Lead Security Architect, Enablers
Posting date: | 10 June 2025 |
---|---|
Salary: | £60,300 to £70,730 per year |
Additional salary information: | National Min £60,300 - Max £66330 London Min £64,300 - Max £70,730 New entrants to the Civil Service will start their role on the salary band minimum: £60,300 for National Roles and £64,300 for London Roles. You may be eligible for an additional non-pens |
Hours: | Full time |
Closing date: | 29 June 2025 |
Location: | Sheffield |
Company: | Government Recruitment Service |
Job type: | Permanent |
Job reference: | 409827/5 |
Summary
You will engage senior stakeholders, balance risk against usability and cost, and shape patterns that let teams adopt cloud, DevSecOps, IoT and zero‑trust approaches safely. If you can blend deep technical insight with clear, influential communication and enjoy turning complex risks into elegant proportionate solutions, this role offers the chance to make a tangible impact on services millions rely on every day.
Due to business requirements this post is available on a full time/flexible working basis. Where business needs allow, some roles may be suitable for a combination of office and home-based working. Where this is the case, employees will be expected to spend a minimum of 60% of their working time in the office. Applicants can raise any queries to the email address at the bottom of the advert.
As Lead Security Architect you will direct secure architecture across a portfolio worth hundreds of millions of pounds. Working with product owners, delivery managers and enterprise architects, you will ensure every new or changed service conforms to Home Office and NCSC standards while enabling rapid, user‑centred delivery.
You will analyse emerging threats, advise on proportional mitigations, and produce or tailor reference patterns covering identity, network segmentation, container security, data protection, and monitoring. By modelling risks with frameworks such as ISO 27005, NIST, or STRIDE, you will justify design choices to technical and non‑technical audiences and document them for re‑use.
You will champion “secure‑by‑default” in agile pipelines embedding IaC scanning, SAST/DAST, SBOM and cloud‑native guardrails so security becomes a quality attribute owned by delivery teams. Through communities of practice and one‑to‑one coaching, you will nurture SEO architects and engineers, acting as escalation point for complex design decisions.
Finally, you will cultivate relationships with external suppliers, government peers and industry forums to import good practice and influence future standards, ensuring Home Office services remain resilient, cost‑effective and compliant.
Proud member of the Disability Confident employer scheme