Cyber Tooling Enterprise Architect in Derby
Cyber Tooling Enterprise Architect

Cyber Tooling Enterprise Architect in Derby

Derby Full-Time 70000 - 90000 £ / year (est.) No home office possible
Rolls-royce

At a Glance

  • Tasks: Lead the design and implementation of cyber security architecture and tooling.
  • Company: Join Rolls-Royce, a leader in innovation and technology.
  • Benefits: Enjoy a safety-first environment with opportunities for career growth and continuous learning.
  • Other info: Be part of a diverse team that values individuality and fosters innovation.
  • Why this job: Make a real impact in cyber security while working with cutting-edge technologies.
  • Qualifications: Experience in cyber security architecture and strong stakeholder engagement skills required.

The predicted salary is between 70000 - 90000 £ per year.

Derby/ Hybrid

Full time

Why join Rolls-Royce?

At Rolls-Royce we are proud to be a business that has truly helped to shape the modern world and are committed to always being a force for progress; powering, protecting and connecting people everywhere. By joining Rolls-Royce, you'll have the opportunity to work on world-class solutions, supported by a culture that believes individuality is our greatest strength, and all perspectives, experiences and backgrounds help us innovate and enable our high-performance culture.

Position Summary

An exciting opportunity has arisen for a Cyber Tooling Enterprise Architect to join the team. The Cyber Security Architecture & Tooling Lead is the owner of the enterprise cyber tooling portfolio. The role is architecture-led: it shapes the security target state for how our people work, collaborate, and authenticate, and uses the tooling portfolio as the delivery arm to realise that target state across our operating environments. The post-holder leads the design and implementation of security controls and reference architectures, ensures cyber resilience end-to-end across the domain, and drives the rationalisation, integration, and lifecycle of the cyber tooling estate. They act as a subject matter expert to the business, translating complex technical security topics into clear, commercially grounded direction for stakeholders up to executive level. This role has named accountability for the security architecture of strategic Group programmes.

What you will be doing:

  • Solution Design & Architecture
    • Develop and maintain end-to-end security architecture and design documentation for the Client domain, ensuring designs are efficient, scalable, cost-effective, and aligned to the Group target state.
    • Own the architecture and integration of tooling and capabilities across the Group, including defining reference architectures for client and productivity security: endpoint protection, and other security stack, secure collaboration, browser security, and data protection across managed and unmanaged devices.
    • Architect cyber tooling integration patterns across SIEM/SOAR, EDR/XDR, CSPM, CNAPP, Identity, vulnerability management, and exposure management, ensuring data Security, and control flows are coherent across all environments.
  • Technical Leadership
    • Own security solutions end-to-end across the domain and tooling portfolio, providing technical direction to project teams, engineers and the wider IT Security team.
    • Authoring and curating Architecture Decision Records (ADRs) that codify security design decisions for re-use across programmes.
    • Provide technical assurance over delivery undertaken by IT Operations and third-party providers, ensuring outcomes meet the security architecture and intent.
  • AI Security
    • Contribute to AI Security Assurance programme, embedding AI security controls across the existing security domains and tooling stack covering generative AI usage, agentic systems, model lifecycle, and AI-enabled SaaS in the productivity estate.
    • Develop reference patterns aligned to NIST AI RMF, ISO/IEC 42001, OWASP LLM Top 10, MITRE ATLAS and the EU AI Act, with practical guardrails for engineering teams adopting AI capabilities.
    • Define telemetry, monitoring and detection requirements for AI-related risks (data leakage, prompt injection, model abuse) and integrate these into the wider tooling and SOC operating model.
  • Stakeholder Engagement
    • Act as senior subject matter expert (SME) to executive and senior management, providing security consultancy and translating complex technical topics into clear, non-technical business language.
    • Partner with divisional CIOs, IT Operations, Legal, Privacy, Risk, and the business to align security architecture with commercial and operational priorities.
    • Represent the Group at strategic vendor reviews, customer assurance discussions and, where appropriate, regulator engagements.
  • Security Governance & Compliance
    • Collaborate with governance and compliance team to ensure designs comply with applicable regulatory standards and frameworks, including CMMC (Levels 2 and 3), DFARS, ITAR/EAR, NIST 800-171/800-53, NIS2, BSI IT-Grundschutz, ONR SecAP, EASA, DCPP and internal Group security policies.
    • Support the active compliance initiative, across the different by providing the architecture and tooling design needed to demonstrate sustained compliance.
    • Contribute to System Security Plans (SSPs), POA&Ms and C3PAO assessment readiness, ensuring tooling and controls evidence the required maturity.
  • Pattern and Standards Development
    • Develop reusable security solution patterns, blueprints, and reference architectures for adoption across divisions, reducing bespoke design effort and improving consistency.
    • Define standards for secure configuration, identity, endpoint, and productivity tooling, and ensure they are reflected in delivery by IT Operations and partners.
    • Champion Zero Trust principles across identity, device, network, and application layers within the domain.
  • Vendor & Tooling Portfolio Management
    • Own the strategy, rationalisation, and lifecycle of the enterprise cyber tooling portfolio, aligning vendor capability to the organisational security roadmap.
    • Lead relationship management across all cyber tooling vendors, including quarterly business reviews, roadmap sessions and technical deep dives with strategic partners.
    • Evaluate third-party technologies and emerging tools, conducting structured proof-of-value activity and feeding outcomes into the tooling roadmap and SARB decisions.
    • Drive consolidation and tooling efficiency across the five environments, balancing CMMC isolation requirements with Group-wide visibility and operating cost.

