Principal Security Architect

4 weeks ago


Chesterton, United Kingdom ARM Full time

Job Overview:

The role will spend time helping teams come up to speed with refreshed approaches to security requirement identification, threat modelling, coding standards, and security testing, with a focus on applying these concepts to traditional and modern infrastructure in green-field and existing deployments. It will involve taking insight from these activities to advise and construct the 'middleware' that makes the right security choices easier to make and implement for responsible teams.


As our GRC world evolves, this role will play a pivotal role in maintaining alignment between SDL and policies, standards and guidelines, using a common security framework to apply consistency.

Finally, you will add to our general capacity for security consulting and reviews, including assisting GRC teams where required.


Responsibilities:
- Maintain and develop standards and guidance that builds SDL maturity in the IT team
- Help traditional infrastructure teams develop strategies for meeting the spirit of SDL requirements, pushing towards use of automation, infrastructure-as-code, & DevOps methods rather than manual or golden image techniques
- Develop implementation-specific architecture templates that meet security requirements expressed in policy and standards
- Assist with security reviews of and technical recommendations into high-level and low-level designs where required
- Assist with GRC consultation queries where required
- Invest in others, including application development and infrastructure teams, to support business applications and processes in new ways.
- Afford mentorship regarding solutions and concepts.
- Further a culture of innovation within the architecture and broader IT team.

Required Skills and Experience:
- Ability to align security frameworks with organisation security policies, and to craft corresponding security controls (whether implemented by technology or process)
- Proven experience implementing SDL in non-software contexts, including infrastructure.
- Experience with Infrastructure-as-Code (IaC) and automation through DevOps, and tools such as Jenkins, Terraform, and Ansible.
- Prior experience working with recognised security frameworks from ISO, NIST, etc, and with neutral / harmonisation frameworks like UCF (Unified Compliance Framework).
- Solid technical understanding of both on-premise infrastructure (network, platform, network-based storage, OS, virtualisation), cloud infrastructure (AWS, GCP, Azure, and others), and technologies found in both (e.g. docker, Kubernetes).

“Nice To Have” Skills and Experience:
- Bachelor's degree in computer science, information technology, or a related field; or equivalent experience/professional/industry certifications.
- Understanding of identity & access management for both people & systems.
- Understanding of software engineering.
- Exposure to large enterprise platforms such as SAP and Salesforce.
- Knowledge of Arm based compute & software.
- Relevant industry / vendor certifications.
- A passion for optimisation and automation, and a desire to motivate change
- Strong motivation and drive, with the ability to operate across multiple projects simultaneously, including those that span geographies

In Return:
We offer exciting and interesting work in global and diverse team. Arm's growth trajectory will ensure career progression and the opportunity to have a significant impact on our success.

#LI-JW



  • Chesterton, United Kingdom ARM Full time

    Would you like to join a team working across the software technology components used by hundreds of millions of users across multiple platforms and market segments globally? As a Software Architect in the Software Organisation, you will work with our key software ecosystems to define software solutions to enable Arm technology and develop strategies to have...


  • Chesterton, United Kingdom ARM Full time

    Position Overview:Are you enthusiastic about advancing software innovations and eager to collaborate with a diverse team on multiple platforms? The Software Solutions Architect role at Arm presents an exciting opportunity for you.The Arm Central Engineering Software division is in search of a committed professional to contribute to the creation of software...


  • Chesterton, United Kingdom ARM Full time

    Do you want to help shape the next generation of connected embedded devices and solutions? In the Central Technology Systems Group, we have a diverse set of engineers covering all aspects of SoC system architecture.You will have the opportunity to make high-impact changes daily by solving challenging technical problems in next generation connected embedded...


  • Chesterton, United Kingdom ARM Full time

    Job Overview: Do you want to craft the next generation of smartphone and tablet solutions, extracting the maximum performance and power efficiency from the latest process and packaging technologies? In the Central Technology Group, we have a diverse set of engineers covering all aspects of SoC system architecture.You have the chance to create high-impact...


  • Chesterton, United Kingdom ARM Full time

    Job Overview:We are looking for a Software Engineer to join our Functional Safety compiler team to work on our next generation C++17 compiler.The Arm Compiler for Embedded product is based on LLVM and Clang, and our team works on the qualification and certification of the compiler to Functional Safety standards such as ISO 26262 and the Cybersecurity...


  • Chesterton, United Kingdom ARM Full time

    Would you like to join a team working across the software technology components used by hundreds of millions of users across multiple platforms and market segments globally? As a Software Architect in the Software Organisation, you will work with our key software ecosystems to define software solutions to enable Arm technology and develop strategies to have...


  • Chesterton, United Kingdom ARM Full time

    Arm’s Software Engineering group is responsible for creating and improving the software eco-system around Arm's next generation of applications processors. We help our partners build creative Arm-powered products, for various segments Mobile, Server, IoT connected devices, Augmented & Virtual Reality offerings, Autonomous Driving Solutions etc. and in...