Cyber Security Architect & Engineering Lead

Moore Kingston Smith

Greater London

On-site

GBP 70,000 - 90,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Moore Kingston Smith is seeking a senior Cyber Security Architect & Engineering Lead to shape and strengthen security architecture within our IT Infrastructure team in London. You will translate security strategy into secure designs, prototype and guide implementation across identity, cloud, data, endpoints, applications, networks and third-party services.

You will lead threat modelling, security controls design, and automation, with a focus on Zero Trust and secure-by-design principles.

Qualifications

  • Strong experience designing and implementing security controls in a Microsoft-centric environment.
  • Proven ability to translate security strategy into secure designs and measurable outcomes.
  • Experience in security architecture reviews, threat modelling and control design.
  • Practical experience across incident response, detection engineering and vulnerability management.

Responsibilities

  • Define and maintain security architecture across identity, endpoints, networks, cloud, SaaS, data, applications and integration platforms.
  • Design and implement modern security controls, focusing on Zero Trust, secure-by-design principles and automation.
  • Lead security architecture reviews and threat modelling for major projects, new products, high-risk integrations and emerging technologies.
  • Act as the technical lead for AI security, establishing controls for Microsoft 365 Copilot, AI agents, and related technologies.
  • Provide senior technical oversight across security monitoring, detection engineering, incident response and recovery capability.
  • Lead or support the response to complex or high-severity security incidents with internal teams and external partners.
  • Improve vulnerability and exposure management using risk, exploitability, attack-path context and threat intelligence.
  • Support ISO 27001, Cyber Essentials Plus, client assurance and other regulatory obligations with technical evidence.
  • Provide clear risk-based technical advice to senior leaders and project teams.
  • Coach technology teams in secure design and engineering practices.

Skills

Microsoft 365
Entra ID
Defender XDR
Sentinel
Azure
Microsoft Purview
Zero Trust
security architecture
identity security
cloud security
data security
endpoint security
network security
application security
API security
secure software development
AI security

Education

Microsoft Certified: Cybersecurity Architect Expert (SC-100)
CISSP or CCSP
Microsoft AZ-500 or SC-200
GIAC certifications (IR, cloud, detection, forensics)
ISO 27001 Lead Implementer or Lead Auditor
SABSA / TOGAF or equivalent accreditation

Tools

Python
PowerShell
Logic Apps
Azure Functions
APIs

Job description

Cyber Security Architect & Engineering Lead

Department: IT Infrastructure

Employment Type: Permanent - Full Time

Location: City, London

Reporting To: Head of Information Security

Compensation: £75,000 / year


Description
We are looking for a senior, hands-on Cyber Security Architect & Engineering Lead to help shape and strengthen our future security architecture at Moore Kingston Smith.

This is a technical leadership role, sitting within our Information Security team and reporting to the Head of Information Security. You will be responsible for translating security strategy and business requirements into secure designs, practical controls, technical standards and measurable outcomes.

This is not a purely advisory or compliance-focused position. We are looking for someone who can design, prototype, configure, guide implementation and validate the effectiveness of security controls across identity, cloud, data, endpoints, applications, networks and third-party services.

A key part of the role will be helping the firm adopt AI and emerging technologies securely, including Microsoft 365 Copilot, AI agents, custom AI applications and data-driven platforms.

Key Responsibilities
  • Define and maintain security architecture across identity, endpoints, networks, cloud, SaaS, data, applications and integration platforms.
  • Design and implement modern security controls, with a strong focus on Zero Trust, secure-by-design principles and automation.
  • Lead security architecture reviews and threat modelling for major projects, new products, high-risk integrations and emerging technologies.
  • Act as the technical lead for AI security, helping to establish practical controls for Microsoft 365 Copilot, AI agents, custom AI applications and related technologies.
  • Provide senior technical oversight across security monitoring, detection engineering, incident response and recovery capability.
  • Lead or support the response to complex or high-severity security incidents, working with internal teams, external SOC providers and specialist partners.
  • Improve vulnerability and exposure management, using business risk, exploitability, attack-path context and threat intelligence to prioritise remediation.
  • Support the technical implementation and evidence required for ISO 27001, Cyber Essentials Plus, client assurance and other regulatory or contractual obligations.
  • Provide clear, risk-based technical advice to senior leaders, project teams and technology owners.
  • Coach technology teams in secure design and engineering practices, helping to build security capability beyond the core security team.

