Cyber security Architect
Location: Jersey (hybrid)
Contract: Outside IR35 + Expenses
Duration: 6-months
Start Date: Early July
Overview of the Programme
We are seeking an experienced Cyber Security Architect to lead the design, assurance and governance of security architecture across a complex digital environment. This role is responsible for defining security frameworks, guiding technical teams, and ensuring that cyber security is embedded into all solution designs and delivery activities.
Required Skills & Experience
- Senior level experience in cyber security architecture within complex environments.
- Deep knowledge of security architecture principles, IAM, network security, segmentation, data protection and encryption.
- Strong experience with threat modelling, risk assessment and security frameworks (ISO 27001, NIST, etc.).
- Proven ability to produce structured security documentation and risk analysis.
- Ability to define and implement security architecture frameworks.
- Strong stakeholder engagement skills, with the ability to influence and guide both technical and business teams.
- Up to date awareness of emerging threats, attack techniques and mitigation approaches
Key Deliverables & Expected Outcomes
Security Architecture Leadership
- Define and maintain the cyber security architecture framework, principles and patterns.
- Provide authoritative guidance to ensure consistent security decisions across all services.
Design Authority & Assurance
- Act as the security design authority across all architecture layers.
- Review and approve design artefacts to ensure alignment with security standards.
Risk Management & Threat Modelling
- Apply a risk based approach to all designs.
- Maintain a cyber risk register and conduct structured threat modelling with clear mitigation actions.
Identity, Access & Data Security
- Define and enforce IAM architecture.
- Ensure strong data protection, including encryption, classification and handling.
Network, Infrastructure & Integration Security
- Assure security across networks, infrastructure, APIs and integration points.
- Ensure secure end‑to‑end data flows and system interconnections.
Monitoring & Incident Response
- Ensure solutions support centralised monitoring and logging.
- Enable integration with SIEM/SOC for effective incident detection and response.
Standards & Continuous Improvement
- Ensure alignment with recognised security frameworks (ISO 27001, NIST).
- Identify non compliance, define remediation, and stay aware of emerging threats.
Stakeholder Engagement
- Work closely with architecture, engineering and delivery teams.
