Rate: £700- £725 per day through UMBRELLA (Inside IR35)

Job purpose: This role reports to the Head of Cyber & IT Risk, working closely with client Tech Delivery Teams, the client Cyber Team and the client Cyber Security Office. Act as the client Cyber representative on product delivery and operate as part of “product” teams, providing advice on the implementation of cyber security policies and standards across all releases and on-going maintenance.

Accountabilities:

  • Provide assurance to the Head of Cyber & IT Risk that product delivery and maintenance meet’s client’s risk appetite and that controls are operating effectively.
  • Successfully embedding security by design with proportionate appropriate cyber controls aligned to risk.
  • Senior stakeholder management (negotiation and influencing) across multinational organisations, including third party suppliers and delivery partners.
  • Take full responsibility for the secure delivery of programmes, by assisting the product team by interpreting and embedding Cyber Security policies, standards, guidelines and procedures to an agreed framework against all product team deliverables.
  • Engage proactively with the client Cyber Security Office (CSO) project assurance and architecture functions, ensuring consistency and best cyber practice is adhered to.
  • Provide authoritative advice and guidance on the application and operation of all types of security controls including legislative or regulatory requirements.
  • Advise users on risk management and reduction and promote awareness in conjunction with cyber awareness programmes.

Skills

  • Ability to undertake threat and risk assessments across varied technology stacks, identifying suitable mitigating controls.
  • Demonstrates clear leadership and an ability to communicate, influence and persuade across the organisation at senior levels, leading by example and aligning stakeholder groups around a common vision.
  • Initiates and manages change to help secure the future direction of client.
  • Prioritisation across multiple products, based on overall product team structure and delivery strategy.
  • Strong ability to work under pressure in a changing environment

Qualification

  • Broad technical knowledge of cyber security controls demonstrated by attainment of appropriate qualifications e.g. CISSP, ISO27001 Lead Implementor or relevant SANS GIAC or equivalent
  • Knowledge of the NIST framework, PCI DSS, GDPR and NIS as well as NCSC cyber guidance.
  • Experience working in an agile delivery environment would be highly advantageous.
  • Specific cyber knowledge and demonstrable experience in at least one of the following areas: Cloud security, network security, digital security (multi-platform), infrastructure security, security by design, security architecture
  • Experience working in a regulated environment with specific cyber requirements that require interpretation and application.

Key performance indicators

  • Collaborative engagement in programme and product governance to ensure secure delivery.
  • Regular, accurate updates to stakeholders on security deliverables for programmes and products.
  • Identify, report and manage cyber security risks and exceptions for products throughout their lifecycle.

Start Date ASAP

Interested in applying? Just reply with an up-to-date copy of your CV to get the ball rolling. Or if it is not quite right for you, but you have someone in mind for the role – please let me know.