Zero Trust Network Architect

CACI, City of Westminster

Zero Trust Network Architect

Salary not available. View on company website.

CACI, City of Westminster

  • Full time
  • Permanent
  • Onsite working

Posted today, 23 Oct | Get your application in now to be one of the first to apply.

Closing date: Closing date not specified

job Ref: 18166908ce35424b9d9dd0d30c78635c

Full Job Description

We are seeking an experienced Zero Trust Network Architect to lead the design, deployment, and management of a robust Zero Trust Architecture (ZTA) for our enterprise network. This role will involve developing a strategic roadmap, architecting secure network solutions, overseeing deployments, maintaining documentation, and leading a team of security professionals to ensure continuous alignment with Zero Trust principles., Strategy & Architecture: Develop and implement the Zero Trust security strategy, ensuring alignment with business goals and compliance requirements. Architect a scalable, secure, and high-performance Zero Trust Network that integrates identity, device, network, and application layers. Collaborate with key stakeholders (CISO, IT, Security, DevOps) to assess security needs, identify risks, and provide technical direction. Define policies for access management, segmentation, encryption, and authentication that adhere to Zero Trust principles (least privilege, micro-segmentation, etc.). Deployment & Execution: Lead the deployment of Zero Trust Network solutions, overseeing the entire implementation life cycle (design, build, test, deployment). Ensure seamless integration of security technologies, such as identity and access management (IAM), multi-factor authentication (MFA), and security information and event management (SIEM). Work closely with DevOps and cloud teams to secure workloads in hybrid and multi-cloud environments. Perform continuous monitoring, vulnerability assessments, and threat modelling to optimize the Zero Trust framework. Documentation & Compliance: Develop and maintain detailed technical documentation, including architecture diagrams, design specifications, configuration guides, and runbooks. Ensure Zero Trust policies and configurations adhere to regulatory and compliance standards such as GDPR, HIPAA, NIST, and others. Establish and document security best practices, incident response procedures, and operational processes. Team Leadership & Collaboration: Lead, mentor, and manage a team of security engineers and architects to drive Zero Trust initiatives. Foster a culture of security awareness and Zero Trust principles across the organization. Provide training and knowledge sharing on Zero Trust models, frameworks, and best practices. Serve as the technical point of contact for Zero Trust initiatives, communicating with executives and technical teams alike., We don't settle for people that can just do the job, we look for people that are constantly trying to push the boundaries and improve what we do. This is what makes CACI a great team to be a part of. Innovation is hugely important to us, we aim to ensure that everybody in the business gets to spend 5% of their time innovating and training. If you are an innovative thinker and like to challenge the norm, coming up with new ways of doing things, then you will be surrounded by likeminded people at CACI. Our goal is to become a key partner in IT and Network Services space, providing top quality solutions and experts, using cutting edge technology and techniques. As a member of our team, you will be key to helping us achieve this goal. Progression We understand that your career progression is important to you. At CACI people get promoted on merit, when they are ready. This means that your career is completely in your own hands and there is never a ceiling for your progress. We work with you to plan and develop your career through six monthly reviews (annual at a more level). We will provide clear expectations and KPI's Everyone's career path is different. We welcome people exploring different areas and trying out new skillsets. Just because you start off down one path doesn't mean you are committed to it indefinitely. At CACI you have the freedom to carve your own career path. Flexibility: The key to our success is our teamwork and collaboration and that tends to work best when we are all in the office working together. That said, we fully appreciate that everyone leads busy lives and we can't always be in the office. This is why we embrace hybrid working. The aim is to be on the client site 3 times a week so you are inspired the culture and dynamism of the wider teams. Development: Your development is key and is a top priority for the team. We offer 3 types of training: externally run consulting courses, externally run bespoke courses and internal courses. Everyone has different training requirements which means everyone has their own training plan. A bespoke training plan will be created for you when you join.

The ideal candidate will possess deep expertise in network security, identity management, and Zero Trust frameworks. This is a leadership position requiring strategic vision, hands-on technical skills, and strong communication and management capabilities., Bachelor's or Master's degree in Computer Science, Information Security, or related field. 7+ years of experience in network security architecture and/or IT infrastructure, with at least 3 years focusing on Zero Trust frameworks. Expertise in Zero Trust architecture principles, including micro-segmentation, least-privilege access, and continuous monitoring. Proven experience designing and implementing Zero Trust solutions in complex enterprise environments (on-prem, hybrid, and cloud). In-depth knowledge of network security technologies, such as Firewalls, VPNs, IAM, MFA, SASE, ZTNA, and encryption. Strong understanding of identity-based security, network segmentation, and endpoint security. Familiarity with security frameworks and regulations (NIST SP 800-207, CIS Controls, GDPR, HIPAA). Experience managing and leading technical teams. Skills & Competencies: Strong leadership and team management skills. Ability to communicate complex technical concepts to both technical and non-technical stakeholders. Excellent problem-solving, analytical, and troubleshooting skills. Strong organizational skills with the ability to manage multiple projects simultaneously. Up-to-date knowledge of emerging trends, technologies, and threats in cybersecurity.

CACI Network Services is a rapidly expanding specialist IT and Networks consultancy offering a wide variety of opportunities to work within challenging and exciting environments with our major clients in Global Media, Banking, Government, Telecoms & Utilities.

We have a range of benefits on offer to support you. We have a comprehensive list of schemes ranging from pension plans, to health and wellness policies, in addition you can opt into a selection of flexible benefits to meet your personal needs.

  • Competitive salary
  • Bonus related to meetings booked (or sales made)
  • Pension contributions up to 5% (matched by employee and employer)
  • Life Insurance
  • Personal Accident Insurance
  • Private Health Insurance from 2nd anniversary
  • Sickness & Disability income protection from 3rd anniversary
  • On site gym membership