Information Security Architect
Summary
12-month contract (from mid-Oct 2026) for an Information Security Architect with Test Triangle's government client (Irish CSO) in Dublin or Cork, hybrid with 2 days/week onsite. The architect leads security architecture, NIS2 readiness, cloud security governance on Azure/AWS, and Census 2027/2031 cyber incident response and crisis management planning.
Job Title: Information
Security Architect (Intermediate)
Location: Dublin or Cork, Ireland (Hybrid working
Model – 2 days per week onsite)
Working Arrangement
Services will be provided from Dublin or Cork under a blended
working arrangement. A minimum of 2 days per week onsite is generally
expected, with additional onsite attendance where required by the reporting
manager.
Start Date: Mid-October 2026
Contract Duration: 12 Months, with further Extension
Role Purpose
The Client is seeking an experienced Information Security Architect to strengthen cybersecurity, resilience, governance and compliance
capabilities. The role will provide security architecture leadership, strategic
advice and subject matter expertise across technology and business initiatives.
A key focus will be supporting NIS2 Directive readiness and
compliance, improving cybersecurity maturity, and strengthening cyber
resilience and incident response capabilities.
The role will also support the planning, development and testing of
Census 2027 cybersecurity incident response and crisis management capabilities,
as well as security architecture and strategy development for Census 2031.
Key Responsibilities
- Develop and
maintain enterprise security architecture processes, principles, standards
and reference architectures.
- Develop
security strategies, roadmaps and improvement plans aligned to business,
technology and threat drivers.
- Provide
security architecture and risk advice across applications,
infrastructure, cloud and business projects.
- Develop and
review cybersecurity policies, standards, procedures and controls.
- Conduct
security assessments and recommend risk-reduction measures.
- Promote secure-by-design
and secure coding practices with development teams.
- Work with
Data Protection teams to assess sensitive data flows and recommend
appropriate security controls.
- Validate
technology and infrastructure architectures against recognised security
best practices.
- Lead/support NIS2
readiness assessments, gap analysis and remediation planning.
- Provide
security governance and architecture guidance across Microsoft Azure
and AWS.
- Lead/support
cybersecurity incident response exercises and tabletop simulations.
- Support
Business Continuity and Disaster Recovery activities to strengthen cyber
resilience.
- Support
development, review and testing of Census 2027 Cyber Incident Response
Plans, Cyber Crisis Management Procedures and operational playbooks.
- Provide
security expertise during incidents and contribute to post-incident
reviews and corrective actions.
- Provide
security architecture leadership for strategic initiatives, investments
and business cases.
- Act as a
trusted cybersecurity advisor to technical and business stakeholders.
- Proactively
identify security risks, opportunities for improvement and emerging
threats.
Key Stakeholders
The role will work closely with senior management and
technology/security stakeholders, including the CIO, Head of Digital
Architecture and Cyber Security, Information Security Manager, Security
Analysts, application/information owners, wider technology teams, managed
security partners, and relevant national cybersecurity bodies.
Mandatory Requirements
- Minimum 6
years' substantial professional experience in cybersecurity, information security architecture or a related
security discipline.
- Bachelor's or
Master's Degree in Computer Science, Information Systems, Cybersecurity
or related discipline.
- NIST-related
training.
- NIS2-related
training OR demonstrable practical NIS2 implementation experience.
- At least one of the following certifications:
- CISSP
- CISM
- CISA
- ISO
27001 Lead Auditor
- ISO
27001 Lead Implementer
- Strong
practical experience in security architecture, governance, risk and
compliance.
- Experience
across cloud security, preferably Azure and/or AWS.
- Experience in
cyber incident response, resilience and/or tabletop exercises.
- Ability to
operate independently and provide expert recommendations with minimal
supervision.
- Fluent
English; CV must confirm English language proficiency.
Key Outcomes
The successful candidate will deliver improved security architecture and
governance, NIS2 readiness, strengthened cyber resilience and incident response
capabilities, secure cloud adoption, and enhanced cybersecurity preparedness
for Census 2027 and Census 2031.
Requirements
Mandatory Requirements (Pass / Fail): Candidates MUST meet ALL of the
following:
Experience: It is a mandatory
requirement that the Resource proposed has the minimum of 6 years substantial
professional experience in cybersecurity, information security architecture or
related security discipline
Availability: Must be
available to start from Mid-October 2026.
Qualifications:
It
is a mandatory requirement that the Resource proposed holds:
Bachelor's
or Master's Degree in Computer Science, Information Systems, Cybersecurity or a
related discipline.
It
is a mandatory requirement that the Resource proposed has:
- NIST-related training.
- NIS2-related training or
demonstrable practical implementation experience.
