Overview
As a Security Consultant (Architect), you will translate business and security requirements into practical cloud-focused architectures, aligning with frameworks like NIST, ISO 27001, and CIS. You’ll design secure patterns, assess risks, and guide clients through risk-based security choices across AWS, Azure, and GCP. You’ll lead stakeholder discussions, produce architecture diagrams, and drive secure SDLC integration. This role offers impact through security governance, threat modelling, and security program maturation in a global consulting environment.
Pay / Benefits
- flexible work options
- learning and development opportunities
- tailored benefits
- wellbeing support
- career growth
- diverse and inclusive culture
Responsibilities
- Translate requirements into structured security architectures and patterns
- Develop cloud-focused security designs aligned with frameworks and policies
- Perform risk and threat assessments, offering actionable mitigations
- Produce architecture diagrams and security design rationales
- Engage with stakeholders, present to technical and non-technical audiences
- Support security policy implementation, audits, and remediation
- Lead security architecture reviews, vulnerability assessments, and cloud posture checks
- Contribute to security roadmaps and strategic plans for customers
Key requirements
- 5+ years in information security, data protection, and security architecture with cloud security focus
- Strong knowledge of ISO 27001, NIST 800-53/CSF, NIS/NIS2, DORA, UK CNI/OT/IIoT compliance
- Hands-on credibility with external stakeholders (audits, regulatory bodies)
- Ability to mentor teams and influence senior stakeholders
- Excellent communication and ability to explain complex topics to diverse audiences
- Ability to balance strategic oversight with hands-on security work
- Pre-sales participation and delivery collateral support
- Right to work in the UK and eligibility for UK SC clearance
- CISA, CRISC, CISM or CISSP certification
- Excellent communication and presentation to diverse audiences
- Stakeholder engagement and technical leadership
- Mentorship and collaboration with cross-functional teams
- Cloud security (AWS, Azure, GCP)
- Security architectures, patterns, and documentation
- Risk-based and threat-based assessment methods
…
