We’re looking for an experienced Security Architect to lead the design and delivery of secure, resilient technology across platforms, applications and cloud services.
This is a hands‑on leadership role where you’ll work closely with Agile engineering and delivery teams to embed security throughout the software development lifecycle — from initial architecture and design through to implementation and ongoing operation.
You’ll bring a pragmatic approach to security, balancing risk, cost, usability and business requirements, while helping teams adopt modern security practices and technologies.
What you’ll be doing
- Lead the security architecture and secure design of cloud services, platforms and applications.
- Identify vulnerabilities and security risks within system designs and recommend pragmatic, proportionate mitigations.
- Embed DevSecOps, Continuous Security, CI/CD and secure software development practices across delivery teams.
- Work across areas including Cloud Security, AI/ML, Data, M365 and Security Architecture.
- Apply recognised security frameworks, standards and regulations including NCSC, NIST, ISO 27001, PCI DSS and GDPR.
- Assess application, infrastructure and platform architectures to identify security weaknesses and opportunities for improvement.
- Perform and support security testing across software, infrastructure and cloud environments.
- Apply strong knowledge of network security, TCP/IP, OSI, OWASP, PKI, TLS and cryptographic controls.
- Work closely with engineers, architects, product teams and senior stakeholders to build security into delivery from the outset.
- Lead, coach and mentor security engineers and junior team members, supporting their technical and professional development.
- Share security knowledge and best practice with both technical teams and clients.
- Help drive innovation by evaluating and applying new security technologies, methodologies and approaches.
What we’re looking for
You’ll have a strong background in Security Architecture, Cloud Security or secure technology delivery, with experience designing and implementing security across modern technology environments.
You’ll ideally bring:
- Proven experience delivering secure cloud services and solutions.
- Strong understanding of security architecture, threat identification and risk mitigation.
- Experience across at least one of AI/ML, Cloud, Security Architecture, M365 or Data.
- Strong knowledge of NCSC, NIST, ISO, PCI DSS and GDPR.
- Background in application architecture, software development and/or infrastructure architecture.
- Hands-on experience with security testing and vulnerability assessment.
- Practical understanding of DevSecOps, CI/CD and Continuous Security.
- Strong knowledge of network security, OWASP, PKI, TLS and cryptographic controls.
- Experience managing, coaching or mentoring technical professionals.
- Excellent communication skills, with the ability to translate complex security concepts for both technical and non-technical audiences.
- A pragmatic mindset and the ability to balance security, usability, cost and business risk.
- Identity and Access Management (IAM), authentication and authorisation.
- Governance, Risk and Compliance (GRC).
- Operational security and security operations.
- Supply chain security and third-party risk.
- Penetration testing qualifications such as OSCP, CREST, TIGER or equivalent.
- Experience leading Security Engineers, Architects or junior security professionals.