Plus
one or more of the following certifications:
· ISC2 CISSP
· ISACA CISM
· ISACA CISA
· ISO 27001 Lead Auditor
· ISO 27001 Lead Implementer
English Language
Proficiency (fluent): Fluency in English is mandatory.
Where English is
not the candidate's native language, CEFR Level C2 (Mastery/Proficiency) or
equivalent is required.Where the candidate is demonstrably fluent but does not
hold the certificate, they may still be considered; English proficiency may be
assessed at interview/presentation stage.
Key
Deliverables:
The
following non-exhaustive list of Key Deliverables are applicable to this role:
- Support CSO's NIS2 compliance,
readiness and maturity programme.
- Develop and maintain security
architecture standards, principles and patterns.
- Provide input into future CSO
Cyber Security Strategy and Census 2027 Cyber Security Strategy.
- Be recognised as a trusted and
authoritative voice relating to cybersecurity matters across the CSO.
- Assist in ensuring
cybersecurity frameworks, standards and controls become embedded and
operationalised across the organisation.
- Contribute to security-related
decision making when requested and develop supporting business case and
justification documentation.
- Assist in preparing the CSO for
European Statistical System (ESS) IT Security Framework audits and other
security assessments.
- Lead or support development of
Census 2027 Cyber Incident Response Plans and Cyber Crisis Management
Procedures.
- Design and facilitate cyber
incident response exercises and tabletop exercises for Census and
enterprise services.
- Identify security improvement
opportunities and proactively recommend practical and achievable
solutions.
- Produce high-quality security
architecture documentation, risk assessments, standards and implementation
roadmaps
Key
Experience/Competencies/Skillsets: The following
Experience/Competencies/Skillsets are applicable to this Role
Implementing
Security Frameworks Across an Organisation Demonstrated experience implementing cybersecurity frameworks and controls
across enterprise environments including:
· NIST
Cybersecurity Framework.
· NIS2
Directive.
· ISO
27001/27002.
· Cyber
resilience and incident response frameworks.
Full Stack Knowledge of IT Infrastructure
· Applications.
Databases.
· Operating
Systems (Windows and Linux).
· Hypervisors.
· Cloud
Services (Azure desirable).
· Identity
and Access Management.
· IP
Networks (WAN, LAN).
· Security
Technologies.
· Storage
Networks.
· Backup
Networks and Media.
· Cloud
Platforms (Microsoft Azure, AWS)
· Cloud
Governance and Security Architecture
· Identity
and Access Management (Entra ID / Azure AD, federated identity)
· Cloud
Networking
· Cloud
Security Monitoring and Logging
· SaaS,
PaaS and IaaS Security Controls
Industry and Regulatory Experience
The Security Architect is expected to have documented
experience with:
· NIS2
Directive.
· NIST
Cybersecurity Framework (CSF).
· ISO
27001/27002.
· GDPR.
· National
Cyber Security Centre guidance and requirements.
· Risk
Management Frameworks.
· Designing
and implementing secure cloud architectures in Azure and/or AWS environments.
· Applying
security best practices and controls across public cloud platforms.
· Cloud
governance, security baselines and landing zone architectures.
· Assessing
cloud solutions against regulatory, security and compliance requirements.
· Significant
experience in cybersecurity policy development and governance, including the
creation, review, and maintenance of security policies, standards, procedures,
and related documentation.
· Cybersecurity
governance and compliance
Census and Incident Response Experience
The
Security Architect is expected to have documented experience with:
· Cyber
Incident Response Planning.
· Security
Tabletop Exercises.
· Crisis
Management Planning.
· Security
Playbook Development.
· Cyber
Resilience Planning.
· Disaster
Recovery and Business Continuity integration.
· Supporting
critical or high-profile digital services.
Business Related Skills
The
Security Architect is expected to contribute insights not only to colleagues
within the security team and the CISO, but also to colleagues across business,
risk, governance and technology functions
The
following skills are required:
Strategic
Planning Skills - Ability to understand, interpret and align business,
technology, regulatory and threat drivers.
· Independent
Delivery - Ability to work with minimal supervision, manage priorities and
deliver outcomes autonomously.
· Leadership
and Influence - Ability to challenge constructively, influence decision making
and drive security improvements.
· Problem
Solving Skills Ability to identify risks, assess options and recommend
pragmatic solutions.
· Communication
Skills - Ability to translate complex security matters into business terms
suitable for both technical and non-technical audiences.
· Stakeholder
Management Skills - Ability to engage effectively with senior management,
project teams and external stakeholders.
· Excellent
Documentation Skills - Ability to produce clear, concise and actionable
standards, policies, business cases, architecture artefacts and executive
reports.