Negotiable
Outside
Hybrid
Greater Bristol Area, United Kingdom
Summary: The Information Security Architect role involves leading security governance and risk management activities while providing information assurance support in complex and regulated environments. The position requires engagement with both technical and non-technical stakeholders, including senior leaders, and necessitates DV or SC Clearance due to the secure nature of the projects. The ideal candidate will have strong experience in security governance and a deep understanding of relevant security frameworks. Essential qualifications include recognized cyber security certifications such as CISSP or CISM.
Key Responsibilities:
- Lead security governance and risk management activities
- Deliver information assurance support, including risk assessments, assurance reviews, and security documentation
- Support clients in defining business led security requirements and secure-by-design solutions
- Interpret and apply frameworks such as ISO 27001 / ISO 27002, NIST, NCSC CAF, and MOD security frameworks
- Engage confidently with technical and non-technical stakeholders, including senior leaders
Key Skills:
- Strong experience in security governance, risk, and information assurance
- Deep understanding of ISO 27000-series standards and security risk frameworks
- Familiarity with NCSC guidance and legacy IA standards
- Experience operating within MOD / defence-aligned security frameworks (e.g. JSP 604, JSP 440, JSP 902)
- Ability to clearly articulate risk and assurance outcomes to diverse stakeholders
- Essential qualifications: CISSP, CISM or equivalent recognised cyber security certification
Salary (Rate): undetermined
City: Greater Bristol Area
Country: United Kingdom
Working Arrangements: hybrid
IR35 Status: outside IR35
Seniority Level: undetermined
Industry: IT
Information Security Architect
We’re seeking an experienced Information Security Architect /Consultant to join a high performing Security Practice, supporting clients across governance, risk management, and information assurance within complex and regulated environments. Due to the secure nature of the projects DV or SC Clearance is needed.
The Role
- Lead security governance and risk management activities
- Deliver information assurance support, including risk assessments, assurance reviews, and security documentation
- Support clients in defining business led security requirements and secure-by-design solutions
- Interpret and apply frameworks such as ISO 27001 / ISO 27002, NIST, NCSC CAF, and MOD security frameworks
- Engage confidently with technical and non-technical stakeholders, including senior leaders
What You’ll Bring
- Strong experience in security governance, risk, and information assurance
- Deep understanding of ISO 27000-series standards and security risk frameworks
- Familiarity with NCSC guidance and legacy IA standards
- Experience operating within MOD / defence-aligned security frameworks (e.g. JSP 604, JSP 440, JSP 902)
- Ability to clearly articulate risk and assurance outcomes to diverse stakeholders
Qualifications
Essential: CISSP, CISM or equivalent recognised cyber security certification
What’s On Offer
- Good rate (outside IR35)
- Flex working / remote working
If you’re passionate about security governance, assurance, and risk led decision making, and want to work as a true customer-facing security consultant, we’d love to hear from you