At a Glance
- Tasks: Lead the design and implementation of security frameworks and cloud architecture.
- Company: Join a world-leading organisation committed to innovation and support.
- Benefits: Competitive daily rate, flexible working, and opportunities for professional growth.
- Other info: Inclusive workplace welcoming diverse applicants; career advancement opportunities available.
- Why this job: Make a real impact in cybersecurity while working with cutting-edge technologies.
- Qualifications: 10+ years in Cybersecurity with strong architecture and cloud experience.
6 Month contract initially, based: max 4 days p/w onsite in London. Rate - £600 - £00 p/d via Umbrella.
We have a great opportunity with a world leading organisation where you will be provided with all of the support and development to succeed. A progressive organisation where you can really make a difference. We have a great opportunity for a Cyber Security - Senior Enterprise Security Architect on a long term program of work.
Key Responsibilities- Strategic Framework Alignment: Lead the end-to-end design and roadmap for implementing CIS Controls (v8 or latest) from the ground up, mapping current technical controls to the CIS framework.
- Infrastructure & Cloud Security Architecture: Define and enforce secure architecture patterns for on-premises, hybrid, and multi-cloud (AWS/Azure/GCP) environments, ensuring compliance with CIS Benchmarks.
- Policy & Governance: Develop and document enterprise-wide security policies, standards, and procedures derived from CIS implementation groups (IG1, IG2, IG3) to ensure scalable security.
- Technical Implementation Oversight: Collaborate closely with DevOps, Network Engineering, and IT Operations teams to automate security configurations (e.g., automated patching, hardening, configuration management).
- Asset Management & Visibility: Design robust solutions for automated hardware and software asset inventory-a critical prerequisite for effective CIS implementation.
- Vulnerability & Risk Management: Establish and mature enterprise vulnerability management processes to ensure continuous identification and remediation of risks as prioritised by the CIS framework.
- Stakeholder Engagement: Act as the primary subject matter expert, effectively communicating security requirements, project milestones, and risk posture to executive leadership and technical staff alike.
- Experience: 10+ years in Cybersecurity, with at least 5 years in a senior architecture or lead security role.
- Framework Expertise: Deep, hands-on experience implementing CIS Critical Security Controls in large-scale enterprise environments.
- Cloud Fluency: Demonstrated architectural design experience in secure cloud migrations and cloud-native security practices.
- Automation: Strong belief in and experience with "Security as Code" principles; proficiency in scripting (Python, PowerShell) or Infrastructure as Code (Terraform, Ansible) to automate hardening.
- Hardening Standards: Expert-level knowledge of CIS Benchmarks for operating systems (Linux/Windows), cloud platforms, and network devices.
- Communication: Proven ability to bridge the gap between technical teams and business stakeholders, articulating security risks in plain language.
- Senior Stakeholder Management: Proficient and experienced in communication at executive levels within the organisation, reports, PowerPoint and presentation.
- Cloud & Infrastructure: Expert knowledge of AWS (Control Tower, SCPs), Azure (Blueprints, Policy), and GCP (Organization Policy Service).
- Infrastructure as Code (IaC): Advanced proficiency in Terraform, Ansible, or Bicep to enforce security configurations at scale (GitOps approach).
- Identity & Access Management (IAM): Deep understanding of Zero Trust Architecture (ZTA), RBAC/ABAC models, and integration with Enterprise IAM (Okta, Entra ID, Ping).
- Operating System Hardening: Hands-on experience applying CIS Benchmarks to Linux (RHEL, Ubuntu, Alpine) and Windows Server environments using automated configuration management.
- Vulnerability Management: Experience with enterprise tools like Tenable.io, Qualys, or Rapid7 to map findings directly to CIS Control 7.
- EDR/XDR Integration: Expert-level deployment of tools (e.g., CrowdStrike, SentinelOne) to achieve full visibility across endpoints (CIS Control 6).
- SIEM/SOAR: Experience designing log aggregation and automated response playbooks in platforms like Splunk, Microsoft Sentinel, or Google Chronicle to satisfy monitoring requirements (CIS Control 8).
