The team you'll be working with:
The Security Architect will be responsible for the design, implementation and ongoing development of the security architecture of the client's IT systems.
The Security Architect will draw upon Enterprise Security Architecture or Security Solutions Architecture to:
- Identify business objectives, user needs, risk appetite and cyber security obligations
- Identify vulnerabilities, perform threat modelling, undertake risk assessment, evaluate the effectiveness of security controls
- Verify and evidence alignment to 'Secure by Design' principles, corporate security policy/standards as well as industry recognised frameworks and best practice"
What you'll be doing:
- Develop, deliver and continually enhance a coherent approach to the design of secure client end-to-end solutions
- Develop secure conceptual, logical and high level designs by identifying appropriate security controls to be embedded in solutions that meet business requirements whilst evidencing alignment to the target risk appetite.
- Own the design and be able to articulate and justify design recommendations at security architecture assurance gates
- Draft design documentation, options papers, risk assessments, stakeholder presentations and be able to effectively communicate these to both senior technical and non-technical stakeholders
- Contribute to a reference architecture of established patterns, principles and guidelines
- Research emerging technologies, new products and be able to position these in a coherent manner against the developing threat landscape and client risk appetite
- Ability to distil complex information and concepts into key discussion points that identifies a path to resolution rather than only the identification of challenges
- Contribute to the development of the Security Practice skills and capabilities to ensure consistent high quality of service delivery and expertise. Active coaching and mentoring of junior members of the team
- Leading in the development of collateral to support Security Consulting ‘go to market’ propositions and service offerings.
- Leading in the development and presentation of compelling client proposals collaborating with teams across our business.
- Strong stakeholder management and relationship building skills at senior levels that will enable consensus building in the shaping of secure client solutions
- Shaping, leading and delivering value through security advisory consultancy and through guiding secure transformational delivery engagements.
- Providing security expertise across security standards and accreditations, measure and control the effectiveness of the security controls framework and maintain the Information Security Management System.
- Assiting with the identification of identified risks and emerging cyber security vulnerabilities and threats. The subsequent analysis to quantify and lead risk mitigation plans
What experience you'll bring:
- Good knowledge of networking (switching, routing, firewalls) and ideally some exposure to SD-WAN, DNS and other network protocols to support technical discussions (skills & experience equivalent to CCNP level)
- Minimum of 5 years’ experience in a multi-tiered IT enterprise environment / Governance, Risk and Compliance role
- Minimum of 5 years’ experience in a Governance, Risk and Compliance role
- A track record of delivering security solutions for large-scale infrastructure, transformation or integration programmes
- Practical knowledge and understanding of industry security frameworks and guidance such as NIST CSF, NIST 800-53, NCSC CAF and other NCSC guidelines
- Experience with the design concepts associated with adoption of Cloud platforms (AWS and/or Microsoft Azure)
- In-depth knowledge of modern security concepts, common attack vectors, malware, security analytics and threat intelligence.
- A good understanding of security testing and vulnerability management is important (including pen testing/ITHC, CVSS/CVE)
- Experience working with security standards such as ISO 27001, 27002, 27017, 27108 etc
DESIRABLE SKILLS AND EXPERIENCE
- CISSP, CISM, CCSP, CRISC or equivalent experience
- An understanding of the native security capabilities and good practice within Cloud platforms (AWS and/or Microsoft Azure)
- Good knowledge covering several of the following examples (this list is not exhaustive): AD, Cryptography, End User Computing, IAM, PKI, Server hardening, SIEM, SOAR, virtualisation (VMware)
- Familiarity with MITRE ATT&CK
- Familiarity with ITIL
SECURITY CLEARANCE
Please note that candidates must hold or be able to gain UK SC level Security Clearance or higher. Therefore we can only accept applications from British passport holders who meet this criteria.
Who we are:
We’re a business with a global reach that empowers local teams, and we undertake hugely exciting work that is genuinely changing the world. Our advanced portfolio of consulting, applications, business process, cloud, and infrastructure services will allow you to achieve great things by working with brilliant colleagues, and clients, on exciting projects.
Our inclusive work environment prioritises mutual respect, accountability, and continuous learning for all our people. This approach fosters collaboration, well-being, growth, and agility, leading to a more diverse, innovative, and competitive organisation. We are also proud to share that we have a range of Inclusion Networks such as: the Women’s Business Network, Cultural and Ethnicity Network, LGBTQ+ & Allies Network, Neurodiversity Network and the Parent Network.
For more information on Diversity, Equity and Inclusion please click here: Creating Inclusion Together at NTT DATA UK | NTT DATA
what we'll offer you:
We offer a range of tailored benefits that support your physical, emotional, and financial wellbeing. Our Learning and Development team ensure that there are continuous growth and development opportunities for our people. We also offer the opportunity to have flexible work options.
We are an equal opportunities employer. We believe in the fair treatment of all our employees and commit to promoting equity and diversity in our employment practices. We are also a Disability Confident Committed Employer - we want to see every candidate performing at their best throughout the job application and interview process, if you require any reasonable adjustments during the recruitment process, please let us know and we look forward to hearing from you.
Back to search
Email to a friend
Apply now