×
Register Here to Apply for Jobs or Post Jobs. X

Security & Identity Architect

Job in Dartford, Kent County, DA1, England, UK
Listing for: Randstad
Full Time position
Listed on 2026-07-27
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection, Systems Engineer, IT Consultant
Salary/Wage Range or Industry Benchmark: 100000 - 150000 GBP Yearly GBP 100000.00 150000.00 YEAR
Job Description & How to Apply Below
  • Location: On-site in Dartford (Tuesday–Thursday) | Remote (Monday & Friday by agreement)
  • Contract: 6 week contract (potential for extension)

We are looking for an experienced Security & Identity Architect to drive the security design, governance, and assurance for a large-scale digital manufacturing capability on one of the UK’s most critical infrastructure programmes.

Working alongside Enterprise, Solution, Data, and Manufacturing Architects, you will ensure Cyber Security, Identity & Access Management (IAM), and Secure-by-Design principles are deeply integrated across both Enterprise IT and Operational Technology (OT) environments.

  • Ecosystem Protection:
    Implement and embed robust security architecture across the entire Digital Manufacturing ecosystem.
  • IAM Strategy:
    Lead the IAM approach across Enterprise IT, Operational Technology (OT), and shop-floor manufacturing systems.
  • Secure HLD:
    Ensure Cyber Security and IAM principles are embedded throughout all High Level Design activities.
  • Access Control & Lifecycle:
    Define RBAC, Privileged Access Management (PAM), Multi-Factor Authentication (MFA), and user lifecycle models across all platforms.
  • Federation & SSO:
    Support Single Sign-On (SSO) and identity federation across enterprise platforms and third-party partner environments.
  • Secure Integration:
    Secure APIs, machine identities, Industrial IoT (IIoT) devices, and data threads connecting SAP, PLM, MES, QMS, and Microsoft platforms.
  • Network Segmentation:
    Enforce strict network zoning and IT/OT security principles (e.g., Purdue Model).
  • Cloud & Zero Trust:
    Apply Zero Trust principles, least-privilege access, cloud security (Azure), and data encryption/classification standards.
  • Architecture Assurance:
    Review and assure designs from internal teams, primary delivery partners and tech vendors.
  • Governance Boards:
    Represent security and identity architecture at the Architecture Review Board (ARB).
  • Compliance:
    Ensure all solutions comply with Enterprise IT security policies, nuclear requirements, and industry standards.
  • Risk Management:

    Proactively identify programme security risks and define pragmatic mitigation strategies.
  • Security Architecture Input for the High Level Design (HLD)
  • Identity & Access Management (IAM) Recommendations & Artefacts
  • Security Architecture Assurance Reviews
  • Enterprise & Solution Security Architecture within major digital transformation programmes
  • Identity & Access Management (IAM) & Privileged Access Management (PAM)
  • Operational Technology (OT) & Industrial Control Systems (ICS) security
  • Cloud Security Architecture (Microsoft Azure preferred)
  • Digital Manufacturing ecosystems (MES, PLM, Quality Systems, IIoT)
  • Delivery Partner Management (assessing Tier-1 system integrators)
  • Frameworks & Standards: ISA-95, Purdue Model, IEC 62443, NIST Cyber Security Framework, ISO 27001, CIS Controls, Zero Trust
  • Collaborative & Pragmatic:
    Balances strict cyber mandates with real-world project delivery deadlines.
  • Clear Communicator:
    Explains complex technical risks effortlessly to both technical and executive stakeholders.
  • Thrives in Ambiguity:
    Comfortable operating within fast-paced, multi-supplier transformation programmes.
  • Constructive Challenge:
    Able to push back constructively on vendor designs while keeping delivery on track.
Success Measures
  • Design Integrity:
    Secure-by-Design and Identity-by-Design principles embedded across all work streams by the end of the HLD phase.
  • Risk Mitigation:
    Security flaws identified early to prevent expensive redesigns during full Digital Delivery.
  • Gap Identification:
    Clear documentation of programme-specific IAM and security gaps with defined mitigation paths.
  • Seamless Transition: A clear security assurance playbook ready to transition smoothly into implementation.
#J-18808-Ljbffr
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary