Negotiable
Undetermined
Hybrid
Coventry, England, United Kingdom
Summary: The Security Architect role in Coventry, UK, is a long-term contract position focused on designing and delivering security solutions for IT and OT environments in critical infrastructure sectors. The ideal candidate will have extensive experience in securing industrial control systems and developing risk assessment frameworks, with a strong emphasis on cloud and hybrid infrastructure security. This position requires collaboration with cross-functional teams to ensure compliance with various regulatory standards while driving secure digital transformation initiatives.
Key Responsibilities:
- Design and deliver robust security solutions across IT and OT environments.
- Secure industrial control systems (ICS) through unified threat modelling and Zero Trust architectures.
- Develop IT/OT security risk assessment frameworks leveraging STRIDE.
- Integrate SIEM solutions and manage IAM/PAM systems.
- Align cross-functional teams and manage stakeholder expectations.
- Ensure compliance with NIST, IEC 62443, ISO 27001, and GDPR.
- Drive secure digital transformation programs across diverse regulatory landscapes.
Key Skills:
- Proven experience in Cyber Security Architecture.
- Expertise in cloud and hybrid infrastructure security (Azure, AWS, GCP).
- Knowledge of SIEM integration (Azure Sentinel, Splunk).
- Experience with IAM/PAM tools (CyberArk, BeyondTrust).
- Familiarity with compliance standards (NIST, IEC 62443, ISO 27001, GDPR).
- Technical skills in penetration and vulnerability assessment tools.
- Strong understanding of threat modelling techniques (STRIDE, DREAD).
- Networking and datacenter virtualization technologies knowledge.
Salary (Rate): undetermined
City: Coventry
Country: United Kingdom
Working Arrangements: hybrid
IR35 Status: undetermined
Seniority Level: undetermined
Industry: IT
Security Architect Coventry, UK Hybrid – 4 Days Work from Office Long-term Contract Experienced Cyber Security Architect with a proven track record of designing and delivering robust, scalable security solutions across IT and OT environments in critical infrastructure, utilities, and financial services. Specializes in securing industrial control systems (ICS), including SCADA, DCS, and PLCs, through unified threat modelling and Zero Trust architectures. Successfully developed IT/OT security risk assessment frameworks leveraging STRIDE, improving incident detection and resilience across industrial networks. Brings deep expertise in cloud and hybrid infrastructure security (Azure, AWS, GCP), SIEM integration (Azure Sentinel, Splunk), IAM/PAM (CyberArk, BeyondTrust), and compliance with NIST, IEC 62443, ISO 27001, and GDPR. Adept at aligning cross-functional teams, managing stakeholder expectations, and delivering secure digital transformation programmers across diverse regulatory landscapes. Technical Skills: Information Security Management o Audit & Compliance: GDPR, COBIT, PCI DSS, ISO 27001, NIST, CIS Controls o Cyber Framework: NIST Cybersecurity Framework, Zero Trust Architecture o Security Incident & Event Management (SIEM): Azure Sentinel, LogRhythm, Splunk, ElasticSIEM o Identity & Access Management (IAM): Azure AD PIM, CyberArk, BeyondTrust o Penetration & Vulnerability Assessment: Kali Linux, ZAP, Nessus, Burp Suite, Metasploit o Threat Modelling: STRIDE, DREAD, MITRE ATT&CK Networking and Datacenter Virtualization Technologies o IP, NGFW, DMVPN, MPLS, BGP, OSPF, LISP, Anycast, VPC, NLB • Cloud Security o OS: Linux, Windows o Cloud Platforms: Azure, AWS, GCP o Cloud Networking: VPC, IPsec VPN, Route53, ELB, CloudFront, vWAN, ExpressRoute o Azure Security: WAF, AD, Azure Entra, Defender for Cloud, M365, Intune o AWS Security: GuardDuty, Macie, Config, CloudTrail, Security Hub, Secrets Manager, Shield DevSecOps o Tools: Tenable.io, Veracode & AppScan (DAST, SAST, IAST) o Configuration Management: Chef, Ansible