- Ensure that security measures are incorporated into strategic IT plans and that service expectations are clearly defined during IT project planning initiatives.
- Develop and maintain security architecture artifacts (e.g., models, templates, standards and procedures) that can be used to leverage security capabilities in projects and operations,
- Consult with IS architects, management and security staff, and relevant business units to ensure that security is factored into the evaluation, selection, installation and configuration of hardware, applications, online services and software.
- Continuously improve processes and ways of working within IT and the business in relation to IS Security, leading and managing on-going initiatives to improve business and IT compliance with legislative and regulatory instruments.
- Develop and maintain a security architecture process that enables the enterprise to develop and implement security solutions and capabilities that are clearly aligned with business, technology, regulatory and threat drivers
- Advise business stakeholders and support teams in their development of effective security strategies for their areas, providing proper advice and counselling on security policies and practices
- Define the principles, guidelines, standards, and solution patterns to ensure solution decisions are aligned with the enterprise's future-state architecture vision.
- Assist the Lead Architect in producing multi-year architectural roadmap forecasts, reflecting this in the IT plan/annual budgets and forecasts.
- Possess strong working knowledge of the methodologies to conduct threat-modelling exercises on new applications and services.
- Have practical knowledge of the information security standards domain.
- Be experienced in working with external audit and certification organisations
- Be familiar with the ISO27001 standard
- Possess knowledge of the NIS regulation and NCSC cyber assurance framework (CAF) as well as an understanding of digitalisation in a regulated environment.
- Be experienced in scoping and managing competing and complex projects