Skip to content

General information

Posting ID
PIP10468
Type of employment
Contract
Organisation
Ministry of Justice
Contract duration
9 months
Location
London
Workplace Type
Hybrid

Description & Requirements

On behalf of The Ministry of Justice, we are looking for a Principal Enterprise Security Architect (Inside IR35) for a 9 month hybrid contract based in any MoJ office.


This role sits within the central Architecture function in the Office of the CTO. The wider team will encompass the key architecture disciplines of Enterprise, Business, Solution and Technology Architecture.

You will work collaboratively across all directorates within Justice Digital, Data and Technology (JDDT), alongside business groups and Executive Agencies, to align technology strategy and operate shared platforms that enable the delivery of products and services across the Ministry of Justice.

As the department's lead for Enterprise Security Architecture, this role is responsible for defining, governing and evolving the enterprise-wide security architecture direction for the MoJ. Reporting to the Chief Architect, you will lead the development of a coherent security architecture across the department, working closely with senior architects, cyber security leaders, platform teams and major delivery programmes.

You will establish clear security principles, guardrails and strategic priorities, enabling architects and delivery teams to make consistent, risk-informed decisions across MoJ HQ and Executive Agencies. Acting as a key senior leader, you will ensure that security architecture is aligned with departmental objectives, technology strategy and evolving threat landscapes.


Key Deliverables

  • Set and own the enterprise cyber security architecture vision and strategy across core domains including identity, cloud security, endpoint security, network security, data protection, secure integration and resilience, aligned to the departmental enterprise target state.
  • Act as a senior security authority within the Office of the CTO, providing clear architectural direction and advice to senior leaders, major programmes and investment decisions.
  • Define and evolve enterprise-wide security target states, standards, principles, control patterns and reference architectures for shared platforms and services.
  • Establish clear secure-by-design guardrails that enable delivery teams to move faster while maintaining confidentiality, integrity, availability, resilience, interoperability and value for money.
  • Provide architectural oversight and assurance for high-risk or strategically significant initiatives, balancing short-term delivery with long-term security sustainability.
  • Lead on security architecture decisions for enterprise-scale transformation, including legacy modernisation, cloud adoption, shared platforms and cross-department integration.


Essential Skills & Experience

  • Significant experience operating as a senior cyber security or security architect within a large, complex organisation, setting direction across enterprise-scale services, platforms or infrastructure.
  • Deep expertise in one or more enterprise security domains such as identity and access management, cloud security, network security, endpoint security, data protection, security monitoring, or resilience, with sufficient breadth to lead across multiple domains.
  • Proven experience defining enterprise security strategies, target states, standards or reference architectures that have been adopted across multiple teams or organisations.
  • Strong systems-thinking skills, with the ability to understand and manage dependencies, threats, vulnerabilities, risks and trade-offs across complex technology estates.
  • Experience designing secure systems and applying architecture patterns and principles to solve complex security challenges.
  • Experience influencing senior stakeholders and decision-makers, acting as a trusted advisor on complex, high-risk security decisions.
  • Excellent communication skills, with the ability to clearly explain security strategy, architecture and risk to both technical and non-technical audiences, including at senior levels.
  • Deep and current understanding of security technology, attack paths, defensive controls and the security implications of digital transformation.


Desirable Skills & Experience

  • Strong background in enabling and informing risk-based decisions, including advising senior risk owners on proportionality, tolerance and treatment options.


Please be aware that this role can only be worked within the UK and not Overseas.


Disability Confident 

As a member of the Disability Confident Scheme, MOJ guarantees to interview all candidates who have a disability and who meet all the essential criteria for the vacancy. In cases where we have a high volume of candidates who have a disability who meet all the essential criteria, we will interview the best candidates from within that group. This scheme encourages candidates with a disability and/or neurodivergence to apply. In exceptional circumstances, we may also need to apply the desirable criteria in our shortlisting process which may include holding active security clearance.


Armed Forces Covenant

The Ministry of Justice guarantees to interview veterans or spouses / partners of military personnel who meet all the essential criteria for the vacancy. In cases where we have a high volume of ex-military candidates / military spouses or partners, who meet all of the essential criteria, we will interview the best candidates from within that group. In exceptional circumstances, we may also need to apply the desirable criteria in our shortlisting process which may include holding active security clearance.


In applying for this role, you acknowledge the following "this role falls in scope of the Off Payroll Working in the Public Sector legislation. Any rates of payment quoted will reflect the gross rate per day for the assignment and will be subject to appropriate taxes and statutory costs. As such the payment to the intermediary and your income resulting from this contract will be different".