All Jobs Vacancy

Principal Enterprise Security Architect

Posted 1 week ago by Public Sector Resourcing

Description & Requirements

On behalf of The Ministry of Justice, we are looking for a Principal Enterprise Security Architect (Inside IR35) for a 9 month hybrid contract based in any MoJ office.

This role sits within the central Architecture function in the Office of the CTO. The wider team will encompass the key architecture disciplines of Enterprise, Business, Solution and Technology Architecture.

You will work collaboratively across all directorates within Justice Digital, Data and Technology (JDDT), alongside business groups and Executive Agencies, to align technology strategy and operate shared platforms that enable the delivery of products and services across the Ministry of Justice.

As the department's lead for Enterprise Security Architecture, this role is responsible for defining, governing and evolving the enterprise-wide security architecture direction for the MoJ. Reporting to the Chief Architect, you will lead the development of a coherent security architecture across the department, working closely with senior architects, cyber security leaders, platform teams and major delivery programmes.

You will establish clear security principles, guardrails and strategic priorities, enabling architects and delivery teams to make consistent, risk-informed decisions across MoJ HQ and Executive Agencies. Acting as a key senior leader, you will ensure that security architecture is aligned with departmental objectives, technology strategy and evolving threat landscapes.

Key Deliverables

  • Set and own the enterprise cyber security architecture vision and strategy across core domains including identity, cloud security, endpoint security, network security, data protection, secure integration and resilience, aligned to the departmental enterprise target state.
  • Act as a senior security authority within the Office of the CTO, providing clear architectural direction and advice to senior leaders, major programmes and investment decisions.
  • Define and evolve enterprise-wide security target states, standards, principles, control patterns and reference architectures for shared platforms and services.
  • Establish clear secure-by-design guardrails that enable delivery teams to move faster while maintaining confidentiality, integrity, availability, resilience, interoperability and value for money.
  • Provide architectural oversight and assurance for high-risk or strategically significant initiatives, balancing short-term delivery with long-term security sustainability.
  • Lead on security architecture decisions for enterprise-scale transformation, including legacy modernisation, cloud adoption, shared platforms and cross-department integration.

Essential Skills & Experience

  • Significant experience operating as a senior cyber security or security architect within a large, complex organisation, setting direction across enterprise-scale services, platforms or infrastructure.
  • Deep expertise in one or more enterprise security domains such as identity and access management, cloud security, network security, endpoint security, data protection, security monitoring, or resilience, with sufficient breadth to lead across multiple domains.
  • Proven experience defining enterprise security strategies, target states, standards or reference architectures that have been adopted across multiple teams or organisations.
  • Strong systems-thinking skills, with the ability to understand and manage dependencies, threats, vulnerabilities, risks and trade-offs across complex technology estates.
  • Experience designing secure systems and applying architecture patterns and principles to solve complex security challenges.
  • Experience influencing senior stakeholders and decision-makers, acting as a trusted advisor on complex, high-risk security decisions.
  • Excellent communication skills, with the ability to clearly explain security strategy, architecture and risk to both technical and non-technical audiences, including at senior levels.
  • Deep and current understanding of security technology, attack paths, defensive controls and the security implications of digital transformation.

Desirable Skills & Experience

  • Strong background in enabling and informing risk-based decisions, including advising senior risk owners on proportionality, tolerance and treatment options.

Additional Information

Please be aware that this role can only be worked within the UK and not Overseas.

Rate:
Not specified
Location:
London
IR35 Status:
Inside
Remote Status:
Hybrid
Industry:
Cybersecurity
Seniority Level:
Senior

Take-Home Pay

Not Available

Visit calculators for additional details

Create a free account to view the take-home pay for this contract

Share job