Security Architect

BAE Systems.
14 Apr 2019
31 May 2019
Job Type
The Applied Intelligence division of BAE Systems delivers solutions which protect and enhance the connected world. Everything we do creates a safer future.
We want to solve problems for our customers and by bringing together great minds, we can work together to make the world a safer place.
Everything we do creates a safer future. In a new age of cyber threats, our people have a shared vision to protect the connected world, to create and deliver intelligent global solutions across and ever changing technological (threat) landscape. We are obsessed about solving problems for our customers, we bring together great minds who face tough challenges on a daily basis, and are encourage to make a difference.
Together, we make the world a safer place.
Make everyday matter.
The team is responsible for delivering in-sourced IT infrastructure solutions for the business, with a focus on select services that enable our engineering teams and their development and production systems. This spans an international workforce to provide global and localised services. The team itself is also internationally distributed. We are organised around a product team structure with roles focussed on delivery, engineering and architecture.
The majority of the delivered services is made up of the networking, storage and compute, across public cloud and on-premise deployments, which are required to support engineering delivery work - through the full end-to-end software and hardware delivery lifecycle
Reporting into the Head of Strategy and Planning, the Security Architect is responsible for defining the security architecture across our infrastructure services, through the application of significant industry expertise.
The Security Architect will work closely with both the Infrastructure Product team and internal Security teams to ensure that security is applied both to achieve the right balance of risk mitigation and to ensure that modern techniques are used to minimise administrative overhead and improve system usability. The role will work closely with technical SME's and the Product Architect to ensure secure design practices are applied from the outset, and then with engineering teams to ensure secure delivery and operation of the end solution.
The Security Architect will maintain a repository of standard security controls and evidence against selected frameworks, maintaining and updating artefacts as threats, industry and supplier landscapes change. The security architecture will collaborate closely with the Infrastructure architect to define solutions and frameworks with the right blend of controls.
The Security Architect will:
  • Work as part of an Agile team, ensuring that security artefacts and decisions are established ahead of engineering work in order to maximise overall team velocity
  • Work across BAU, project and unplanned work, to ensure the integrity of our services
  • Work across our different infrastructures (Azure, AWS, VMware) and their associated application estate
  • Maintain a strong understand of how people use our services and how we integrate with their working practices and simplify the application of security
  • Work across numerous security frameworks to ensure the right security is applied in order to achieve different customer demands
  • Integrate with our Security team to provide clear frameworks and proposals for technical security standards with justification on how our solutions comply with company policy and industry best practice
  • Carry out risk assessments
  • Support the definition of standard solutions patterns, both as written artefacts and template solutions, using infrastructure as code
  • Oversee infrastructure security testing and work through the resultant remediation plans
  • Provide ongoing security posture reporting
Advanced level
Security Architecture
Cloud architecture
Requirements capture to develop and deliver architectures for delivery by a mix of insource and outsource teams
Security tools, including cloud-native tools
Motivation and coaching techniques
Very strong attention to detail.
Intermediate level
Automation techniques covering PowerShell, Terraform, Ansible and Puppet
Service operations
Infrastructure technologies, including Cloud solutions - AWS and Azure
DevOps technologies and techniques
Configuration management tools
Working within a product team structure
Security Clearance is required for this vacancy. If you are not currently Security Cleared, you will need to be eligible for this and willing to go through the process. For more guidance on National Security Vetting please click here.
About BAE Systems Applied Intelligence:
We help nations, governments and businesses around the world defend themselves against cyber crime, reduce their risk in the connected world, comply with regulation, and transform their operations.  We do this using our unique set of solutions, systems, experience and processes.
Our success is down to our people. The changing nature of our business means that we're constantly looking for the brightest talent to help us fulfil our ambitions. As an experienced professional, we'll entrust you with responsibility; this means that you'll have client contact, variety and support from day one.
We'll encourage and support you to develop your skills and reward you as you grow. Whatever your area of expertise, you'll be much more than just a job title; you'll be an integral part of the business where your individual contribution makes a difference every day. Great minds deserve great rewards, so we also offer a very competitive salary and benefits package.
Diversity and inclusion are integral to the success of BAE Systems Applied Intelligence. Staying competitive in today's global marketplace requires an organisational culture where employees with varying perspectives, skills, life experiences and backgrounds - the best and brightest minds - can work together to achieve excellence and realise individual and organisational potential. We also welcome discussions about flexible working.
Division Overview: Functions
Be the power behind our business - Our Corporate Functions keep us growing from strength to strength.

Help us secure a connected world by being an unseen hero. Apply now and be inspired.