Job Description
Role: Technical Architect (Contract) Inside IR35
Length of Contract - 6 months
Overview
We are seeking an experienced to execute a targeted, high-impact architectural analysis of our identity and access controls. Your primary objective will be to evaluate our existing roles and permissions landscape, decompose them into clear domains, and deliver actionable recommendations for a modern, cross-cutting authorisation model.
This work is critical to laying the foundation for non-UI-driven operations, specifically enabling AI agents to act securely on behalf of core system functions.
Key Deliverables
- Roles and Permissions Analysis: Conduct a deep-dive evaluation of the existing roles and permissions structure within Searchlight (primary focus), alongside a representative sample of secondary services.
- Domain Decomposition: Map and decompose current roles and permissions into logical domain models to establish clear boundaries for access enforcement.
- Authorisation Strategy: Define where and how authorisation/permission checks should be placed across system boundaries to support scalable decision-making.
- Non-UI and AI Enabling Framework: Provide a blueprint for a unified, cross-cutting authorisation architecture that seamlessly accommodates headless workflows, automated processes, and AI agents operating on behalf of functions.
Required Qualifications and Expertise
- Enterprise/Security Architecture: Deep expertise in IAM (Identity and Access Management), fine-grained authorisation patterns (eg, RBAC, ABAC, ReBAC), and distributed access enforcement.
- Domain Driven Design (DDD): Proven track record of decomposing complex Legacy permissions into modular, domain-centric models.
- Modern Integration and AI Context: Experience designing security and access controls for headless systems, microservices, APIs, and AI/autonomous agent interactions.
- Strategic Deliverables: Ability to translate complex access patterns into clear architectural decision records (ADRs) and executive-ready blueprints.