Enterprise Security Architect/DevSecOps

SoCode

Town Of Cambridge

On-site

AUD 67,000 - 76,000

Full time

9 days ago
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Remote
UK Travel

Job summary

SoCode in Cambridge is hiring an Enterprise Security Architect to sit between architecture and engineering on a major on-prem Private Cloud build. This isn’t a public-cloud security role — you’ll shaping the security foundations of a private cloud infrastructure built with open-source stacks and modern platform‑engineering practices.

Embedded full-time within an engineering-led programme, you’ll be the dedicated security partner — threat-modelling the platform, defining secure designs,

Qualifications

  • Proven experience building private cloud infrastructure.
  • Strong background with open-source infrastructure stacks and platform technologies.
  • Deep hands-on security architecture across large-scale data-centre or hybrid environments.
  • Strong threat-modelling and attack-path analysis skills.

Responsibilities

  • Own and evolve threat modelling across the platform, infra, workloads and onboarding pathways.
  • Translate threat stories into engineering requirements and delivery priorities.
  • Drive secure-by-design through IaC, CI/CD, policy-as-code and hardened image pipelines.
  • Define reusable standards for identity, privileged access, secrets, PKI, segmentation, logging and recovery.
  • Translate NIST/STIG frameworks into pragmatic, testable controls.
  • Automate posture, evidence and continuous validation across the platform.
  • Act as the security conduit across engineering, programme leadership and enterprise security.

Job description

Posted 02 October 2026 Salary £850 per day, Benefits: Inside IR35 Location Cambridge Job type Contract Discipline Cybersecurity, Risk and Compliance , IT Infrastructure and Support Reference AH-103

We’re hiring an Enterprise Security Architect to sit right between architecture and engineering on a majoron‑prem Private Cloud build. This isn’t a public‑cloud security role — you’ll be shaping the security foundations of a brand‑new private cloud infrastructure, built using open‑source software stacks and modern platform‑engineering practices.

The Role

Embedded full‑time within an engineering‑led programme, you’ll be the dedicated security partner — threat‑modelling the platform, defining secure designs, validating controls, and embedding DevSecOps across the stack. You’ll work directly with architects and engineers to turn threats into real mitigations, automated tests, hardened configurations and auditable evidence.

Key Responsibilities
  • Own and evolve threat modelling across the platform, infra, workloads and onboarding pathways.
  • Translate threat stories into engineering requirements, acceptance criteria and delivery priorities.
  • Drive secure‑by‑design through IaC, CI/CD, policy‑as‑code and hardened image pipelines.
  • Define reusable standards for identity, privileged access, secrets, PKI, segmentation, logging and recovery.
  • Translate NIST/STIG frameworks into pragmatic, testable controls.
  • Automate posture, evidence and continuous validation across the platform.
  • Act as the security conduit across engineering, programme leadership and enterprise security.
What You’ll Bring
  • Proven experience building private cloud infrastructure — not just consuming public cloud.
  • Strong background with open‑source infrastructure stacks, containerisation and platform technologies.
  • Deep hands‑on security architecture + engineering experience across large-scale datacentre or hybrid environments.
  • Strong threat‑modelling and attack‑path analysis skills.
  • Practical knowledge of compute, virtualisation, containers, orchestration, storage, networking and platform management.
  • Experience with IaC, CI/CD, policy‑as‑code and hardened image pipelines.
  • Expertise in PKI, secrets, privileged access, segmentation, workload isolation and infra hardening.
  • Ability to define reusable patterns, measurable criteria and security standards.
  • Experience with automated testing, attack simulation and vulnerability management.
  • Credibility to influence multidisciplinary engineering teams and balance risk vs delivery.

£35000 - £40000 per annum, Benefits: Remote, SW UK Travel

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Architect
Security Architect

SoCode • Town Of Cambridge

On-site
AUD 228,000 - 342,000
Cloud Security Architect
Cloud Security Architect

Talent International • City of Melbourne

On-site
AUD 165,000 - 317,000
Hybrid work
Melbourne CBD location
Cloud Security Architect
Cloud Security Architect

Talent Corp • City of Melbourne

Hybrid
AUD 166,000 - 240,000
Hybrid work arrangements
Cloud Security Architect
Cloud Security Architect

Talent • City of Melbourne

On-site
AUD 150,000 - 190,000
Hybrid work model
Melbourne CBD location
Hands-on architecture role
+1
Cloud Security Architect - Financial Services
Cloud Security Architect - Financial Services

Talent Corp • Sydney

On-site
AUD 180,000 - 260,000
Lead Security Engineer
Lead Security Engineer

Morgan McKinley • Sydney

On-site
AUD 140,000 - 170,000
Cloud Security Architect - Financial Services
Cloud Security Architect - Financial Services

Talent International • Sydney

On-site
AUD 150,000 - 190,000
Security Architect
Security Architect

Charterhouse • Sydney

On-site
AUD 120,000 - 170,000
Enterprise Security Architect
Enterprise Security Architect

Charterhouse • Sydney

On-site
AUD 150,000 - 250,000
Enterprise Security Architect
Enterprise Security Architect

Decipher Bureau • Sydney

On-site
AUD 180,000 - 240,000