Security Architect & GRC Lead

LHH

Scotland

On-site

GBP 90,000 - 130,000

Full time

4 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

LHH is seeking a Security TDA Lead to drive governance, risk, compliance and vulnerability assessment across a complex, multi-technology environment. You will lead security-by-design aligned to ISO 27001, Cyber Essentials Plus and architectural standards.

The role combines GRC operational leadership with cyber technical design to ensure secure architectures and effective risk management across the account. Strong experience in GRC, risk, and security architecture is required.

Qualifications

  • Strong GRC and risk management experience.
  • Familiarity with ISO27001, GDPR, NIST, and ITIL.
  • Experience as Security Architect or TDA.
  • Knowledge of Zero Trust and cloud security.
  • Ability to work in a secure, restricted-access environment.

Responsibilities

  • Security Architecture & Cyber TDA Leadership
  • Act as Cyber Technical Design Authority (TDA) for the account
  • Review and approve solution architectures
  • Define security reference architectures and patterns
  • Provide security design sign-off and manage exceptions
  • Embed security-by-design in all solutions
  • Advise on IDAM, network, cloud and infrastructure security
  • Develop and maintain security policies aligned to ISO 27001 and Cyber Essentials Plus
  • Manage Security Risk Register, controls, RACI and RBAC model
  • Lead risk identification, assessment, treatment and reporting
  • Support audits and assurance activities
  • Contribute to Disaster Recovery, Business Continuity and security incident management, covering tracking, remediation, RCA, and reporting
  • Conduct assurance activities to validate control effectiveness
  • Produce regular reporting packs covering risk, compliance, audits, and incidents
  • Provide and update relevant Security Training material for account personnel.
  • Review and triage vulnerability scans and penetration test reports
  • Prioritise vulnerabilities based on risk, impact, and contractual obligations
  • Coordinate remediation across technical teams, ensuring clear ownership and timely closure
  • Track vulnerabilities to distinguish new vs. existing issues
  • Provide remediation guidance and consultancy to stakeholders
  • Deliver reporting on remediation progress for internal and client consumption

Skills

GRC
Risk management
ISO27001
GDPR
NIST
ITIL
Security Architecture
TDA
Zero Trust
Cloud security

Job description

LHH is seeking a Security TDA Lead to drive governance, risk, compliance and vulnerability assessment across a complex, multi-technology environment. You will lead security-by-design aligned to ISO 27001, Cyber Essentials Plus and architectural standards.

The role combines GRC operational leadership with cyber technical design to ensure secure architectures and effective risk management across the account. Strong experience in GRC, risk, and security architecture is required.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Architect - Secure Design & Risk Leadership
Senior Security Architect - Secure Design & Risk Leadership

NTT Limited • Greater London

On-site
GBP 90,000 - 130,000
Cyber GRC & Security Assurance Consultant
Cyber GRC & Security Assurance Consultant

NTT DATA, Inc. • Greater London

On-site
GBP 65,000 - 100,000
GRC & Security Assurance Consultant
GRC & Security Assurance Consultant

NTT Limited • Greater London

On-site
GBP 70,000 - 110,000
Senior Cyber GRC & Technical Controls Lead
Senior Cyber GRC & Technical Controls Lead

air-recruitment • Greater London

Hybrid
GBP 108,000 - 132,000
Security & GRC Lead: Cyber Risk, Audit & Compliance
Security & GRC Lead: Cyber Risk, Audit & Compliance

Amiqus • United Kingdom

On-site
GBP 60,000 - 85,000
Lead Cyber GRC Consultant for Critical Infrastructure
Lead Cyber GRC Consultant for Critical Infrastructure

Jacobs Engineering Group Inc. • Greater London

Hybrid
GBP 90,000 - 120,000
Health Cover
Life Assurance
Income Protection
+4
Senior Cyber GRC Specialist – Technical Controls
Senior Cyber GRC Specialist – Technical Controls

air-recruitment • Greater London

Hybrid
GBP 108,000 - 132,000
Director Security Architecture
Director Security Architecture

Barclay Simpson • Greater London, Reading

On-site
GBP 100,000 - 150,000
Cyber Governance & Risk Advisor (GRC Specialist)
Cyber Governance & Risk Advisor (GRC Specialist)

Cyber UK • Greater London, Woking, Manchester

Hybrid
GBP 50,000 - 70,000
Well-being initiatives including Mental Health Champions
Professional community support
Inclusive and diverse workplace
Security Architect - DV cleared
Security Architect - DV cleared

CBSbutler Holdings Limited trading as CBSbutler • City Of London

Hybrid
GBP 120,000 - 138,000