2T Security Ltd delivers world-class cyber security services to ensure the secure, open, and resilient operation of critical business functions for its public sector clients. We specialise in risk assessment, security architecture, Cross Domain, Secure Mobile, SOC, and managed services. We are recognised as a National Cyber Security Council Assured Service Provider for Risk Management and Security Architecture.
Role Description
At 2T, we don’t do box-ticking architectures. You’ll be working on real problems across government, defence, and enterprise, in environments that depend on your skill and judgement.
You’ll design secure, resilient systems that hold up under pressure. That means understanding how attacks really work, spotting weaknesses early, and making clear, practical decisions that engineers can build and operate.
You’ll turn complex risk into architectures that make sense, not shelfware. Scalable, testable, and grounded in how systems behave in the real world.
You’ll work closely with engineers, architects, and senior stakeholders to build security in from the start, and at every stage.
Some of our work sits in highly secure, mission‑critical environments. You’ll need to be comfortable operating where the constraints are real, and so are the consequences.
What You’ll Do
* Design and deliver secure architectures across infrastructure, cloud, application, and data platforms.
* Deliver security architecture activities, ensuring solutions are resilient, secure, and aligned with recognised frameworks (NCSC, government, or enterprise standards).
* Engage with client stakeholders to understand risks, priorities, and security requirements, always asking “why” to ensure clarity and rationale.
* Translate complex technical risks into clear architectural guidance for technical and non‑technical audiences.
* Conduct security design reviews, threat modelling, and architecture assurance activities, leveraging your deep technical understanding of potential attack vectors.
* Ensure security‑by‑design principles are embedded within system development and deployment pipelines.
* Provide expert guidance on security governance, risk management, and regulatory compliance.
* Review and refine architectures developed by other practitioners, offering constructive feedback and technical leadership.
* Mentor colleagues and contribute to the development of the wider security architecture community and best practices.
* Maintain awareness of emerging threats, technologies, and industry developments to enhance security outcomes for clients.
What You’ll Bring
* 5+ years of experience in cybersecurity, including Security Architect or senior security engineering roles.
* Strong consulting or client‑facing delivery experience with a proven ability to solve complex security challenges.
* Sound technical foundation with hands‑on understanding of exploits, attack vectors, and mitigation strategies.
* Deep knowledge of security architecture principles across cloud, infrastructure, and application domains.
* Demonstrated ability in threat modelling, risk assessment, and architecture assurance.
* Methodical and analytical mindset. Always asks why, evaluates options rigorously, and applies lessons learned to new problems.
* Excellent communication skills with the ability to engage and influence senior stakeholders.
* Collaborative and supportive, passionate about mentoring, sharing knowledge, and driving continuous improvement.
* Ability to balance strategic vision with hands‑on technical insight, even under competing priorities.
Security & Clearance Requirements
Some engagements supported by this role operate within secure operational environments supporting government, defence, and critical national infrastructure organisations.
Due to the nature of certain programmes:
* Candidates must be eligible to obtain UK Security Clearance.
* Some projects may require Security Check (SC) or Developed Vetting (DV) clearance depending on client requirements.
* Work may involve handling sensitive or controlled information in accordance with strict security and governance frameworks.
What you’ll get
* Work on critical cyber security programmes across government, defence, and enterprise
* Hands‑on experience in complex, high‑stakes environments
* Access to the tools and infrastructure you’d expect – labs, cloud, and modern security tech
* Regular hackathons, CTFs, and internal challenges to build and test your skills
* A team that works closely together - through projects, workshops, and the occasional social
* A consulting culture that values clear thinking, curiosity, and technical depth
* Support for certifications and ongoing professional development
* Flexible working, with opportunities to collaborate with clients across the UK
* Work that has a clear purpose - protecting organisations, people, and critical systems
* Enough to keep you focused on the work, not your inbox of recruiter messages
* 25 days holiday
* Take the time. Good architecture needs thinking space
* Electric car scheme
* Quiet, efficient, and well‑engineered - you’ll appreciate it
* Company pension
* Sensible, long‑term planning. You know the drill
* As much coffee as you can drink
* Because most good decisions start somewhere around the third cup
Qualifications
* Strong understanding of Security Architecture Design and implementation
* Proficiency in Application Security and Network Security
* In‑depth knowledge of Cybersecurity and Information Security principles
* Experience with risk evaluation and mitigation in a public sector or heavily regulated environment
* Excellent problem‑solving and decision‑making abilities
* Outstanding communication and collaboration skills
* Relevant certifications such as CISSP, CISM, or equivalent are advantageous
* Bachelor’s degree in Cyber security, Information Technology, or a related field is preferred
#J-18808-Ljbffr