Security Architect
Location: Remote with occasional travel to Manchester
Rate: £600 per day
IR35 Status: Inside IR35
Clearance: SC Mandatory
Overview
We are seeking a Security Architect (SFIA Level 4) to join a public sector transformation programme, working predominantly remotely with occasional travel to Manchester. The successful candidate will design and assure secure architectures across a mixed technology estate, embedding secure-by-design principles into new and existing systems. Working closely with enterprise architects, delivery teams and security assurance leads, you will translate policy and risk requirements into practical architectural patterns. This is an excellent opportunity for an experienced Security Architect to shape security outcomes on a high-profile public sector programme.
Key Responsibilities
- Design and document security architectures, patterns and blueprints for new and existing systems
- Conduct risk assessments and threat modelling to identify and mitigate security vulnerabilities
- Embed secure-by-design principles across the solution life cycle, working with enterprise and solution architects
- Review technical designs for security compliance and provide sign-off against organisational policy
- Design and assure encryption and key management architecture across AWS environments, including AWS KMS and database encryption at rest and in transit
- Support accreditation activity, ITHC remediation and audit responses
- Produce clear architectural documentation (HLD/LLD, security patterns) for technical and non-technical stakeholders
- Engage with delivery teams, technical leads and business stakeholders to align security requirements with delivery timelines
- Ensure alignment with NCSC guidance, ISO 27001 and relevant government security standards
Essential Skills
- Strong commercial experience working as a Security Architect at SFIA Level 4 or equivalent
- Proven track record producing security architecture documentation, patterns and design assurance artefacts
- Hands-on experience securing AWS environments, including AWS KMS and encryption key management
- Strong experience designing and implementing database encryption strategies (at rest and in transit)
- Sound knowledge of security frameworks and standards, including NCSC CAF, ISO 27001 and NIST
- Hands-on experience conducting risk assessments and threat modelling
- Strong stakeholder engagement and communication skills, able to explain security concepts to technical and non-technical audiences
- Previous experience within the UK Public Sector
- SC Mandatory - candidates must hold or be eligible for Security Check clearance
Nice To Have
- Relevant certifications such as CISSP, CISM or TOGAF
- Exposure to Central Government security accreditation and assurance processes
- Familiarity with Secure by Design and the NCSC Cyber Assessment Framework
- AWS Certified Security - Specialty or equivalent AWS security certification