Enable job alerts via email!

Lead Security Architect

Government Recruitment

Manchester

On-site

GBP 70,000 - 90,000

Full time

16 days ago

Job summary

A public sector organization in Manchester is seeking a Lead Security Architect to secure architecture across critical services. The role involves analyzing threats, advising on mitigations, and embedding secure practices in agile pipelines. Candidates should have experience in security architecture and strong leadership skills. This position offers a unique opportunity to influence future standards and ensure compliance.

Qualifications

  • Experience leading security architecture across large portfolios.
  • Analytical capability to assess threats and recommend mitigations.
  • Ability to model risks using ISO27005, NIST, or STRIDE.
  • Experience embedding secure-by-default practices in agile pipelines.
  • Experience in coaching and building relationships with external suppliers.

Responsibilities

  • Analyse emerging threats and advise on mitigations.
  • Model risks using design frameworks for different audiences.
  • Champion secure-by-default in agile pipelines.
  • Nurture architects and engineers through coaching.
  • Cultivate relationships with external suppliers and government peers.

Skills

Leadership in security architecture
Threat analysis
Risk modeling
Secure coding practices
Coaching and mentoring
Job description
Overview

As a Lead Security Architect, you will directly secure architecture across a portfolio worth hundreds of millions of pounds. Working with product owners, delivery managers and enterprise architects, you will ensure every new or changed service conforms to Home Office and NCSC standards while enabling rapid, user-centred delivery.

Responsibilities
  • You will analyse emerging threats, advise on proportional mitigations, and produce or tailor reference patterns covering identity, network segmentation, container security, data protection, and monitoring.
  • By modelling risks with frameworks such as ISO27005, NIST, or STRIDE, you will rationalise design choices to technical and non-technical audiences and document them for reuse.
  • You will champion “secure by default” in agile pipelines embedding IaC scanning, SAST/DAST, SBOM and cloud native guardrails so security becomes a quality attribute owned by delivery teams.
  • Through communities of practice and one-to-one coaching, you will nurture architects and engineers, acting as escalation point for complex design decisions.
  • Finally, you will cultivate relationships with external suppliers, government peers and industry forums to import good practice and influence future standards, ensuring Home Office services remain resilient, cost-effective and compliant.
Qualifications
  • Experience leading security architecture across large portfolios and working with product owners, delivery managers and enterprise architects.
  • Analytical capability to assess threats and recommend proportional mitigations; experience producing or tailoring reference patterns for identity, network segmentation, container security, data protection, and monitoring.
  • Ability to model risks using frameworks such as ISO27005, NIST, or STRIDE and to communicate design choices to both technical and non-technical audiences.
  • Experience embedding secure-by-default practices in agile pipelines, including IaC scanning, SAST/DAST, SBOM, and cloud-native guardrails.
  • Experience coaching and mentoring engineers and architects, and building relationships with external suppliers, government peers and industry forums.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.