Security Architect

Serco Limited
Greater London
3 weeks ago
Create job alert

Security Architect

Hybrid - London

Full Time, Permanent

Competitive salary plus benefits

Join Serco's UK & Europe division as a Security Architect and be at the forefront of shaping our IT security landscape. In this pivotal role, you'll translate business needs into actionable security solutions, identifying and addressing gaps in our current IT capabilities. You'll define innovative strategies to bridge these gaps, ensuring seamless alignment between project delivery, overall strategy, and architecture. Take the lead in driving critical IT security workstreams and make a lasting impact on the resilience and effectiveness of our systems.

As our Security Architect, you'll take the lead in shaping Serco's security strategy. You'll drive key decisions on technology selection, guide seamless implementations, and oversee ongoing security services. By maintaining a detailed and robust security architecture across all systems, you'll ensure a solid foundation for future design and innovation in our security technology landscape.

Main responsibilities of the role:

  • Take operational ownership of all information security management processes, including:
    • Information security risk management
    • Information security incident management
    • Information security assurance activities
    • Establishment and management of an information security management forum
    • Support the ICT system accreditation
  • Support ISO/IEC 27001 certification where required.
  • Support a variety of projects and design activities, including:
    • Security factors such as HMG policy and good practice
    • Assurance requirements
    • Technical requirements
    • Recommendations of security technologies and controls
    • Physical security requirements
    • Personnel and/or procedural requirements
  • Provide support to security management functions to maintain the existing compliances, including system accreditation, ISO27001 and HMG security controls.
  • Adopt a proactive approach to security management and security assurance coordination, ensuring smooth running of scheduled activities (pen-tests, security documentation review) and gaining the trust of key stakeholders (including customer representatives and accreditors).
  • Engage with external audit and assurance providers, including IT Security Health Check suppliers, scoping test plans, and helping stakeholders interpret the results of the tests and audits, as well as supporting the implementation of any remedial actions.
  • Implement the Business Unit Information Security Policy and related processes and procedures in line with ISO27001 and Government policies. Undertake gap analyses against formal security frameworks, reporting on areas of deficiency and producing remedial action plans.
  • Manage incident response and conduct investigations to understand the source of security breaches, assess and contain damage and devise measures to protect against future breaches.

What you'll need:

  • Bachelor's degree in an IT related discipline is expected but not mandatory.
  • Thorough understanding of modern IT infrastructure, applications and Cloud based technologies.
  • Strong understanding of Secure by Design principles and MOD security policies and requirements (e.g. JSP 440, JSP 605, DEFCON 658).
  • Proven analytical skills with a logical approach to problem-solving and the ability to develop innovative ideas and effective solutions.
  • Effective communication skills and ability to convey complex technical details to clients in a straightforward manner.
  • Strong background in security architectures, processes and both industry and government compliances (ISO27001, CES, CES+ in particular).
  • Background in Microsoft, AWS and/or Cloudflare security technology would be beneficial.
  • Good knowledge of security standards, legislation, and best practice.
  • Must be able to achieve SC clearance upon appointment.

What we offer:

  • Company car / £4200 cash allowance.
  • Bonus scheme - 20% max.
  • Private healthcare - individual.
  • Life assurance.
  • Up to 6% contributory pension.
  • 25 days annual leave plus bank holidays.
  • Annual leave purchase scheme.
  • Access to the Serco benefits portal offering discounts across major high street brands in Retail, Leisure & Hospitality.
  • Health and wellbeing support for you and your family, including an Employee Assistance Programme, Health Cash Plans, free flu jabs, and more.
  • Comprehensive career development opportunities, including role-specific training, leadership coaching, and formal study to support your growth with Serco.
  • A safe, inclusive, and supportive culture.
  • A company passionate about diversity and inclusion.

Apply
Please click on the apply button to complete your application. Occasionally we receive a large volume of applications for our roles and when that happens we sometimes bring the closing date forward, so please apply promptly to avoid disappointment.

#J-18808-Ljbffr

Related Jobs

View all jobs

Security Architect

Security Architect

Security architect

Security Architect

Security Architect

Security Architect

Get the latest insights and jobs direct. Sign up for our newsletter.

By subscribing you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

10 Must-Read Cyber Security Books for UK Professionals: Boost Your Career and Stay Ahead of Threats

With rapid advancements in digital infrastructure, cloud computing, and the Internet of Things (IoT), cyber threats continue to evolve at lightning speed. For organisations across the UK—and globally—robust cyber security is no longer optional: It’s a strategic imperative. From healthcare and finance to government agencies and tech start-ups, every sector needs skilled professionals to safeguard critical data and protect users. If you’re looking to break into or advance within the cyber security industry, staying updated on the latest techniques, threat landscapes, and defence strategies is paramount. One of the best ways to build and sharpen your expertise is by reading authoritative, high-quality books that combine foundational knowledge with cutting-edge insights. In this guide, we’ve compiled a list of ten books that cater to various skill levels, spanning ethical hacking and threat intelligence to secure software development and cryptography. By diving into these resources, you’ll fortify your understanding of cyber security fundamentals, explore hands-on techniques for defending systems, and gain the strategic perspective needed to excel in roles throughout the UK’s thriving cyber security landscape.

Navigating Cybersecurity Career Fairs Like a Pro: Preparing Your Pitch, Questions to Ask, and Follow-Up Strategies to Stand Out

In a world where digital threats are escalating and online infrastructure underpins nearly every aspect of our personal and professional lives, cybersecurity has swiftly become one of the most sought-after career fields. Demand for skilled cybersecurity professionals outstrips supply, both in the UK and globally. From ethical hackers and penetration testers to governance, risk, and compliance (GRC) specialists, the opportunities are extensive—and lucrative. Amidst this surge in demand, cybersecurity career fairs provide an invaluable chance to meet potential employers face-to-face, gain industry insights, and make connections that can accelerate your career trajectory. Unlike applying to countless jobs online, these events bring companies, security leaders, and aspiring candidates together under one roof. When approached with the right strategy, a single conversation at a cybersecurity fair can open the door to your dream job. In this comprehensive guide, we’ll explore how to prepare thoroughly, engage confidently, and follow up effectively after a cybersecurity career fair. By incorporating these insights into your approach, you’ll stand out from the crowd and maximise your chances of securing the perfect role in this fast-growing field.

Common Pitfalls Cyber Security Job Seekers Face and How to Avoid Them

The cyber security industry in the UK and worldwide is experiencing rapid growth. With cyber attacks growing in sophistication and frequency, organisations are investing more resources than ever into defending their digital assets. From penetration testers and threat analysts to security architects and compliance officers, cyber security professionals are in high demand across a variety of sectors—including finance, healthcare, government, and retail. Yet, in spite of this high demand, the process of landing a cyber security role can be more challenging than many candidates anticipate. The stakes are high: prospective employers entrust cyber professionals with their most sensitive data, their compliance posture, and often their core business operations. Therefore, they’re looking for candidates who can demonstrate not just technical know-how, but also excellent communication, adaptability, and an awareness of the broader business context. In this article, we’ll explore the most common pitfalls that cyber security job seekers face, especially in the UK market, and how to avoid them. Whether you’re a recent graduate, a professional transitioning from a different field, or an experienced practitioner aiming for a senior role, these insights will help you stand out and secure the opportunities that fit your skill set and career goals.