Manager – Principal Security Architect: Secure Design (IC)

undefined ago • 7 Years +

Job Summary

Job Description

The Manager – Principal Security Architect: Secure Design (IC) role focuses on accelerating the delivery of secure design artifacts and leading secure design interventions within the Security Architecture Design team. Responsibilities include developing security architecture patterns and standards, researching new technology security controls, evaluating architectural security risks, and promoting secure by design practices. The role involves guiding and mentoring team members and contributing to metrics reporting, aiming to balance secure outcomes with project delivery.
Must have:
  • Develop Security Architecture Design Patterns and Standards to comply with group security requirements, industry standards, customer requirements, regulatory requirements and good practices.
  • Assist the development of and champion a Security Architecture control framework.
  • Research, design and document the security posture requirements and controls of new technology introduced into the Group.
  • Engage with technology acquisition processes to ensure all new technology introduced is evaluated.
  • Research industry trends and regulatory requirements.
  • Lead the Security Architecture evaluation of risks identified in systems, including reviewing, and proposing tactical and strategic remediation plans.
  • Actively contribute to the adoption of secure by design practices, with technical delivery teams for both existing systems and new systems.
  • Nurture the use of secure technical practices to deliver technical excellence.
  • Support experimentation and innovation in solving problems.
  • Supervise third parties in their deliveries related to the domain area.
  • Provide company representation, internally and externally, related to information security, as needed.
  • Contribute to the development of metrics and their monitoring to report the effectiveness and efficiency of the Security Architecture function.
  • Contribute to the content and management of the Security Architecture intranet presence.
Good to have:
  • Prior experience in the financial services and / or technology sector
  • Prior experience in a heavily regulated environment
  • Experience in supervising and supporting specialist individual contributors in technology domains; inspiring others to delivery of outcomes.
  • Experience in working collaboratively with remote and offshore team members
  • Collaborative work style ensuring that stakeholders are engaged in decision making processes.
  • Highly adaptable and able to approach challenges differently in order to achieve goals.
Perks:
  • Healthcare
  • Retirement planning
  • Paid volunteering days
  • Wellbeing initiatives

Job Details

The Security Architecture Design team is responsible for developing Security Architecture patterns, developing security controls needed for new technology, promoting the use of the architectural patterns into development projects, leading the Security Architecture Design Forum, Evaluating architectural security risks in existing systems, consulting with system development teams and architects on building security into their design.

This key task of this role is accelerating the delivery of secure design artefacts and leading secure design interventions - by adding capacity and capability to the team.

Key Relationships

  • Business Aligned Principal Security Architects
  • CyberSecurity Engineering
  • CyberSecurity Testing and Vulnerability Management
  • Cloud Security
  • Identity Management
  • Security Architecture Design Forum (member)
  • Project teams
  • BISOs

Key Responsibilities

  • Develop Security Architecture Design Patterns and Standards to comply with group security requirements, industry standards, customer requirements, regulatory requirements and good practices.
  • Assist the development of and champion a Security Architecture control framework.
  • Research, design and document the security posture requirements and controls of new technology introduced into the Group. Engage with technology acquisition processes to ensure all new technology introduced is evaluated.
  • Research industry trends and regulatory requirements.
  • Lead the Security Architecture evaluation of risks identified in systems, including reviewing, and proposing tactical and strategic remediation plans, and evaluation of the cost / risk benefits of remediations.
  • Actively contribute to the adoption of secure by design practices, with technical delivery teams for both existing systems and new systems, e.g. use of internal or external guidance, leading Threat Modelling activity.
  • Nurture the use of secure technical practices to deliver technical excellence.
  • Support experimentation and innovation in solving problems
  • Supervise third parties in their deliveries related to the domain area
  • Provide company representation, internally and externally, related to information security, as needed.
  • Contributes to the development of metrics and their monitoring to report the effectiveness and efficiency of the Security Architecture function.
  • Contributes to the content and management of the Security Architecture intranet presence.

Team Responsibilities

  • Guiding and mentoring other team members as required
  • Deputising for Senior Manager - Secure Design when required

Critical Deliverables

  • Developing and prioritising the security design pattern library
  • Developing and delivering the security design patterns – individually or in conjunction with other teams, as necessary
  • Working with the neighbouring security teams and delivery projects to address emerging areas of secure design guidance and interventions
  • Developing security architecture interventions in business specific process for acquiring and developing new technology
  • Contributing to the development and reporting of metrics for the Secure Design team, within the broader Security Architecture function

Impact

This is a group-wide role which is key to effective and efficient management of security risks associated with business technology systems.

The success of the post holder will be in balancing the major aspects of the role:

  • the ability to work effectively and pragmatically with project teams, to drive secure by design outcomes, while enabling projects to deliver.
  • develop or refresh security architectural collateral - based on the planned and emerging needs of the business
  • during project delivery, identifying gaps in security architecture collateral to be added to the security design pattern library

Key Performance Indicators

  • Delivery of design patterns (timeframe from development initiation to substantive draft, through to general availability)
  • Successful outcomes from security architectural interventions with delivery projects

Functional knowledge and experience

7+ years of increasing responsibility in technical engineering or information security roles, security architecture preferred.

Business and sector expertise

  • Preferred prior experience in the financial services and / or technology sector
  • Preferred prior experience in a heavily regulated environment

Leadership and management experience

  • Experience in supervising and supporting specialist individual contributors in technology domains; inspiring others to delivery of outcomes.
  • Experience in working collaboratively with remote and offshore team members
  • Must have a collaborative work style ensuring that stakeholders are engaged in decision making processes.
  • Highly adaptable and able to approach challenges differently in order to achieve goals.

Similar Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Similar Skill Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Jobs in London, England, United Kingdom

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Similar Category Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

About The Company

LSEG (London Stock Exchange Group) isa leading global financial markets infrastructure and data provider. Our purpose is driving financial stability, empowering economies and enabling customers to create sustainable growth. Our culture of connecting, creating opportunity and delivering excellence shapes how we think, how we do things and how we help our people fulfil their potential.

London, England, United Kingdom (Hybrid)

London, England, United Kingdom (On-Site)

London, England, United Kingdom (On-Site)

New York, New York, United States (On-Site)

Bengaluru, Karnataka, India (On-Site)

Bengaluru, Karnataka, India (On-Site)

Bengaluru, Karnataka, India (On-Site)

Bengaluru, Karnataka, India (On-Site)

Gdynia, Pomeranian Voivodeship, Poland (Hybrid)

View All Jobs

Get notified when new jobs are added by London stock Exchange

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug