Cyber Security Architect
Job description
Original text imported from Reed
Description
Cyber Security Architect
At Leidos, we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers’ success. We empower our teams, contribute to our communities, and operate sustainably. Everything we do is built on a commitment to do the right thing for our customers, our people, and our community. Our Mission, Vision, and Values guide the way we do business.
UNLEASH YOUR POTENTIAL
We require a Senior Cyber Security Architect to support our customer projects within Civil & Devolved Government and Energy (DG&E) divisions in the UK. You must be based in the UK with the ability to hold SC Clearance or above, and you may need to apply for additional personnel security clearances. We are seeking individuals who can join a high-performing team and confidently design and assure robust security architectures for our customers, delivering high assurance with minimal friction. The focus is on simple, effective security that our customers value.
The role will support the delivery of secure, efficiently managed technical architectures for sensitive programmes. You will engage with third parties and customers, establishing and supporting ongoing growth. The position offers diversity in day-to-day activities and requires flexible operating parameters to support service in an agile environment, along with strong scheduling and prioritisation skills.
Are you ready for your next challenge?
The successful candidate will be expected to lead the design and assurance of secure architectures across multiple programme environments, most of which are in the cloud (AWS, Azure & Oracle), and offer expert guidance on security best practices. The ideal candidate will support the wider Leidos security capability, collaborating with a talented and multi-faceted cyber team across our UK business, delivering on customer commitments, and seeking opportunities to embed security by design.
Responsibilities
-
Lead the design, implementation, and assurance of cybersecurity architectures for the protection of programme data, systems, and networks.
-
Provide expert guidance on security architecture and design patterns for cloud and hybrid environments.
-
Conduct risk assessments, threat modelling, and develop mitigation strategies for new and existing solutions.
-
Ensure that data and infrastructure are protected by embedding appropriate security controls into architectural designs.
-
Produce and maintain architectural documentation, reporting, and communication with relevant stakeholders.
-
Embed the existing Security Architecture Framework and associated assurance approach into delivery to maintain overall (build) assurance of system and service security.
-
Lead the delivery and assurance of security requirements as part of new demands, ensuring requirements are captured, traced, and assured through design, delivery, and service transition.
-
Support the customers in the development of Zero Trust Network Architecture (ZTNA) strategies, including a roadmap to achieve target-state capabilities.
-
Lead security design and security requirements for Microsoft Entra ID, supporting current and shaping the future IDAM strategy and roadmaps.
-
Lead the Security Architecture Forums, driving decisions, actions, and architectural governance outcomes for customer programmes.
-
Lead engagement with the broader architect community to embed security-by-design into IT Governance, Technical Design Authority (TDA) processes.
-
Where required (e.g., changing threat landscape or regulatory requirements), lead the development and implementation of security policies and supporting standards to ensure systems stay secure and compliant.
Candidate Information:
-
British – Many of our projects have nationality restrictions.
-
SC cleared (Or Eligible to undergo SC Vetting) – many of our projects have nationality restrictions.
Education/Experience
-
Experience in a security architecture or senior security engineering role.
-
Experience in a technical leadership or architecture-focused position.
-
Relevant security architecture certifications (e.g., SABSA, TOGAF, CISSP-ISSAP, Microsoft Certified: Cybersecurity Architect Expert, AWS Certified Security – Specialty, or similar) are an advantage.
Essential Process Skills/Experience
-
Excellent verbal and written communication skills; works well in a team environment.
-
Experience of the IT systems engineering and architecture lifecycle.
-
Understanding of the controlling processes for the systems engineering lifecycle (e.g., requirements management, configuration management, testing and assurance) and where security architecture fits into these.
-
Familiarity with different lifecycles/methodologies (waterfall, incremental, agile, DevOps).
-
Solid understanding of Confidentiality, Integrity, and Availability (CIA) and practical experience in applying that understanding in architectural delivery.
-
Experience designing secure solutions for sensitive environments.
-
Understanding of service operations and security operational management planning.
-
Awareness of Security Frameworks such as ISO 27001, ISO 27002, NIST, and NCSC Cloud Security Principles.
