Job Description
Job Title
Security Architect (12-Month Fixed-Term Contract)
Location
Hybrid - Warrington, England
Contract
12-Month Fixed-Term Contract (FTC)
Role Overview
We are seeking an experienced Security Architect to join an Enterprise Security team, responsible for ensuring the design and delivery of secure technology solutions across a large-scale transformation programme. The successful candidate will produce high-level and low-level security designs for multiple high-impact initiatives, ensuring solutions are secure by design, compliant with security standards, and aligned with business objectives. Working closely with Solution Architects, Project Managers, Business Analysts, and technical stakeholders, you will provide expert security guidance throughout the project lifecycle-from initial solution design through to implementation and deployment into production.
Key Responsibilities
- Provide specialist security architecture support across enterprise-level technology projects.
- Collaborate with Technology Solution Architects and project teams to embed security into solution design from the earliest stages of the project lifecycle.
- Support security triage activities to identify resource requirements based on project priorities, timelines, and specialist skills.
- Conduct security risk assessments using recognized threat modelling methodologies such as STRIDE, DREAD, and MITRE Att&ck.
- Produce high-level and detailed security architecture and design documentation for complex, high-security-impact initiatives.
- Define security requirements based on risk assessments, organisational standards, and security design patterns.
- Identify, assess, and communicate security risks, control gaps, and policy non-compliance to project stakeholders and service owners.
- Participate in security governance and architecture review processes, updating design documentation in response to feedback.
- Develop security test plans and scopes for functional security testing and penetration testing.
- with internal and external testing teams to support security validation and remediation activities.
- Ensure security designs comply with organisational policies, industry standards, and regulatory requirements.
Essential Skills & Experience
- Proven experience providing security architecture support within enterprise-scale technology projects.
- Strong understanding and practical application of threat modelling techniques, including STRIDE, DREAD, MITRE Att&ck, or similar frameworks.
- Experience producing structured, high-quality security designs and technical documentation.
- Broad technical knowledge across infrastructure, networking, operating systems, databases, cloud platforms, and application architectures.
- Strong expertise across key security domains, including:
- oIdentity and Access Management (IAM)
- oCryptography
- oEndpoint Security
- oNetwork Security
- oApplication Security
- oSecurity Monitoring and Logging
- oVulnerability Management
- Experience supporting penetration testing activities and working with internal and third-party security testing providers.
- Strong understanding of cloud security principles across Infrastructure as a Service (IaaS), Platform as a Service (PaaS), and Software as a Service (SaaS).
- Knowledge of industry security standards and frameworks, including CIS Controls, ISO 27001, PCI DSS, and NIST.
- Ability to assess security risks, communicate findings effectively, and support informed risk-based decision making.
- Excellent written, presentation, stakeholder engagement, and communication skills.
Desirable Skills & Experience
- Experience working within complex release management or technical delivery environments.
- Familiarity with Agile delivery tools such as Jira and Confluence.
- Experience working within highly regulated industries such as financial services, healthcare, gaming, gambling, or similar environments.
- Knowledge of multiple delivery methodologies including Agile, Scrum, Lean, and Waterfall.
- Professional security certification such as CISSP.
Key Competencies
- Strategic and analytical thinking.
- Strong problem-solving and risk assessment capabilities.
- Excellent stakeholder management and influencing skills.
- Ability to balance security, business requirements, delivery pace, and cost.
- Strong attention to detail with a governance-focused mindset.
- Collaborative approach with cross-functional technical teams.