- Company Name
- Sanderson Government & Defence
- Job Title
- Security Architect (SC)
- Job Description
-
**Job Title:** Security Architect (SC)
**Role Summary:**
Design, evaluate, and oversee the implementation of secure cyber‑security architectures for client projects. Serve as a technical leader, ensuring that all solutions meet the organization’s security standards, comply with legal and regulatory requirements, and support secure digital transformation initiatives.
**Expectations:**
- Must hold UK **Security Clearance (SC)** and satisfy UK residency requirements.
- Full‑time, permanent role with remote base in the UK, requiring periodic travel to client sites.
**Key Responsibilities:**
- Develop and maintain security architecture frameworks that align with business objectives and regulatory mandates.
- Conduct threat modeling, risk assessments, and security design reviews for new and existing systems.
- Advise stakeholders (developers, operations, project managers) on secure design principles and best practices.
- Evaluate and recommend security technologies, controls, and solutions (network, cloud, endpoints, identity, data protection).
- Collaborate with incident response teams to ensure architectural controls strengthen detection, containment, and recovery capabilities.
- Produce architecture documentation, technical specifications, and compliance evidence for internal and external audits.
- Stay current on emerging threats, vulnerabilities, and industry trends; proactively update architecture guidelines.
**Required Skills:**
- Deep knowledge of security architecture models (e.g., SABSA, NIST, ISO/IEC 27001).
- Expertise in threat modeling tools (e.g., Microsoft Threat Modeling Tool, STRIDE, PASTA).
- Strong grasp of network security, cloud security (AWS/GCP/Azure), identity & access management, and secure application development lifecycles.
- Proficiency with encryption standards, key management, and secure coding practices.
- Experience designing secure architectures for regulated environments (e.g., financial, healthcare, government).
- Excellent communication and documentation skills, capable of translating technical concepts to non‑technical stakeholders.
- Ability to analyze complex systems and propose practical, scalable security solutions.
**Required Education & Certifications:**
- Bachelor’s degree in Computer Science, Information Security, Cybersecurity, or equivalent technical field.
- Current professional security certifications (preferred): CISSP, CCSP, CISM, or equivalent.
- Additional certifications in cloud security (e.g., AWS Certified Security – Specialty) and threat modeling are advantageous.