- Company Name
- Intelance
- Job Title
- Security Architect (Hybrid, UK/Morocco)
- Job Description
-
**Job Title:**
Security Architect
**Role Summary:**
Define and embed security architecture standards, principles and controls into an Enterprise Architecture (EA) governance framework for a major engineering and project‑delivery organization. Deliver pragmatic, risk‑aware security designs across identity, access, network, application, data and monitoring domains, support pilot projects, and create reusable security artefacts for the EA repository.
**Expectations:**
- 7+ years in security architecture or engineering.
- Strong knowledge of IAM, network/perimeter, application security, data protection, logging/monitoring.
- Proficiency with ISO 27001, NIST, CIS Controls, and related frameworks.
- Ability to translate security requirements into actionable design guidelines for both technical and non‑technical stakeholders.
- Fluent in English; hybrid work model with occasional onsite visits (Casablanca/London).
- Bonus: experience in project‑driven industries, cloud security (Azure/AWS), SOC/SIEM, French language, and EA design‑authority forums.
**Key Responsibilities:**
- Collaborate with Enterprise, Solution, Data and Integration Architects to establish security baselines across key domains.
- Conduct posture reviews, identify gaps and risks, and influence system and integration designs.
- Define security principles, patterns, and controls for HLA/HLD and Architecture Review Board stages.
- Develop and maintain security checklists, design templates, decision logs, and artefacts for the EA repository.
- Provide security input for 1–2 pilot projects, ensuring compliance with non‑functional requirements (authentication, authorisation, encryption, logging, monitoring, resilience).
- Work with GRC to align EA governance to ISO 27001, NIST, CIS Controls.
- Advise on security improvement priorities, shape realistic roadmaps, and produce clear, versioned security documentation.
- Communicate security implications to non‑security stakeholders in practical, actionable terms.
**Required Skills:**
- Security architecture design and evaluation.
- Knowledge of IAM, network/perimeter security, application security, data protection, monitoring/logging.
- Familiarity with ISO 27001, NIST, CIS Controls, and other security standards.
- Ability to create clear design guidelines, requirement documents, and review comments.
- Strong stakeholder management, negotiation, and communication skills.
- Proficiency in English; acceptable to travel for hybrid model.
**Required Education & Certifications:**
- Bachelor’s degree in Computer Science, Information Security, or related field.
- Preferred certifications: CISSP, CISM, ISO 27001 Lead Implementer, or equivalent.