HomeJobsHampshireFarnboroughCyber Security Architect
Back to all jobs
⚡ Source: ReedRef: 56858066

Cyber Security Architect

Appcast Enterprise·Farnborough, Hampshire·Posted 4 days ago
Tailor my CV for this job — Free

Job description

Original text imported from Reed

Description

Cyber Security Architect

At Leidos, we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers’ success. We empower our teams, contribute to our communities, and operate sustainably. Everything we do is built on a commitment to do the right thing for our customers, our people, and our community. Our Mission, Vision, and Values guide the way we do business.

UNLEASH YOUR POTENTIAL

We require a Senior Cyber Security Architect to support our customer projects within Civil & Devolved Government and Energy (DG&E) divisions in the UK. You must be based in the UK with the ability to hold SC Clearance or above, and you may need to apply for additional personnel security clearances. We are seeking individuals who can join a high-performing team and confidently design and assure robust security architectures for our customers, delivering high assurance with minimal friction. The focus is on simple, effective security that our customers value.

The role will support the delivery of secure, efficiently managed technical architectures for sensitive programmes. You will engage with third parties and customers, establishing and supporting ongoing growth. The position offers diversity in day-to-day activities and requires flexible operating parameters to support service in an agile environment, along with strong scheduling and prioritisation skills.

Are you ready for your next challenge?

The successful candidate will be expected to lead the design and assurance of secure architectures across multiple programme environments, most of which are in the cloud (AWS, Azure & Oracle), and offer expert guidance on security best practices. The ideal candidate will support the wider Leidos security capability, collaborating with a talented and multi-faceted cyber team across our UK business, delivering on customer commitments, and seeking opportunities to embed security by design.

Responsibilities

  • Lead the design, implementation, and assurance of cybersecurity architectures for the protection of programme data, systems, and networks.

  • Provide expert guidance on security architecture and design patterns for cloud and hybrid environments.

  • Conduct risk assessments, threat modelling, and develop mitigation strategies for new and existing solutions.

  • Ensure that data and infrastructure are protected by embedding appropriate security controls into architectural designs.

  • Produce and maintain architectural documentation, reporting, and communication with relevant stakeholders.

  • Embed the existing Security Architecture Framework and associated assurance approach into delivery to maintain overall (build) assurance of system and service security.

  • Lead the delivery and assurance of security requirements as part of new demands, ensuring requirements are captured, traced, and assured through design, delivery, and service transition.

  • Support the customers in the development of Zero Trust Network Architecture (ZTNA) strategies, including a roadmap to achieve target-state capabilities.

  • Lead security design and security requirements for Microsoft Entra ID, supporting current and shaping the future IDAM strategy and roadmaps.

  • Lead the Security Architecture Forums, driving decisions, actions, and architectural governance outcomes for customer programmes.

  • Lead engagement with the broader architect community to embed security-by-design into IT Governance, Technical Design Authority (TDA) processes.

  • Where required (e.g., changing threat landscape or regulatory requirements), lead the development and implementation of security policies and supporting standards to ensure systems stay secure and compliant.

Candidate Information:

  • British – Many of our projects have nationality restrictions.

  • SC cleared (Or Eligible to undergo SC Vetting) – many of our projects have nationality restrictions.

Education/Experience

  • Experience in a security architecture or senior security engineering role.

  • Experience in a technical leadership or architecture-focused position.

  • Relevant security architecture certifications (e.g., SABSA, TOGAF, CISSP-ISSAP, Microsoft Certified: Cybersecurity Architect Expert, AWS Certified Security – Specialty, or similar) are an advantage.

Essential Process Skills/Experience

  • Excellent verbal and written communication skills; works well in a team environment.

  • Experience of the IT systems engineering and architecture lifecycle.

  • Understanding of the controlling processes for the systems engineering lifecycle (e.g., requirements management, configuration management, testing and assurance) and where security architecture fits into these.

  • Familiarity with different lifecycles/methodologies (waterfall, incremental, agile, DevOps).

  • Solid understanding of Confidentiality, Integrity, and Availability (CIA) and practical experience in applying that understanding in architectural delivery.

  • Experience designing secure solutions for sensitive environments.

  • Understanding of service operations and security operational management planning.

  • Awareness of Security Frameworks such as ISO 27001, ISO 27002, NIST, and NCSC Cloud Security Principles.

  • Experience mentoring and acting in a team lead or senior role, supporting junior members of the team. Experience working on accredited security solutions in sensitive government or CNI scenarios.

Desirable Experience

  • Experience working in both customer delivery and consulting environments.

  • Experience in SecDevOps, infrastructure as code, or security as code.

  • Experience working in CNI or Public Sector project environments.

  • Working within an AGILE environment.

  • Experience defining and implementing Zero Trust / ZTNA roadmaps and identity security patterns (e.g., Microsoft Entra ID governance and access controls)

Technology Skills/Experience

  • Deep understanding of network and boundary protection technologies (firewalls, mail gateways, load balancers, anti-virus, IPS, IDS).

  • Evidence of experience architecting Cloud Security Controls on both Azure and AWS.

