At a Glance
- Tasks: Lead secure design and threat modelling for cloud and hybrid architectures.
- Company: Join a leading tech firm focused on security and innovation.
- Benefits: Remote work, competitive salary, and opportunities for professional growth.
- Why this job: Make a real impact by embedding security in cutting-edge projects.
- Qualifications: Active SC clearance and experience in secure system design required.
- Other info: Collaborative environment with a focus on resilience and incident support.
The predicted salary is between 60000 - 75000 £ per year.
As Security Architect, you will be supporting digital and infrastructure projects by ensuring that security considerations are embedded from the outset. You will advise engineering teams and senior stakeholders on secure design, oversee cloud architecture (primarily Azure), and ensure compliance with government policies and recognised standards. The role will involve threat modelling, writing and maintaining security policies and embedding Secure by Design principles to meet standards such as ISO27001 and BS10008.
Working closely with security and technical leads, you will also be involved in internal and external IT health checks and contribute to upcoming workstreams in business continuity management, service resilience, service management and auditing.
Key responsibilities- Secure design & threat modelling: Lead the design and review of cloud, on-premise and hybrid architectures; perform threat modelling and identify vulnerabilities. Ensure solutions adhere to security frameworks such as ISO27001, NCSC standards and GDPR and incorporate secure by design principles.
- Policy and assurance: Draft and maintain security policies and procedures to meet ISO27001 and BS10008 requirements. Develop reusable security patterns and coordinate evidence for national assurers and continuous assurance programmes, including internal and external IT health checks.
- Guidance & risk management: Provide specialist advice on security controls, risk assessments and technology choices. Support business continuity, service resilience, service management and auditing workstreams by integrating security considerations into planning and operations.
- Collaboration & communication: Communicate security principles effectively to stakeholders and influence decision-making across multidisciplinary teams. Engage with partners and vendors to align solutions with best practice and regulatory requirements.
- Resilience & incident support: Contribute to incident response, disaster recovery and continuity planning by ensuring that architecture and processes support resilient operations.
- Security Check (SC): Candidates must hold active SC clearance.
- Secure-by-design experience: Demonstrable experience embedding secure-by-design principles in software development or system integration projects.
- Technical expertise: Broad knowledge of secure system design, cloud and hybrid architectures, threat modelling, identity and access management, networking and cryptography.
- Risk and compliance: Experience applying governance, risk and compliance frameworks (ISO27001, NIST, NCSC) and translating the CIA triad into practical controls.
- Communication and leadership: Able to articulate complex security concepts to stakeholders and influence decisions; collaborate across multidisciplinary teams and support colleagues during assurance activities.
- Recognised security certification (e.g., CISSP, CISM, CISA, CCSP).
- Demonstrable ability to write security policies and procedures that comply with ISO27001 and BS10008.
- Experience with assurance frameworks such as GovAssure and the NCSC Cyber Assessment Framework; familiarity with internal and external audit processes and IT health checks.
- Knowledge of Business Continuity Management, Service Resilience and Service Architecture practices.
- Understanding of policing or justice-sector requirements and the unique challenges of working with classified police information.
- Experience working within government or regulated environments is a plus.
This role will fall Inside IR35 and is only open to candidates with sole UK Nationality and a current and valid UK Government SC Clearance or above. The role will be remote with very occasional travel to London offices. Candidates must be UK based. Please do not apply if you cannot meet these requirements as you will not be eligible and cannot be considered.
Security Architect in Luton employer: Apsley Recruitment Ltd
Contact Detail:
Apsley Recruitment Ltd Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Security Architect in Luton
✨Tip Number 1
Network like a pro! Reach out to your connections in the security field, especially those who work with cloud architectures or have experience with ISO27001. A friendly chat can lead to insider info about job openings that aren't even advertised yet.
✨Tip Number 2
Show off your skills! Create a portfolio showcasing your secure design projects and threat modelling experiences. This will give potential employers a clear view of what you can bring to the table, especially when it comes to embedding security principles.
✨Tip Number 3
Prepare for interviews by brushing up on your communication skills. Practice explaining complex security concepts in simple terms, as you'll need to influence decision-making across multidisciplinary teams. We want you to shine when discussing your expertise!
✨Tip Number 4
Don't forget to apply through our website! It’s the best way to ensure your application gets noticed. Plus, we love seeing candidates who are proactive and engaged with our platform. Let’s get you that Security Architect role!
We think you need these skills to ace Security Architect in Luton
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Security Architect role. Highlight your experience with secure design, threat modelling, and compliance with standards like ISO27001. We want to see how your skills match what we're looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about security architecture and how your background makes you a perfect fit for our team. Don't forget to mention your SC clearance!
Showcase Your Technical Skills: In your application, be sure to showcase your technical expertise in cloud architectures, risk management, and security frameworks. We love seeing candidates who can articulate complex concepts clearly, so don't hold back!
Apply Through Our Website: We encourage you to apply through our website for the best chance of getting noticed. It’s super easy, and you'll be able to keep track of your application status. We can't wait to hear from you!
How to prepare for a job interview at Apsley Recruitment Ltd
✨Know Your Security Frameworks
Make sure you’re well-versed in security frameworks like ISO27001 and NCSC standards. Be ready to discuss how you've applied these in past projects, especially in relation to secure design and threat modelling.
✨Showcase Your Technical Expertise
Prepare to talk about your experience with cloud architectures, particularly Azure. Highlight specific projects where you’ve embedded secure-by-design principles and how you’ve managed risks and compliance.
✨Communicate Clearly
Practice articulating complex security concepts in a straightforward manner. You’ll need to influence decision-making across teams, so being able to communicate effectively with both technical and non-technical stakeholders is key.
✨Demonstrate Collaboration Skills
Be ready to share examples of how you’ve worked with multidisciplinary teams. Discuss your role in drafting security policies and how you’ve engaged with partners and vendors to align solutions with best practices.