Key Responsibilities
- Review and refresh existing Cyber Security Impact Assessments (CSIAs) across a portfolio of live digital products and services.
- Assess existing threat models and security architectures to ensure they reflect current risks and technology changes.
- Provide security architecture guidance across projects from initial design through to delivery.
- Conduct security risk assessments and provide recommendations for security improvements.
- Support technical teams with secure design reviews and architectural assurance.
- Review and advise on security improvements across areas including:
- Network security
- Firewall technologies
- Secure remote access/VPN solutions
- Virtualisation environments
- Security monitoring and endpoint protection tooling
- Identity and access controls
- Infrastructure security
- Work with engineering and DevOps teams to ensure security is Embedded throughout the delivery life cycle.
- Produce clear security documentation, architectural recommendations, and risk treatment plans.
- Support governance activities and security assurance processes.
Required Experience
- Proven experience working as a Security Architect/Cyber Security Consultant within complex enterprise environments.
- Strong background in security architecture, risk assessments and technical security reviews.
- Experience reviewing and producing security impact assessments or similar security assurance documentation.
- Ability to assess technical solutions and provide practical security recommendations.
- Strong understanding of:
- Network security architecture
- Firewalls and secure connectivity
- VPN technologies
- Security monitoring solutions
- Endpoint security controls
- Cloud and infrastructure security
- Experience working across large-scale transformation or improvement programmes.
- Excellent stakeholder management and communication skills.
Desirable Experience
- Experience within aviation, transport, critical national infrastructure (CNI), or other highly regulated sectors.
- Previous experience supporting environments with operational technology (OT) considerations.
- Familiarity with safety-critical systems and complex infrastructure environments.
- Experience working with DevOps/continuous improvement teams.
- Existing SC Clearance or ability to obtain SC Clearance.
Contract Details
- Contract Length: 12 months
- IR35 Status: Outside IR35
- Working Pattern: Hybrid - 2 days per week on-site
- Start Date: August/September
- Rate: Competitive day rate available
This is an excellent opportunity for a Security Architect to support a high-profile cyber improvement programme within a complex, mission-critical environment.