  • Practical experience with Protective Monitoring systems (SIEM/SOC) and the principles of their deployment.

    Understanding of authentication and autho
  • SpeedCV AI

    Key skills

    AI-extracted from the job advert

    Must-have skills
    SC Security Clearance eligibilityCybersecurity architecture designAWS cloud securityAzure securityOracle Cloud securityZero Trust Network ArchitectureThreat modellingRisk assessmentSecurity Architecture Framework
    Nice-to-have
    Government sector experienceEnergy sector securitySecurity assuranceHybrid environment securitySecurity controls implementation
    Soft skills
    LeadershipCommunicationStakeholder engagementPrioritisationCollaborationFlexibilityProblem solving
    SpeedCV AI

    Application advice

    5 AI-generated recommendations to maximise your chances.

    1

    ⭐ Highlight your SC Clearance eligibility at the top of your CV as this is essential for the role

    2

    🔒 Emphasise Zero Trust Network Architecture experience as this is specifically mentioned in the role requirements

    3

    ☁️ Showcase multi-cloud expertise across AWS, Azure, and Oracle platforms as the role spans all three

    4

    🎯 Quantify your security architecture projects: "Designed security frameworks for 8 government programmes, reducing vulnerabilities by 45%"

    5

    🏛️ Feature any Civil Government, Devolved Government, or Energy sector experience as these are the target customer divisions

    NEW
    AI SpeedCV

    Suggested CV bullets

    3 bullets our AI drafted for this specific advert, mirroring its ATS keywords.

    How to tailor your CV

    Add these 3 bullets under your most recent experience:

    • Led Zero Trust Network Architecture implementation across 12 government systems, reducing security incidents by 67% within 18 months
    • Designed multi-cloud security frameworks spanning AWS, Azure, and Oracle for 5 Energy sector programmes worth £8.2M
    • Conducted threat modelling and risk assessments for 15 sensitive government applications, identifying and mitigating 89% of critical vulnerabilities

    Free to copy — tailoring requires a 30-sec CV upload.

    NEW
    AI cover letter

    Your cover letter is ready

    We've drafted a cover letter for Appcast Enterprise. Preview the opening, then unlock the full personalised version.

    Letter preview — tailored to Appcast Enterprise

    Dear Hiring Manager,

    Leidos' commitment to delivering secure architectures for Civil Government and Energy sectors aligns perfectly with my cybersecurity architecture expertise, particularly my experience with Zero Trust implementations and multi-cloud security across AWS, Azure, and Oracle platforms.

    My background in designing security architectures for sensitive government programmes, combined with my SC Clearance eligibility and proven track record in threat modelling and risk assessment, positions me well to support your high-assurance delivery requirements.

    Get my personalised letter — free

    Free signup, no card needed. Export to PDF/Word requires a £1.99 trial (14 days).

    SpeedCV exclusive
    SpeedCV AI

    Interview questions

    10 questions generated from this advert.

    Technical

    • How would you approach designing a Zero Trust Network Architecture for a hybrid cloud environment spanning AWS and Azure?
    • Walk me through your process for conducting threat modelling on a new government system architecture.
    • How do you embed security controls into cloud architectures while maintaining minimal friction for users?
    • Describe your experience with Security Architecture Frameworks and how you've implemented them in previous roles.
    • How would you assess and mitigate security risks when migrating sensitive government data to Oracle Cloud?

    Behavioural

    • Tell me about a time when you had to lead a security architecture project with multiple stakeholders across different teams.
    • Describe a situation where you had to balance security requirements with operational efficiency in a government environment.
    • Give me an example of how you've collaborated with third parties to deliver security solutions for a sensitive programme.
    • Tell me about a challenging security architecture problem you solved and how you approached it.
    • Describe a time when you had to communicate complex security concepts to non-technical stakeholders.
    SpeedCV AINEW

    STAR answer examples

    Model answers using the Situation-Task-Action-Result framework. Adapt to your own experience.

    1Question

    Tell me about a time when you had to lead a security architecture project with multiple stakeholders across different teams.

    I led the security architecture redesign for a government digital transformation programme involving 4 departments and 18 stakeholders. The existing architecture had 23 critical vulnerabilities and compliance gaps. I established weekly steering meetings and created a unified security framework document that mapped requirements across all teams. My approach involved conducting individual stakeholder interviews to understand their specific needs, then designing a Zero Trust architecture that addressed 95% of requirements while reducing complexity by 40%. The project delivered 3 weeks ahead of schedule, achieved full compliance certification, and saved £180,000 in remediation costs.
    2Question

    Describe a situation where you had to balance security requirements with operational efficiency in a government environment.

    A Civil Service department needed to migrate 8 legacy systems to AWS while maintaining 24/7 operations and strict security controls. The initial security design would have caused 6-hour daily maintenance windows, unacceptable for their citizen-facing services. I redesigned the architecture using automated security controls and implemented a phased migration approach with blue-green deployments. This reduced maintenance windows to 30 minutes monthly while actually improving security posture by 35%. The solution processed 2.1 million citizen transactions without interruption and received commendation from the department's Chief Technology Officer.

    Similar jobs

    View all