- Company Name
- Brio Digital | Certified B Corp
- Job Title
- Security Architect
- Job Description
-
**Job Title:** Security Architect
**Role Summary:**
Design and secure cloud‑native digital, data, and AI services for NHS or UK central government organisations. Deliver AWS‑centric, hybrid architectures, containerised platforms (Red Hat OpenShift), and emerging AI services with embedded security from inception.
**Expectations:**
- Operate as a hands‑on architect embedded in engineering, platform, data, and programme teams.
- Embody NHS or government security requirements (NCSC guidance, DSPT, ISO 27001).
- Drive secure design, threat modelling, and risk assessment across all layers of the stack.
**Key Responsibilities:**
- Lead secure AWS cloud and hybrid architecture design and assurance.
- Provide architecture oversight for containerised platforms (Red Hat OpenShift).
- Define, document, and enforce security and cloud architecture patterns, principles, and standards.
- Offer security input during solution design, technical reviews, and governance.
- Conduct threat modelling, risk assessments, and security design reviews.
- Advise on secure use of AWS services, containers, data platforms, and AI‑enabled services.
- Ensure alignment with NHS or central government security policies and NCSC guidance.
- Collaborate with delivery teams, suppliers, and senior stakeholders to embed security by design.
**Required Skills:**
- Proven Security Architect experience in complex enterprise environments.
- Deep AWS cloud architecture knowledge, including security controls and shared responsibility.
- Expertise securing container and Kubernetes platforms, ideally Red Hat OpenShift.
- Strong grasp of identity & access management, network security, and cloud‑native security tooling.
- Proficiency in DevSecOps, zero‑trust principles, and modern infrastructure.
- Experience within NHS or UK central government public‑sector setting.
- Familiarity with public‑sector standards (NCSC guidance, DSPT, ISO 27001).
- Awareness of AI infrastructure security, data pipelines, model hosting, and AI‑enabled services.
**Required Education & Certifications:**
- Relevant bachelor’s degree in Computer Science, Cybersecurity, or related field.
- Professional certifications preferred:
- AWS Certified Security – Specialty or equivalent.
- Certified Information Systems Security Professional (CISSP) or equivalent.
- Certified Kubernetes Administrator (CKA) or similar (optional).