CISO Solution Architect (9936)

Xpand Group

Greater London

Hybrid

GBP 80,000 - 110,000

Full time

9 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Hybrid work

Job summary

Xpand Group is seeking a Senior Security Architect (contractor) to lead the design and governance of security architecture with a focus on Data Protection and Azure Cloud Security. The role involves enterprise data protection controls, DLP, labelling, lifecycle management and encryption across cloud and on‑prem environments.

The candidate will collaborate with risk, compliance, engineering and CISO teams to ensure secure design and governance throughout the delivery lifecycle.

Qualifications

  • Extensive experience as a Security Architect or similar senior role.
  • Proven delivery of end-to-end security architecture in large complex environments.
  • Knowledge of governance, patterns, design reviews and architecture assurance.

Responsibilities

  • Lead end-to-end security architecture across apps, platforms and clouds.
  • Translate requirements into practical security architecture and designs.
  • Define security principles, standards, patterns and reusable guidance.

Skills

Security Architecture
Data Protection
Cloud Security
Azure Security
Governance & Standards
Threat Modelling
Risk Assessments
Data Classification
DLP & Encryption
Zero Trust

Tools

Azure
AWS
SaaS

Job description

Senior Security Architect (contractor)- Data Protection & Azure Cloud Security

Rate: Flexible

Duration: 1 year

Hybrid working - 8 days onsite per month (Inside of IR35)

We are looking for an experienced Senior Security Architect to join a major enterprise cybersecurity function, taking a leading role in the design and governance of security architecture across Data Protection and Cloud Security.

This is a senior architecture position within a large, complex and highly regulated environment. You will work across business, technology, engineering, risk and security teams to ensure new applications, platforms and cloud solutions are designed securely from the outset.

A major focus of the role will be enterprise data protection and Azure cloud security, including the architecture and governance of controls covering data classification, discovery, labelling, lifecycle management and protection of sensitive information.

Key Responsibilities
  • Lead the design and delivery of end-to-end security architecture across enterprise applications, platforms and cloud environments.
  • Develop high-level security designs and translate business, technology and risk requirements into practical security architecture.
  • Define and maintain security architecture principles, standards, patterns and reusable design guidance.
  • Provide architecture governance and design assurance, challenging proposed solutions and ensuring security requirements are addressed throughout the delivery lifecycle.
  • Act as a Subject Matter Expert for Data Protection and Cloud Security, providing technical guidance to architecture, engineering and business teams.
  • Design and govern enterprise data protection and data security controls, including:
    • Data discovery and inventory
    • Data classification and sensitivity labelling
    • Data Loss Prevention (DLP)
    • Data governance
    • Data retention and disposal
    • Data lifecycle controls
    • Protection of structured and unstructured information
    • Encryption and access controls
  • Support the secure design and adoption of Microsoft Azure, alongside AWS, SaaS and hybrid-cloud environments.
  • Ensure appropriate security controls across applications, infrastructure, identities, networks and data.
  • Translate cyber risks and regulatory requirements into appropriate security controls and non-functional requirements (NFRs).
  • Conduct and support security architecture reviews, threat/risk assessments and design validation.
  • Work closely with Enterprise Architecture, Engineering, Cloud, DevSecOps, Risk, Compliance and CISO teams.
  • Identify gaps within the existing security landscape and recommend improvements.
  • Support secure technology adoption and major transformation initiatives.
Essential Experience

We are looking for candidates with strong experience across both Security Architecture and Data/Cloud Security.

You should have:

  • Significant experience as a Security Architect, Cyber Security Architect, Security Solution Architect or Enterprise Security Architect.
  • Proven experience delivering end-to-end security architecture within large and complex organisations.
  • Strong knowledge of security architecture governance, including standards, patterns, design reviews and architecture assurance.
  • Strong Data Protection / Data Security Architecture experience.
  • Experience with data classification, discovery, inventory, labelling, governance, retention/disposal and lifecycle controls.
  • Understanding of security controls for both structured and unstructured data.
  • Strong Microsoft Azure Security architecture experience.
  • Good knowledge of AWS, SaaS and hybrid/multi-cloud security.
  • Experience securing enterprise applications, infrastructure and cloud platforms.
  • Understanding of IAM, Zero Trust, encryption, key management and access-control principles.
  • Ability to translate risk assessments and regulatory requirements into technical security architecture.
  • Experience working within regulatory frameworks such as GDPR, DORA, PCI-DSS, SOX and/or SWIFT CSP.
  • Excellent communication skills with the ability to engage with senior stakeholders, architects, engineers, risk and compliance teams.
Highly Desirable
  • Experience with Microsoft Purview, particularly Information Protection, data classification, sensitivity labelling, DLP and information governance.
  • Experience defining data‑protection architecture across Azure and Microsoft 365 environments.
  • Financial Services, Banking, Payments, Market Infrastructure or other highly regulated/critical infrastructure experience.
  • Experience with security architecture frameworks such as SABSA, TOGAF or similar.
  • Knowledge of DevSecOps and secure SDLC practices.
  • Experience working within Agile delivery environments and across multiple release trains.
  • Relevant certifications such as CISSP, CCSP, SABSA, TOGAF, Azure Security/Architecture, CISM or equivalent.

*Rates depend on experience and client requirements

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

CISO Solution Architect (9936)
CISO Solution Architect (9936)

Salt • City Of London

Hybrid
GBP 166,000 - 240,000
Security Solution Architect
Security Solution Architect

Morson Human Resources Limited • Greater London

On-site
GBP 138,000 - 148,000
Security Architect - SC Cleared
Security Architect - SC Cleared

Sanderson Government & Defence • Greater London

Hybrid
GBP 101,000 - 109,000
Information Security Cloud Architect
Information Security Cloud Architect

Solutions Through Knowledge • Liverpool City Region

Hybrid
GBP 96,000 - 126,000
Security Architect - Consultancy
Security Architect - Consultancy

Hamilton Barnes Associates Limited • United Kingdom

On-site
GBP 92,250
Security Architect
Security Architect

Brio Digital • Leeds

On-site
GBP 129,150
Security Architect
Security Architect

ComputAppoint • City Of London

Hybrid
GBP 90,000 - 105,000
Security Architect
Security Architect

Technopride Ltd • Greater London

On-site
GBP 70,000 - 100,000
Cyber Security Architect
Cyber Security Architect

Allscreens Nationwide Ltd • Newport

On-site
GBP 90,000 - 120,000
Security Architect
Security Architect

DATA CAREERS LIMITED • Andover

Hybrid
GBP 100,000 - 110,000