Overview
InfrastructureWroclaw — What's this role about?
Specify and design secured by default applications, services and tools. Review Architecture to ensure secure by design by default. Conduct comprehensive risk assessments of applications, services and tools. Proactively identify security risks, mitigations, and opportunities to strengthen Endava and our client’s resilience to cyber-attacks and security incidents. Work with our clients to understand the maturity of their secured by design and by default architecture and help define strategies / tactics to become more cyber resilient. Support of the general bidding process and RFP responses. Support integration of merger and acquisition projects. Support internal and commercial projects. Support peers to develop this function’s quality of service and thought leadership. Capacity to stay up to date with emerging security technologies and ability to evaluate these for Endava client environments.
Responsibilities
- Specify and design secured by default applications, services and tools
- Review Architecture to ensure secure by design by default
- Conduct comprehensive risk assessments of applications, services and tools
- Proactively identify security risks, mitigations, and opportunities to strengthen Endava and our client’s resilience to cyber-attacks and security incidents
- Work with our clients to understand the maturity of their secured by design and by default architecture and help define strategies / tactics to become more cyber resilient
- Support the general bidding process and RFP responses
- Support integration of merger and acquisition projects
- Support internal and commercial projects
- Support peers to develop this function’s quality of service and thought leadership
- Stay up to date with emerging security technologies and evaluate these for Endava client environments
Qualifications
5+ years of full-time dedicated experience in a security architecture role focused on delivering outcomes in complex environmentsBachelor’s degree in computer science, Cyber Security, Engineering, Mathematics, or related field; or equivalent combination of education / professional experience in a similar roleOne or more high-level security- and architecture certifications (. CCSP, CISSP, CISM, OSCP, CASP+, GSEC, COBIT, SABSA, TOGAF)Familiar with Security Frameworks & Standards, such as NIST, ISO2700 Series, PCI DSSFamiliar with legislative cyber security directives such as NIS2, DORA & SECHands-on experience with defensive Cyber Security technologiesExperience in one or more cloud technologies, such as Azure, M365, GCPExcellent presentation skills and ability to communicate with both technical and non-technical stakeholdersExperience in formal document creation, such as the creation of reports or procedures#J-18808-Ljbffr