At a Glance
- Tasks: Drive security design and governance for a major digital manufacturing project.
- Company: Join a leading firm focused on critical infrastructure and innovative technology.
- Benefits: Flexible working options, competitive pay, and potential for contract extension.
- Other info: Collaborative culture with opportunities for professional growth.
- Why this job: Make a real impact on security architecture in a fast-paced environment.
- Qualifications: Experience in security architecture and identity management required.
The predicted salary is between 63000 - 77000 £ per year.
Location
On-site in Dartford (Tuesday–Thursday) | Remote (Monday & Friday by agreement)
Contract
6 week contract (potential for extension)
We are looking for an experienced Security & Identity Architect to drive the security design, governance, and assurance for a large-scale digital manufacturing capability on one of the UK’s most critical infrastructure programmes.
Working alongside Enterprise, Solution, Data, and Manufacturing Architects, you will ensure Cyber Security, Identity & Access Management (IAM), and Secure-by-Design principles are deeply integrated across both Enterprise IT and Operational Technology (OT) environments.
- Ecosystem Protection: Implement and embed robust security architecture across the entire Digital Manufacturing ecosystem.
- IAM Strategy: Lead the IAM approach across Enterprise IT, Operational Technology (OT), and shop-floor manufacturing systems.
- Secure HLD: Ensure Cyber Security and IAM principles are embedded throughout all High Level Design activities.
- Access Control & Lifecycle: Define RBAC, Privileged Access Management (PAM), Multi-Factor Authentication (MFA), and user lifecycle models across all platforms.
- Federation & SSO: Support Single Sign-On (SSO) and identity federation across enterprise platforms and third-party partner environments.
- Secure Integration: Secure APIs, machine identities, Industrial Io T (IIo T) devices, and data threads connecting SAP, PLM, MES, QMS, and Microsoft platforms.
- Network Segmentation: Enforce strict network zoning and IT/OT security principles (e. g., Purdue Model).
- Cloud & Zero Trust: Apply Zero Trust principles, least-privilege access, cloud security (Azure), and data encryption/classification standards.
- Architecture Assurance: Review and assure designs from internal teams, primary delivery partners and tech vendors.
- Governance Boards: Represent security and identity architecture at the Architecture Review Board (ARB).
- Compliance: Ensure all solutions comply with Enterprise IT security policies, nuclear requirements, and industry standards.
- Risk Management: Proactively identify programme security risks and define pragmatic mitigation strategies.
- Security Architecture Input for the High Level Design (HLD)
- Identity & Access Management (IAM) Recommendations & Artefacts
- Security Architecture Assurance Reviews
- Enterprise & Solution Security Architecture within major digital transformation programmes
- Identity & Access Management (IAM) & Privileged Access Management (PAM)
- Operational Technology (OT) & Industrial Control Systems (ICS) security
- Cloud Security Architecture (Microsoft Azure preferred)
- Digital Manufacturing ecosystems (MES, PLM, Quality Systems, IIo T)
- Delivery Partner Management (assessing Tier-1 system integrators)
- Frameworks & Standards: ISA-95, Purdue Model, IEC 62443, NIST Cyber Security Framework, ISO 27001, CIS Controls, Zero Trust
- Collaborative & Pragmatic: Balances strict cyber mandates with real-world project delivery deadlines.
- Clear Communicator: Explains complex technical risks effortlessly to both technical and executive stakeholders.
- Thrives in Ambiguity: Comfortable operating within fast-paced, multi-supplier transformation programmes.
- Constructive Challenge: Able to push back constructively on vendor designs while keeping delivery on track.
- Success Measures
- Design Integrity: Secure-by-Design and Identity-by-Design principles embedded across all workstreams by the end of the HLD phase.
- Risk Mitigation: Security flaws identified early to prevent expensive redesigns during full Digital Delivery.
- Gap Identification: Clear documentation of programme-specific IAM and security gaps with defined mitigation paths.
- Seamless Transition: A clear security assurance playbook ready to transition smoothly into implementation.
- #J-18808-Ljbffr
Security & Identity Architect in Dartford employer: Randstad
Join a forward-thinking company that prioritises employee development and fosters a collaborative work culture. As an IMS Systems Auditor, you will benefit from comprehensive training opportunities, a supportive team environment, and the chance to make a meaningful impact on our Integrated Management System. Located in a vibrant area, we offer a dynamic workplace where your contributions are valued and recognised.