- Company Name
- Adroit People Limited (UK)
- Job Title
- Enterprise Architect
- Job Description
-
**Job Title**
Enterprise Architect – Net Segmentation Solution Designer
**Role Summary**
Design, document and govern enterprise‑level network segmentation and application security architectures. Lead cross‑functional collaboration with security, development, and business stakeholders to produce reference architectures, standards, patterns, roadmaps and implementation guidance that limit blast radius, satisfy regulatory requirements, and align with corporate governance processes.
**Expectations**
- Deliver high‑quality, end‑to‑end reference architectures that articulate threat modelling, risk mitigation and compliance mapping.
- Facilitate technical design authority reviews and secure stakeholder buy‑in.
- Maintain governance compliance, data‑driven evidence, and traceability from risk identification through implementation.
- Act as subject‑matter expert and consultant on network and application segmentation across projects.
**Key Responsibilities**
- Collaborate with Security Architecture team to produce detailed artefacts and reference models.
- Engage stakeholders across the organization to capture requirements, assess technical debt, and align with business objectives.
- Create and maintain documentation: standards, patterns, strategies, roadmaps, recommendation papers, architectural diagrams, and evidence artifacts.
- Present solutions and governance drafts to technical design authorities, senior leadership, and regulatory reviewers.
- Ensure artefacts undergo peer review, obtain approvals, and adhere to corporate policy frameworks.
- Manage risks, dependencies, issues, and provide remediation plans.
- Support PMOs, BAs, SAs, and policy owners in capturing and delivering requirements.
- Promote robust documentation practices and maintain consistency across deliverables.
**Required Skills**
- Deep technical expertise in network segmentation (microsegmentation, zone isolation), application segmentation, SDLC security, and lower‑environment protection.
- Practical experience designing, migrating, and documenting segmentation of existing networks.
- Proficiency with threat modelling, risk assessment, and evidence‑based decision making.
- Knowledge of NIST, SANS, ITU, SABSA, TOGAF, and other security frameworks.
- Ability to communicate complex security concepts to non‑security technical SMEs and senior stakeholders.
- Hands‑on knowledge of legacy and modern networking infrastructure; WAN, LAN, SDN, and cloud networking concepts.
- Experience with inter‑zone and intra‑zone controls: WAAP, NIPS/NIDS, NGFW, DDoS protection, API gateways, reverse proxies, AuthNZ.
- Proficiency in architecture visualization tools (BizzDesign, Archi, UML).
- Working ability with Jira for project/task management and Confluence for documentation.
- Strong governance, risk, and stakeholder management capabilities.
**Required Education & Certifications**
- Bachelor’s or Master’s degree in Cybersecurity, Computer Science, Software Engineering, or related technical discipline.
- SABSA, TOGAF, or equivalent enterprise architecture certification.
- Network infrastructure certification (e.g., CCNA/CCNP, Network+, Cisco).
- Application security certification (e.g., CEH, OSCP) or equivalent.
- Additional certifications in regulatory compliance or cybersecurity frameworks preferred.