Cybersecurity Solution Architect
Position: Cybersecurity Solution Architect
Location: Reading, UK (Hybrid-3 days a week from office)
6 months contract position
The Role
We are looking for an experienced Cybersecurity Solution Architect to design, manage, and strengthen enterprise security capabilities across IT and OT environments. The role requires deep hands-on cybersecurity experience with a strong focus on vulnerability management and risk mitigation
Your responsibilities:
- Design and define end-to-end cybersecurity solutions aligned with enterprise security standards and business requirements.
- Lead and support vulnerability identification, assessment, prioritisation, and remediation across large enterprise environments.
- Manage and mitigate security vulnerabilities across both IT and OT (Operational Technology) landscapes.
- Work closely with infrastructure, application, and OT teams to embed security controls into architectures and operations.
- Provide architectural guidance on secure system design, threat modelling, and risk-based decision making.
- Support continuous improvement of vulnerability management processes and overall security posture.
Essential skills/knowledge/experience:
- Minimum 5+ years of hands-on experience in Cybersecurity, preferably in an enterprise environment.
- Strong experience in enterprise vulnerability management, including identification, tracking, remediation, and reporting.
- Hands-on experience with Vulnerability Management (VM) tools across IT environments.
- Proven exposure to OT security and vulnerability management in OT environments.
- Experience working as a security architect in various security domains
- Strong understanding of cybersecurity principles, threats, vulnerabilities, and mitigation techniques.
- Ability to work with cross-functional teams and translate security requirements into practical solutions.
- Knowledge of Zero Trust security framework
- Has experience working with Water utility
Desirable skills/knowledge/experience:
- Experience working in regulated or critical infrastructure environments.
- Familiarity with enterprise security architectures and security control frameworks.