-
Experience mentoring and acting in a team lead or senior role, supporting junior members of the team. Experience working on accredited security solutions in sensitive government or CNI scenarios.
Desirable Experience
-
Experience working in both customer delivery and consulting environments.
-
Experience in SecDevOps, infrastructure as code, or security as code.
-
Experience working in CNI or Public Sector project environments.
-
Working within an AGILE environment.
-
Experience defining and implementing Zero Trust / ZTNA roadmaps and identity security patterns (e.g., Microsoft Entra ID governance and access controls)
Technology Skills/Experience
Deep understanding of network and boundary protection technologies (firewalls, mail gateways, load balancers, anti-virus, IPS, IDS).
Evidence of experience architecting Cloud Security Controls on both Azure and AWS.
Practical experience with Protective Monitoring systems (SIEM/SOC) and the principles of their deployment.
Understanding of authentication and authoKey skills
AI-extracted from the job advert
Application advice
5 AI-generated recommendations to maximise your chances.
⭐ Highlight your SC Clearance eligibility at the top of your CV as this is essential for the role
🔒 Emphasise Zero Trust Network Architecture experience as this is specifically mentioned in the role requirements
☁️ Showcase multi-cloud expertise across AWS, Azure, and Oracle platforms as the role spans all three
🎯 Quantify your security architecture projects: "Designed security frameworks for 8 government programmes, reducing vulnerabilities by 45%"
🏛️ Feature any Civil Government, Devolved Government, or Energy sector experience as these are the target customer divisions
Suggested CV bullets
3 bullets our AI drafted for this specific advert, mirroring its ATS keywords.
Add these 3 bullets under your most recent experience:
- •Led Zero Trust Network Architecture implementation across 12 government systems, reducing security incidents by 67% within 18 months
- •Designed multi-cloud security frameworks spanning AWS, Azure, and Oracle for 5 Energy sector programmes worth £8.2M
- •Conducted threat modelling and risk assessments for 15 sensitive government applications, identifying and mitigating 89% of critical vulnerabilities
Free to copy — tailoring requires a 30-sec CV upload.
Your cover letter is ready
We've drafted a cover letter for Appcast Enterprise. Preview the opening, then unlock the full personalised version.
Letter preview — tailored to Appcast Enterprise
Dear Hiring Manager,
Leidos' commitment to delivering secure architectures for Civil Government and Energy sectors aligns perfectly with my cybersecurity architecture expertise, particularly my experience with Zero Trust implementations and multi-cloud security across AWS, Azure, and Oracle platforms.
My background in designing security architectures for sensitive government programmes, combined with my SC Clearance eligibility and proven track record in threat modelling and risk assessment, positions me well to support your high-assurance delivery requirements.
Free signup, no card needed. Export to PDF/Word requires a £1.99 trial (14 days).
Interview questions
10 questions generated from this advert.
Technical
- ›How would you approach designing a Zero Trust Network Architecture for a hybrid cloud environment spanning AWS and Azure?
- ›Walk me through your process for conducting threat modelling on a new government system architecture.
- ›How do you embed security controls into cloud architectures while maintaining minimal friction for users?
- ›Describe your experience with Security Architecture Frameworks and how you've implemented them in previous roles.
- ›How would you assess and mitigate security risks when migrating sensitive government data to Oracle Cloud?
Behavioural
- ›Tell me about a time when you had to lead a security architecture project with multiple stakeholders across different teams.
- ›Describe a situation where you had to balance security requirements with operational efficiency in a government environment.
- ›Give me an example of how you've collaborated with third parties to deliver security solutions for a sensitive programme.
- ›Tell me about a challenging security architecture problem you solved and how you approached it.
- ›Describe a time when you had to communicate complex security concepts to non-technical stakeholders.
STAR answer examples
Model answers using the Situation-Task-Action-Result framework. Adapt to your own experience.
Tell me about a time when you had to lead a security architecture project with multiple stakeholders across different teams.
Describe a situation where you had to balance security requirements with operational efficiency in a government environment.