Security Architect

Defence
Bristol, England
10 months ago
Applications closed

Related Jobs

View all jobs

Security Architect

Experis Bristol, Bristol (county), United Kingdom
£75,000 – £85,000 pa Hybrid Clearance Required

Security Architect

DCV Technologies London, United Kingdom
£600 – £650 pd Hybrid

Security Architect

CBSbutler Holdings Limited trading as CBSbutler London, United Kingdom
£450 – £515 pd Remote Clearance Required

Security Architect

Meritus Andover, Hampshire, United Kingdom
£800 – £900 pd On-site Clearance Required

Security Architect

SSR General & Management Kendleshire, Gloucestershire, BS36 1AT, United Kingdom
£85,000 pa

Security Architect

Triad South Camberwell, London, United Kingdom
£75,000 – £80,000 pa
Posted
15 Jul 2025 (10 months ago)

Security Arcitect
Location:Bristol, UK
Clearance Required:Must be eligible for SC Clearance

Are you passionate about safeguarding advanced products and systems from ever-evolving security threats? We are seeking a highly skilledSecurity Architectto join our cutting-edge team in Bristol. In this role, you'll be instrumental in securing the software development lifecycle for complex systems within the defence and national security domain.

This position is critical to ensuring our products meet the highest standards of security by design. The successful candidate will be expected to bring deep, hands-on experience withNIST cybersecurity standards-this is essential-as well as a strong working knowledge ofDefence Standards DefStan 05-138 Issue 3 and DefStan 05-139 Issue 1. If you're an experienced professional with strong capabilities inthreat modelling,risk assessment, andsecure systems architecture, we want to hear from you.


Role Responsibilities:

  • Integrate security controls throughout the product development lifecycle

  • Conduct detailed threat modelling and risk assessments using recognised tools

  • Lead the implementation of risk management strategies based on industry best practices (NIST, ISO)

  • Work closely with development teams to ensure secure-by-design principles are followed

  • Identify and propose mitigations for security vulnerabilities in solution architectures

  • Maintain and evolve internal security policies, documentation, and awareness training

  • Support incident response efforts and coordinate remediation actions where needed

  • Serve as a subject matter expert on product and application security to internal stakeholders


Key Requirements:

  • Extensive experience applying NIST frameworks(including NIST 800-30, NIST 800-53) -non-negotiable

  • Working knowledge of DefStan 05-138 (Issue 3) and DefStan 05-139 (Issue 1)is essential

  • Proficiency in threat modelling methodologies and tools (e.g., STRIDE, DREAD, Attack Trees)

  • Familiarity with other standards such as ISO/IEC 27001, ISO 27005, OWASP, and MOD ISN 23/09

  • Ability to identify, assess and mitigate risks across software and hardware product ecosystems

  • Strong written and verbal communication skills, including the ability to convey risk to non-technical audiences


Ideal Candidate Traits:

  • Analytical thinker with strong problem-solving skills

  • Detail-oriented with excellent planning and organisational abilities

  • Resilient, proactive, and capable of driving initiatives forward independently

  • A team player with the ability to influence at all levels of the organisation

  • Eligible for SC clearance and able to work in the UK without restrictions


JBRP1_UKTJ

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Where to Advertise Cyber Security Jobs in the UK (2026 Guide)

Where to advertise cyber security jobs UK in 2026: the specialist boards, communities and channels that reach offensive, defensive and GRC security talent. The candidate pool is small, heavily vetted and in high demand across government, financial services, critical national infrastructure and the private sector simultaneously. Many of the strongest candidates hold active security clearances, are not actively job-searching through general platforms, and move primarily through specialist networks and trusted referrals. General job boards reach a broad audience but lack the specificity that security professionals expect. Specialist platforms, government-affiliated channels and cleared candidate networks each serve a different part of the market. This guide, published by CybersecurityJobs.tech, covers where to advertise cyber security roles in the UK in 2026, how the main platforms compare, what employers should expect to pay, and what the data says about hiring across different role types.

Cyber Security Jobs UK 2026: What to Expect Over the Next 3 Years

Cyber Security Jobs UK 2026: roles, salaries and the threat intelligence, cloud security and zero-trust hiring trends shaping UK cyber careers. Cyber security is one of the few sectors where demand for talent has never once dipped. Every major technological shift of the past decade — cloud migration, remote working, AI adoption, the proliferation of connected devices — has expanded the attack surface that security professionals are expected to defend. And every expansion of that attack surface has generated more jobs. But the cyber security jobs market of 2026 is not simply a larger version of what it was three years ago. It is a structurally different market. The threats have evolved, the technologies used to combat them have changed, the regulatory environment has tightened considerably, and the roles being created reflect all of that. A job seeker who understands only the cyber security landscape of 2023 is already working with an outdated map. The candidates who will thrive over the next three years are those who understand where the sector is heading — which specialisms are attracting the most investment, which technologies are reshaping defensive and offensive security practice, and how the definition of a cyber security professional is broadening well beyond the traditional image of a network defender in a SOC. This article breaks down what the UK cyber security jobs market is likely to look like through to 2028 — covering the titles emerging right now, the technologies driving employer demand, the skills that will matter most, and how to position your career ahead of the curve.

Penetration Tester Jobs in the UK: What Employers Actually Want in 2026

Penetration Tester Jobs UK 2026: the skills, certifications (OSCP, CREST, CEH) and experience UK employers actually want from ethical hackers this year. The demand for skilled professionals in cyber security has never been higher, and penetration testers sit at the very heart of this rapidly evolving industry. As organisations across the UK continue to digitise their operations, protect sensitive data, and defend against increasingly sophisticated threats, the need for ethical hackers has grown dramatically. If you are considering a career in this field—or looking to advance within it—it is essential to understand what employers are really looking for in 2026. This guide breaks down the current expectations, required skills, certifications, and practical experience that can help you stand out in a competitive job market.