- Asset Management: Implementation of automated discovery tools (e.g., CMDB Lansweeper) to maintain a dynamic inventory of hardware and software (CIS Controls 1 & 2).
- Micro-segmentation: Expertise in network design (NSX, Illumio, or Cloud-native security groups) to enforce granular traffic control (CIS Control 12).
- Encryption: Implementation of Data-at-Rest and Data-in-Transit standards (TLS 1.3, AES-256, HSMs, and Key Management Systems).
We are committed to fostering an inclusive, equitable and accessible workplace where everyone feels valued and supported. We welcome applications from all individuals, regardless of background or identity, and we encourage candidates who may not meet every listed requirement to still apply. If you require any adjustments or support during the recruitment process, please let us know and we will work with you to ensure a fair and accessible experience.
Please Note: If a high volume of applications is received, only candidates shortlisted will be contacted.
Cyber Security - Senior Enterprise Security Architect in London employer: LA International
Join a world-leading organisation that prioritises your professional growth and development as a Cyber Security - Senior Enterprise Security Architect. With a commitment to fostering an inclusive and supportive work culture, you will have the opportunity to make a significant impact while working in the vibrant city of London. Enjoy competitive rates and the flexibility of a hybrid work model, all while collaborating with top-tier professionals in the field.
StudySmarter Expert Advice🤫
We think this is how you could land Cyber Security - Senior Enterprise Security Architect in London
✨Tip Number 1
Network like a pro! Attend industry meetups, webinars, and conferences to connect with fellow cyber security enthusiasts. You never know who might have the inside scoop on job openings or can refer you directly to hiring managers.
✨Tip Number 2
Show off your skills! Create a portfolio showcasing your projects, especially those related to CIS Controls and cloud security. This will give potential employers a tangible sense of what you can bring to the table.
✨Tip Number 3
Prepare for interviews by brushing up on your communication skills. Practice explaining complex security concepts in simple terms, as you'll need to bridge the gap between technical teams and business stakeholders.
✨Tip Number 4
Don't forget to apply through our website! We’re always on the lookout for talented individuals like you. Plus, it’s a great way to ensure your application gets the attention it deserves.
We think you need these skills to ace Cyber Security - Senior Enterprise Security Architect in London
Some tips for your application 🫡
Tailor Your CV:Make sure your CV is tailored to the Cyber Security - Senior Enterprise Security Architect role. Highlight your experience with CIS Controls and cloud security, as these are key for us. Use specific examples that showcase your skills in architecture and automation.
Craft a Compelling Cover Letter:Your cover letter should tell us why you're the perfect fit for this role. Share your passion for cybersecurity and how your background aligns with our needs. Don't forget to mention your experience with stakeholder engagement and communication!
Showcase Your Technical Skills:We want to see your technical prowess! Include any relevant certifications or projects that demonstrate your expertise in cloud security, automation, and vulnerability management. This is your chance to shine, so make it count!
Apply Through Our Website:To ensure your application gets the attention it deserves, apply directly through our website. It’s the best way for us to keep track of your application and get back to you quickly. We can’t wait to hear from you!
How to prepare for a job interview at LA International
✨Know Your CIS Controls
Make sure you’re well-versed in the latest CIS Controls, especially v8. Be ready to discuss how you've implemented these in past roles and how they can be applied to the organisation's current security posture.
✨Showcase Your Cloud Security Expertise
Prepare to talk about your experience with AWS, Azure, and GCP. Highlight specific projects where you’ve designed secure cloud architectures and how you’ve enforced compliance with CIS Benchmarks.
✨Demonstrate Automation Skills
Be ready to discuss your experience with 'Security as Code' principles. Bring examples of how you've used tools like Terraform or Ansible to automate security configurations and hardening processes.
✨Communicate Effectively with Stakeholders
Practice articulating complex security concepts in simple terms. You’ll need to bridge the gap between technical teams and executive leadership, so prepare some scenarios where you’ve successfully done this in the past.