Security Architect - DV Cleared
Location: Hybrid/2 days in Corsham
Rate: £560 per day
IR35: Inside IR35
Duration: Until 31 March 2027 initially
Clearance: Fully transferable DV clearance - essential
Nationality: sole UK national
We are currently recruiting for an experienced Security Architect/Security SME to support a major UK Government defence programme, providing specialist expertise across platform security, endpoint protection and vulnerability management within secure, offline and air-gapped environments.
The successful candidate will work across the design, implementation and assurance of security capabilities within high-assurance MOD environments, supporting security and infrastructure teams and engaging directly with technical and customer stakeholders.
Key Responsibilities
- Lead the architecture, design and implementation of platform and endpoint security controls
- Design security solutions for offline/air-gapped environments
- Deliver and support AntiVirus/Endpoint Protection/EDR solutions
- Design and implement Vulnerability Management platforms and processes
- Develop secure approaches to patching, software updates, AV signatures and threat intelligence within disconnected environments
- Define vulnerability scanning, risk prioritisation and remediation processes
- Support security assurance, compliance, audit and accreditation activities
- Produce formal technical documentation including HLDs, LLDs, security architecture documentation and SOPs
- Support risk management and security accreditation in line with MOD governance
- Work closely with infrastructure, platform and security teams to ensure secure and compliant delivery
- Produce penetration testing scopes for Back End platforms and endpoints
- Engage with stakeholders and provide technical expertise within secure customer environments
Essential Skills & Experience
- Proven experience as a Security Architect or senior Security SME
- Current, fully transferable DV clearance - essential
- Strong experience within Defence, Government or other highly regulated environments
- Proven experience with:
- Endpoint Security/EDR/AntiVirus
- Vulnerability Management
- Security controls for firewalls, ports and protocols
- Endpoint hardening and secure configuration
- Demonstrable experience working within offline/air-gapped environments
- Experience with secure patching, update mechanisms, signature distribution and controlled data transfer
- Strong understanding of vulnerability assessment, prioritisation and remediation
- Experience producing HLDs, LLDs, security architecture documentation and SOPs
- Knowledge and practical application of NCSC guidance and NIST Cybersecurity Framework
- Experience supporting security assurance, accreditation, risk management and compliance activities
- Strong communication and stakeholder management skills
MOD/Security Standards: Experience with relevant MOD and UK Government security standards, including:
- JSP 440
- JSP 604
- JSP 453, where applicable
- NCSC Cyber Security Design Principles
- NCSC secure configuration and hardening guidance
- Secure by Design principles
- NIST Cybersecurity Framework
Desirable
- Defence and/or Aerospace experience
- Experience working in classified or high-assurance environments
- Knowledge of MOD operating models and delivery frameworks
- Incident response experience within restricted or disconnected networks