Cyber Security Architect

Overview

The Cyber Security Architect will lead efforts in threat modelling and secure design across complex systems and cloud platforms within a technology consultancy environment. Working closely with architects, engineers, and business stakeholders, the contractor is expected to facilitate workshops, conduct security assessments, and act as the design authority on security architecture. This hybrid role involves travel to client sites across various locations in the UK as required.

Responsibilities

  • Lead threat modelling initiatives across complex systems and cloud environments.
  • Facilitate threat modelling workshops with architects, engineers, and business stakeholders.
  • Perform system decomposition and trust boundary analysis.
  • Act as design authority on secure solution designs and architecture reviews.
  • Produce reference architectures and secure design patterns.
  • Conduct security risk assessments and provide risk-based mitigations.
  • Translate threat models into security monitoring and detection use cases.
  • Review designs produced by other architects and support internal team upskilling.

Requirements

  • UK National with active SC Clearance.
  • Proven experience leading threat modelling for complex systems or cloud environments.
  • Hands-on application of a recognised threat modelling methodology such as STRIDE or MITRE ATT&CK.
  • Strong background in security architecture and design reviews.
  • Experience acting as a design authority on security designs.
  • Demonstrable experience in conducting security risk assessments.
  • Familiarity with security monitoring tools like Splunk or similar.
  • Excellent workshop facilitation and stakeholder engagement skills.