J21091
Information Technology Architecture Senior Manager
JOB TYPE
SALARY
LOCATION
RECRUITER
RECRUITER EMAIL
RECRUITER TEL NO.
Contract
Gaydon
Bianca Harris
01268 582926
Position Title: Information Technology Architecture Senior Manager
Duration: Contract
Location: Gaydon
Division: Information Technology
Position Description:
• Cryptographic SME
• A Security Architect with a strong background in cryptographic subject matter will be required to provide support to various digital projects and Business As Usual (BAU) consultancy.
• The role is based primarily at Gaydon but may require occasional visits to engineering sites in the rest of the UK and Ireland
Skills Required:
• Hardware Security Modules
• Ability to provide documentation artefacts outlining cryptographic architecture, cryptographic solutions and best practise
• Ability to provide pragmatic risk-based advice for complex cryptographic requirements
Experience Required:
• asymmetric (encryption\decryption & sign\verify) and symmetric (encrypt\decrypt and MAC) cryptographic algorithms hashing algorithms (collision, preimage, second preimage resistance) entropy sources and secure random number generators openssl \ wolfssl \ bouncy castle et al cryptographic libraries common CA software (Microsoft CA, EJBCA etc.)
• Key Management Systems software (Venafi etc.) Secret Sharing tooling (Hashicorp, CyberArk) PKCS#11 APIs, Microsoft CAPI, Java Crypto Architecture API Public Key Infrastructure (Root of Trust) SSH key and GPG key management (Web of Trust) X.509 and CVC certificates NIST FIPS Standards NIST SP Standards IETF cryptographic RFCs PKCS standards EAL Common Criteria NSA Suite B and CNSA CP and CPS standards Data at Rest Encryption i.e. TDE on Databases, Disk Encryption TLS, IPSec, SSH et al¿ CRLs and OCSP KMS, HSM, Secret sharing for public cloud (AWS, GCP, Azure¿ )
• Ability to provide pragmatic risk-based advice for complex cryptographic requirements
• Ability to provide objective and pragmatic cryptographic guidance for various project with the ability to cite relevant sources
• Ability to provide documentation artefacts outlining cryptographic architecture
• Ability to provide documentation outlining cryptographic solutions and best practise for various projects
• Hardware Security Modules Trusted Platform Modules and Trusted Execution Environments
Experience Preferred:
• PCI-DSS Standards S/MIME, DNSSEC, DKIM (DMARC) Secure API gateways DNSSEC
• Excellent written and verbal communication skills
• Previous experience and background in Information Security/Engineering/Consulting
• Proven good working industry IT compliance standards, particularly in design and implementation information security principles and best practices and experience in managing information security risk
• Background and previous experience of IT security controls
• Strong IT skills, able to analyse data for reporting purposes and follow work instruction
• Relevant degree or equivalent experience preferred
• Previous experience working on Digital or Agile transformation at enterprise scale