Security Architect

Security Architect

Location: London (Hybrid)
Employment Type: Full Time, Permanent

The Opportunity

We are seeking an experienced Security Architect to provide authoritative leadership on information and cyber security architecture across a complex technology estate. Working closely with Enterprise Architecture, Cloud Operations, Engineering and Cyber Security teams, you will ensure that cloud platforms, services and workloads are designed, delivered and operated securely, efficiently and in line with regulatory expectations.

You will play a critical role in defining and maintaining security architecture, establishing standards, controls and guardrails that enable innovation while protecting critical systems and data. As a key member of the Technology Design Authority (TDA), you will provide architectural assurance, influence strategic technology decisions and support cloud security and optimisation initiatives.

This is an excellent opportunity for a security architecture professional who enjoys working across strategy, governance and delivery, and can combine technical excellence with pragmatic decision-making.

Key ResponsibilitiesSecurity Architecture & Design

  • Define and evolve cloud security architecture, including reference architectures, reusable patterns and security controls across IaaS, PaaS and SaaS environments.
  • Provide architectural assurance for cloud-based solutions, ensuring security, resilience and compliance are incorporated from the outset.
  • Lead and contribute to security design reviews and governance activities through the Technology Design Authority.
  • Promote secure-by-design principles across all technology initiatives.

Governance, Risk & Compliance

  • Ensure technology solutions align with security policies, enterprise architecture principles and organisational risk appetite.
  • Assess security risks within proposed designs and identify pragmatic, cost-effective mitigations.
  • Support audits, regulatory reviews and security assurance activities.
  • Contribute to the development of security standards, policies and architectural principles.

Collaboration & Delivery Enablement

  • Partner with enterprise, solution, data and AI architects to create cohesive and secure end-to-end designs.
  • Work closely with engineering, platform and DevSecOps teams to embed security controls within delivery pipelines and operating models.
  • Provide expert security guidance throughout project and programme life cycles, from concept through to live operation.
  • Support cloud optimisation initiatives by identifying opportunities to enhance security, resilience and efficiency.

Identity, Data & Platform Security

  • Define architectural approaches for identity and access management, privileged access and federated identity.
  • Shape security strategies for data protection, encryption, key management and secure data sharing.
  • Provide assurance over monitoring, logging, threat detection and incident response capabilities within cloud environments.

Continuous Improvement

  • Stay ahead of emerging threats, industry developments and cloud security best practices.
  • Drive improvements to security architecture, governance and control frameworks.
  • Act as a trusted subject matter expert for cloud and cyber security.

Stakeholder Engagement

  • Communicate complex security risks, trade-offs and recommendations in a clear and business-focused manner.
  • Support executive-level decision making with evidence-based advice and insight.
  • Collaborate effectively with third-party suppliers, delivery partners and technology vendors to ensure security expectations are met.

About You

You are an experienced Security Architect with a strong track record of designing and assuring secure cloud environments within complex, enterprise-scale organisations. You can confidently influence stakeholders at all levels and balance security, delivery and business outcomes.

Essential Skills & Experience

  • Significant experience designing and assuring cloud security architectures in enterprise environments.
  • Deep knowledge of identity, access, network, platform and data security across cloud and hybrid architectures.
  • Strong understanding of Azure architecture and security best practices.
  • Experience applying security principles pragmatically across programmes, projects and operational environments.
  • Proven ability to operate effectively within architecture governance forums and design authorities.
  • Experience working within regulated or large-scale environments.
  • Knowledge of modern DevSecOps practices and secure-by-design delivery approaches.
  • Experience with cloud security tooling, security posture management and threat detection capabilities.
  • Strong stakeholder engagement, leadership and influencing skills.
  • Excellent verbal and written communication skills, with the ability to translate technical concepts into business impact.
  • Experience working collaboratively across multidisciplinary teams, suppliers and partners.
  • Familiarity with enterprise architecture frameworks, principles and governance practices.

Desirable Qualifications

  • CISSP, CCSP or equivalent security certifications.
  • Azure security certifications or other recognised cloud security credentials.
  • Additional architecture or risk-related certifications.

What You'll Bring

You will bring a combination of strategic thinking, architectural expertise and practical delivery experience. You will be comfortable challenging designs where necessary, influencing senior stakeholders and helping teams deliver secure, resilient and cost-effective technology solutions.

If you are passionate about cloud security, architecture and enabling organisations to innovate securely, we'd love to hear from you.

Job Details

Company
Spencer Rose Ltd
Location
London, United Kingdom
Hybrid / Remote Options
Employment Type
Permanent
Salary
GBP 100,000 Annual
Posted