Position Qualifications:

  • Experience as a senior cyber security architect or engineer operating at Group or enterprise level in a complex, multi-divisional, regulated environment.
  • Demonstrable architecture ownership of large programmes in hybrid environments.
  • Deep understanding of the Microsoft 365 / E5 security stack and its integration with hybrid environments and platforms.
  • Strong working knowledge of regulatory and assurance frameworks relevant to defence, aerospace and critical infrastructure: CMMC, NIST 800-171/800-53, NIS2, IEC 62443, ISO 27001 and Zero Trust architectures.
  • Practical experience of AI security architecture and the associated standards landscape (NIST AI RMF, ISO/IEC 42001, OWASP LLM Top 10, MITRE ATLAS, EU AI Act).
  • Proven ability to lead vendor relationships and tooling rationalisation programmes at scale, with strong commercial judgement.
  • Excellent stakeholder engagement skills, including the ability to brief executive audiences and influence without direct authority.

Preferred Requirements:

  • Experience supporting Defence and EU Regulatory environments.
  • Familiarity with OT/IoT security tooling and the interplay between IT and OT security architectures.
  • Recognised industry certifications such as CISSP, CCSP, SABSA, TOGAF, Microsoft Cybersecurity Architect Expert, or equivalent.
  • Experience supporting nuclear, aerospace or defence programmes, including environments subject to ONR SecAP or EASA oversight.

Regional Benefits:

  • Work in a safety-first environment where doing the right thing and keeping it simple are core principles.
  • Join a culture that values making a real difference through your work.
  • Develop your career as a mid-career professional blending technical expertise with strong personal qualities.
  • Thrive in a role that encourages integrity, accountability, resilience, and curiosity.
  • Collaborate and build relationships in a team-focused environment while also working independently.
  • Take initiative, lead, and make smart decisions with confidence and support.
  • Grow through continuous learning, openness to improvement, and exposure to challenging opportunities.

Our vision is to ensure that the excellence and ingenuity that shaped our history continues into our future. Our multi-year transformation programme aims to turn Rolls-Royce into a high-performing, competitive, resilient and growing company. Join us, and it can be your future vision too.

Rolls-Royce are committed to being a respectful, inclusive, and non-discriminatory workplace where individuality is valued, diverse perspectives fuel innovation, and everyone can thrive.

Grade: Level C

Closing Date: 13.05.2026

For further information, please contact: aaron.thoresendavidson@rolls-royce.com

Job Category: Information Technology

Posting Date: 06 May 2026; 00:05

Posting End Date: 13 May 2026

Cyber Tooling Enterprise Architect in Derby employer: Rolls-royce

At Rolls-Royce, we pride ourselves on fostering a dynamic and inclusive work environment where innovation thrives. As a Cyber Tooling Enterprise Architect, you'll be part of a team that values individuality and collaboration, offering you the chance to develop your career while working on cutting-edge security solutions in a safety-first culture. With a commitment to continuous learning and professional growth, you'll have the opportunity to lead impactful projects that shape the future of technology in a respected global organisation.
Rolls-royce

Contact Detail:

Rolls-royce Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Cyber Tooling Enterprise Architect in Derby

✨Tip Number 1

Network like a pro! Get out there and connect with people in the industry. Attend events, join online forums, and don’t be shy about reaching out on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.

✨Tip Number 2

Prepare for interviews by researching the company and its culture. Understand their values and how they align with your own. This will help you tailor your responses and show that you're genuinely interested in being part of their team.

✨Tip Number 3

Practice makes perfect! Conduct mock interviews with friends or use online platforms to get comfortable with common questions. The more you practice, the more confident you'll feel when it’s time to shine in front of the real interviewers.

✨Tip Number 4

Don’t forget to follow up after your interviews! A simple thank-you email can go a long way in leaving a positive impression. It shows your enthusiasm for the role and keeps you fresh in their minds as they make their decision.

We think you need these skills to ace Cyber Tooling Enterprise Architect in Derby

Cyber Security Architecture
Tooling Integration
Security Controls Design
AI Security Assurance
Regulatory Compliance
Stakeholder Engagement
Vendor Management
Microsoft 365 Security Stack
Zero Trust Principles
Architecture Decision Records (ADRs)
Data Protection
Technical Leadership
Problem-Solving Skills
Communication Skills
Project Management

Some tips for your application 🫡

Tailor Your Application: Make sure to customise your CV and cover letter to highlight your experience with cyber security architecture and tooling. We want to see how your skills align with the specific requirements of the Cyber Tooling Enterprise Architect role.

Showcase Your Technical Skills: Don’t hold back on showcasing your technical expertise! Include relevant projects or experiences that demonstrate your knowledge of security frameworks and tools, especially those mentioned in the job description. This is your chance to shine!

Be Clear and Concise: When writing your application, keep it clear and to the point. Use straightforward language to explain complex concepts, as if you were talking to someone who isn’t a techie. We appreciate clarity just as much as depth!

Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows you’re keen on joining our team!

How to prepare for a job interview at Rolls-royce

✨Know Your Cyber Security Stuff

Make sure you brush up on your knowledge of cyber security architecture, especially around the Microsoft 365 / E5 security stack. Be ready to discuss how you would approach integrating security tools in hybrid environments and demonstrate your understanding of relevant regulatory frameworks.

✨Speak Their Language

When discussing complex technical topics, remember to translate them into clear, non-technical language. This will help you connect with stakeholders at all levels, especially executives who may not have a deep technical background.

✨Showcase Your Leadership Skills

Be prepared to share examples of how you've led teams or projects in the past. Highlight your experience in managing vendor relationships and driving tooling rationalisation programmes, as these are key aspects of the role.

✨Prepare for Scenario Questions

Expect scenario-based questions that assess your problem-solving skills in real-world situations. Think about challenges you've faced in previous roles and how you overcame them, particularly in relation to security architecture and compliance.

Cyber Tooling Enterprise Architect in Derby
Rolls-royce
Location: Derby

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>