What we’re looking for
We are looking for someone with demonstrable experience in cyber security architecture, security engineering or a closely related senior technical security role.

You will need:
  • Strong experience designing and implementing security controls in a Microsoft-centric environment, including Microsoft 365, Entra ID, Defender XDR, Sentinel, Azure and Microsoft Purview.
  • Strong knowledge of identity security, Zero Trust, cloud security, data security, endpoint security, network security, application security, API security and secure software development.
  • Experience of security architecture review, threat modelling, technical standards, reference architecture and control design.
  • Practical experience across incident response, detection engineering, threat hunting, vulnerability or exposure management and security automation.
  • Ability to automate security and assurance processes using tools such as Python, PowerShell, Logic Apps, Azure Functions, APIs, infrastructure as code or equivalent platforms.
  • Working knowledge of ISO 27001, Cyber Essentials Plus, NIST CSF and recognised AI security or governance frameworks.
  • The ability to explain complex technical risk clearly to senior stakeholders and influence delivery teams without relying on formal authority.
  • A practical, outcome-focused approach, with a track record of taking ownership, improving controls and validating that they work effectively.
Experience in a regulated, client-confidential or professional services environment would be advantageous.

Desirable certifications
Relevant certifications would be beneficial, such as:
  • Microsoft Certified: Cybersecurity Architect Expert, SC-100
  • CISSP or CCSP
  • Microsoft security certifications such as AZ-500 or SC-200
  • GIAC certifications in incident response, cloud, detection or forensics
  • ISO 27001 Lead Implementer or Lead Auditor
  • Architecture or threat-modelling accreditation such as SABSA, TOGAF or equivalent practical experience
You will be a practical problem-solver who is comfortable moving between architecture, configuration, testing and stakeholder engagement. You’ll be confident challenging outdated controls and practices, while staying pragmatic, commercially aware and focused on business outcomes.

You’ll also be calm under pressure, collaborative in your approach and able to build trust with both technical and non-technical teams.

If interested please download the full job spec.

Job Benefits
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Architect & Engineering Lead
Cyber Security Architect & Engineering Lead

Moore Kingston Smith LLP • Greater London

Hybrid
GBP 70,000 - 85,000
Cyber Security Architect & Engineering Lead
Cyber Security Architect & Engineering Lead

Moore Kingston Smith • City Of London

On-site
GBP 75,000 - 80,000
Cyber Security Consultant
Cyber Security Consultant

Moore Kingston Smith LLP • Greater London

On-site
GBP 42,000 - 50,000
Senior Cyber Security Architect & AI Engineering Lead
Senior Cyber Security Architect & AI Engineering Lead

Moore Kingston Smith • Greater London

On-site
GBP 70,000 - 90,000
Cyber Security Consultant
Cyber Security Consultant

Moore Kingston Smith • City Of London

On-site
GBP 42,000 - 50,000
Senior Cyber Security Architect & Engineering Lead
Senior Cyber Security Architect & Engineering Lead

Moore Kingston Smith • City Of London

On-site
GBP 75,000 - 80,000
Security Solution Architect
Security Solution Architect

Morson Human Resources Limited • Greater London

On-site
GBP 138,000 - 148,000
Security Architect - DV Cleared - Perm
Security Architect - DV Cleared - Perm

Sanderson Government & Defence • Farnborough

On-site
GBP 70,000 - 85,000
Highly competitive salary and benefits
Enhanced pension and private medical
Flexible working and professional dev
+1
Cyber Security Consultant
Cyber Security Consultant

Moore Kingston Smith • Greater London

On-site
GBP 42,000 - 50,000
AI-Savvy Cyber Security Architect & Engineering Lead
AI-Savvy Cyber Security Architect & Engineering Lead

Moore Kingston Smith LLP • Greater London

Hybrid
GBP 70,000 - 85,000