Security Architect
6 Month contract initially
Based: Remote/Leeds – Max 4 days p/w onsite
Rate: £475 – £500 p/d – via Umbrella company
We have a great opportunity with a world leading organisation where you will be supported and development to succeed. A progressive organisation where you can really make a difference.
Key Responsibilities
- Strategic Security Leadership: Define, evangelise and evolve the overall cloud security architecture strategy and roadmap, aligning with business objectives, relevant European regulatory requirements and industry best practices. Act as a trusted security advisor to senior leadership, engineering teams and business units. Lead the development and implementation of security architectural standards, patterns and guidelines for cloud‑native and hybrid‑cloud deployments.
- Solution Design & Assurance: Provide expert security architecture guidance for critical enterprise applications, infrastructure and data platforms, with a strong focus on secure‑by‑design principles. Conduct comprehensive security architecture reviews, identify risks, propose effective controls, and ensure adherence to security policies. Drive the selection and integration of security technologies and services within cloud ecosystems (AWS, Azure, GCP preferred).
- Risk & Compliance Management: Lead threat modelling, risk assessments, and security posture management across cloud environments. Ensure architectural designs meet stringent regulatory compliance requirements relevant to the financial industry in Europe. Develop and implement security controls that align with frameworks like NIST CSF, ISO 27001, PCI DSS and CSA CCM.
- DevSecOps & Automation: Champion the integration of security into the entire SDLC (DevSecOps), promoting automated security testing, continuous compliance and secure configuration management. Design secure CI/CD pipelines and infrastructure as code (IaC) templates.
Your Profile
Deep progressive experience in Information Security with a significant focus on Security Architecture. Ideally 5+ years of hands‑on experience in Cloud Security Architecture for enterprise‑scale deployments across at least one major public cloud provider. Multi‑cloud experience highly preferred.
Key Skills & Experience
- Financial services domain security expertise and understanding of European regulatory requirements (PSD2, DORA, EBA guidelines, GDPR).
- Identity & Access Management in cloud (AWS IAM, Azure AD, GCP IAM).
- Network Security (VPCs, firewalls, WAFs, micro‑segmentation, private connectivity).
- Data Security (encryption at rest/in transit, KMS, data classification, DLP).
- Application Security (secure coding, API security, SAST/DAST, WAF integration).
- Container Security (Kubernetes, Docker, service mesh).
- SIEM and logging strategies.
- Zero Trust Architecture principles.
- DevSecOps methodologies and securing CI/CD pipelines.
- Security frameworks NIST CSF, ISO 27001, CSA CCM and translating these into practical architectural designs.
- Hands‑on experience with vulnerability management, secrets management, CSPM, CWPP.
- Relevant industry certifications (TOGAF, CISSP, CCSP, cloud security specialty).
If you are looking for your next exciting opportunity, apply now for your CV to reach me directly, we will respond as soon as possible.