Lead Security Architect recruitment
A leading ecommerce company is looking for a Lead Security Architect to have responsibility for integrating information security strategy, architecture and technology into the broader information technology domain. As a Lead Security Architect you will be expected to provide leadership and direction within the team while driving the use of innovative and pragmatic security technologies to benefit the business.
Accountabilities include but aren’t limited to:
- - Assessing all projects and initiatives to ensure their adherence to the security strategy, architecture and policies.
- - Identify and mitigate risk and exposure associated with any project or delivery initiatives.
- - Act as a trusted source of technical security expertise, providing leadership and guidance to all business areas in their strategic planning and project development lifecycle.
- Liaise and interface with the business, architects and analysts to ensure that the security strategy and architecture supports future business objectives and requirements.
- Support the creation and delivery of the Information Security strategy.
- Ensure that compliance, governance, legal and regulatory obligations are met.
- Manage and monitor compliance to all relevant company and regulatory policies including completion of any mandatory training or certification requirements.
- Ensure that the company’s controls and countermeasures are appropriate and fit for purpose, providing the highest levels of confidentiality, integrity and availability of key information assets.
- Drive security awareness throughout all levels of the organisation.
- Maintain personal accountability for ensuring confidentiality, integrity and availability key systems and user data.
- Ongoing management of core compliance obligations (PCI-DSS, WLA ISO27001).
- Provide thought leadership in the analysis, feasibility, design, prototyping, assurance and implementation of strategic security solutions within the company.
- Maintain industry awareness of current and emerging threats ensuring that they are assessed and mitigated prior to causing business impact.
You will need significant experience of delivering security architecture and strategy in large commercial environments with knowledge of both business risk assessment in a regulatory environment and technical risk assessment. In addition, you will need to be able to demonstrate a clear understanding at an enterprise level of application, network, infrastructure and data security architecture with exposure to complex regulated environments such as Government, medical or financial a benefit. You must have significant experince in multiple previous roles with clear accountability for strategic delivery of security as well as evidenced practice of the development, delivery and maintenance of security architecture and security strategy. You must have demonstrable understanding at an enterprise level of application, network, infrastructure and data security architecture and the ability to articulate complex technical matters to all levels of the business. You will need an understanding of Information Technology management principles (eg ITIL, COBIT) and awareness of HMG Infosec Standards 1-5 and the Manual of Protective Security. This is an outstanding opportunity to join a leading company as a key member of their senior IT team.