Skip to content

This website works best using cookies which are currently disabled.Cookie policy  Allow cookies
JobServe
 

Job Application

 
 
 

Please answer the following questions in order to process your application.

 
 
Email Address *
 
Select your working status in the UK *
 
Describe your level of Security clearance in the UK *
 
 
 
File Attachments:
(2MB file maximum. doc, docx, pdf, rtf or txt files only)
 
Attach a CV * 
 
Optional covering letter 
OR
Clear covering letter
 
 
 * denotes required field
 
 
 
Additional Information:
 
First Name
 
Last Name
 
Address
 
Country
 
Home Telephone
 
Mobile/Cell
 
Availability/Notice
 
Hourly Rate GBP
 
Approximately how far are you willing to travel to work (in miles) ?
 
 
 

Key Privacy Information

When you apply for a job, JobServe will collect the information you provide in the application and disclose it to the advertiser of the job.

If the advertiser wishes to contact you they have agreed to use your information following data protection law.

JobServe will keep a copy of the application for 90 days.

More information about our Privacy Policy.

 

Job Details

 

SC/DV Cleared - Lead Security and Compliance Architect (Contract)

Location: Remote Country: UK Rate: Inside IR35
 

Lead Security and Compliance Architect (SC/DV Cleared)

  • Contract until end of July 2024
  • Inside IR35
  • SC/DV Clearance required
  • Remote working with 1-2 days per month either working at the permanent location (Sheffield) or at an additional location with expensed travel.

The Lead Security & Compliance Architect will work towards:

  • Leading and evaluating the secure design of major products, services and input to complex solutions, challenging outmoded concepts and driving improvements with innovative, creating precedents and setting direction.
  • Working with Delivery Managers and developers: Applying security concepts to a technical level across multiple projects, working with security tools, network security infrastructure. technologies, and information security management frameworks
  • : Recommending security controls and identifying solutions that support business objective, working out subtle security needs and understanding the impact of decisions, balancing requirements and deciding between approaches.
  • Working with other technical architects: Overseeing the security engagement for projects within the nominated business spheres (Automation Centre) and cooperating with colleagues to find common solutions to similar challenges across all business lines.
  • Working with Assurance leads to lead the security assurance and evaluate the outcomes mapped against NCSC CAF and Cloud security principles.
  • Applying security concepts to a technical level across multiple projects, working with security tools, network security infrastructure. technologies, and information security management frameworks
  • Scope IT Health Checks alongside the business, engaging with suppliers, and managing remediations.
  • Providing advice, guidance and recommendations to colleagues and external organisations, in line with relevant legislation and best practice, in order to effectively underpin risk-based judgement making.
  • To perform technical risk assessments using consistent processes to quantify, and document, the likelihood and business impact of cyber security risks and to work with project managers, architects and suppliers to identify and assess compensating controls.

Awareness and able to map, assess and evaluate the following to various projects:

  • NCSC CAF
  • NCSC Principles for the security of Machine Learning
  • NCSC Guidance for Secure AI System Development
  • NCSC Secure Design Principles
  • NCSC Cloud Security Principles

Key Skills/Experience:

  • Cloud skills - Azure, AWS, Power Platform and Oracle
  • Security Design Review against CAF Frameworks
  • Creation of Data Flow Diagrams
  • Creating Threat Models
  • Understanding NCSC security guidance and architecture patterns.
  • Understanding of STRIDE threat modelling.

Knowledge of tools

  • Microsoft Visio
  • Familiarity of Sparx Enterprise Architect

Other tools to be aware of

  • ArchiMate modelling framework
  • C4 Modelling for Software Architecture
  • Data Flow diagram
  • Threat Modelling using STRIDE
  • AI Architecture, Text summarisation and model management
  • Data Management, Data Science and Analytics
  • Experience of a broad range of analytical skills and techniques for drawing insight from data.
  • Hands-on Machine Learning/Deep Neural Network technologies. This could be experience with libraries such as Tensorflow, PyTorch, or Scikit-learn.
  • Understanding of the theories underpinning statistical and mathematical approaches relating to data driven solutions. For example, this might be machine learning algorithms or methods for assuring correctness.
  • Knowledge or experience with AI/ML (eg, relevant courses and/or practical implementation experience) applying security controls to emerging AI/ML applications.

Posted Date: 21 Mar 2024 Reference: JS41190 Employment Business: Lucid Support Services Ltd Contact: Talent Acquisition Team .