Overview
Kainos, Birmingham, England, United Kingdom — Senior Cyber Security Architect
As a Senior Security Architect in Kainos, you’ll be responsible for the design and application of industry leading security practices in the platforms and services we build for our customers. Our projects range from visa and passport processing systems to hospital medical record platforms and global financial management and HCM systems. You’ll work with Agile delivery teams to ensure that they follow good security practices throughout the software development journey. You’ll learn about and apply new technologies and approaches, with talented colleagues who will help you develop and grow. You’ll share knowledge and help educate people on good security practices, both customers and Kainos team members.
Responsibilities
* Lead the secure design of new cloud services and solutions, setting standards and establishing frameworks.
* Identify security issues in existing system designs, and recommend mitigations that balance cost, risk and usability.
* Engage with security standards and regulations (e.g. NCSC, ISO, SOC, NIST, PCI, GDPR).
* Contribute to application, software, and/or infrastructure architecture.
* Test the security of software and infrastructure using appropriate security tools.
* Work with Continuous Security, Continuous Integration and Continuous Delivery techniques.
* Apply knowledge of network security (OSI, TCP/IP), web application security (OWASP) and platform security (CIS Benchmarks).
* Mentor and coach members of the team and wider community.
* Communicate security concepts clearly to audiences with varying technical abilities, including senior stakeholders and development teams.
Minimum requirements
* Expertise in leading the secure design of new cloud services and solutions, setting standards and establishing frameworks.
* Expertise in identifying security issues in existing system designs, with recommendations that balance cost, risk and usability.
* Knowledge of security standards and regulations (e.g. NCSC, ISO, SOC, NIST, PCI, GDPR).
* Experience in application architecture, software development and/or infrastructure architecture.
* Experience in testing the security of software and infrastructure using appropriate security tools.
* Experience with Continuous Security, Continuous Integration and Continuous Delivery techniques.
* Experience of network security (e.g. OSI, TCP/IP), web application security (e.g. OWASP) and platform security (e.g. CIS Benchmarks).
* Experience of mentoring and coaching team members and wider community.
* Excellent communication skills, with the ability to convey security complexities to audiences of various technical abilities (e.g. senior stakeholders, development teams).
Desirable
* End-to-end security involvement, including governance, risk and compliance, operational security, supply chain security and secure user management.
* Active participation in knowledge sharing activities within the team and at a wider capability level and externally where appropriate.
* Offensive security experience and qualifications (e.g. OSCP, CREST, TIGER or equivalent).
Who you are
Our vision is to enable outstanding people to create digital solutions that have a positive impact on people’s lives. Our values are the behaviours we expect from each other every day: determined, honest, respectful, creative and cooperative. These values underpin the Kainos culture.
About us
Kainos is a high-growth IT services company providing digital technology solutions and agile software development to enterprise customers. Across our 31-year history, we have worked on transformation projects across government, NHS and private sector clients. We embrace diversity, equity and inclusion and strive to create a team where everyone is valued and given an equal chance to thrive. If you require accommodations or adjustments, please reach out to our talent acquisition team.
We understand that everyone’s journey is different, and we are happy to tailor recruitment to your needs.
#J-18808-Ljbffr