IT Cyber Security Architect

Company: Littlefish
Apply for the IT Cyber Security Architect
Location:
Job Description:

Come and join the Littlefish team!

Work location: Remote
Salary: Up to: £50,000
Must be eligible for SC Clearance (UK resident for the last 5 years)

Here at Littlefish, we look for people who can make a real difference and become a giant slayer. As the world around us continues to change, we look for people who grab that change with optimism and excitement. These are the passionate and high performing people who enjoy and thrive on thinking outside the box.

Our current employees are the giant slayers who have made Littlefish who we are today, and you will be the future employees who continue to add the drive, passion, and add to our skills and experience as we see Littlefish grow.

So, if this is ticking your boxes and you are excited at the thought of working with creative, passionate, energetic, friendly people- we would love to hear from you.

The role and what you’ll be getting up to on a day to day basis:

We’re looking for an experienced Cyber Security Architect to join Littlefish Group and take a leading role in shaping, assuring and defending security architecture across complex, high-profile customer environments.

This is a hands-on architecture role with genuine technical authority. You’ll own security design decisions within your assigned areas, influence programme direction and represent Littlefish Group at Change Advisory Boards and design authority forums.

A key part of your work will support Project North Star, where Littlefish Group holds technical security and design authority responsibilities for the NHS Electronic Staff Record platform and the NHS Business Services Authority’s Future Workforce Solution. You’ll also work across our wider managed security and consultancy services, helping customers assess risk, strengthen their security posture and implement effective controls.

What you’ll be doing:

You’ll work alongside fellow security architects and consultants to:

Own security architecture, design assurance and technical risk positions across your assigned areas.
Shape and maintain security architecture principles, patterns, standards and roadmaps.
Assess design options, manage risk-based trade-offs and produce clear architecture decision records.
Review and assure solution designs, integrations and third-party components.
Conduct threat modelling and identify proportionate remediation where designs do not meet required standards.
Represent Littlefish Group at CAB and design authority forums, assessing changes for security impact.
Shape Microsoft Sentinel architecture across complex customer environments.
Produce high and low-level security designs, control mappings and technical decision records.
Deliver security assessments, architecture reviews, and Microsoft 365 and Azure posture reviews.
Design and implement layered security controls from initial requirements through to testing and handover.
Provide technical escalation, mentoring and guidance to CSOC and project engineering teams.
Support pre-sales activity and contribute reusable security designs, standards and playbooks to the Littlefish Group service catalogue.

We need a candidate with:

You’ll be an experienced security professional who is comfortable making informed technical decisions and explaining and defending those decisions under scrutiny.

You’ll need:

Proven experience in security architecture, security consultancy or senior security engineering.
Experience acting as a Security Architect, technical security authority or design lead within a large, complex programme.
Strong hands-on experience with Microsoft Sentinel and the Microsoft Defender suite.
Experience of security and change governance, including CAB, design authority or equivalent forums.
The ability to produce security designs, diagrams and decision records suitable for customer assurance, peer review and audit.
Experience delivering security assessments and implementing controls for external customers.
Strong knowledge of Zero Trust, identity and access management, Entra ID, Azure and Microsoft 365 security.
Experience of threat modelling and using MITRE ATT&CK to inform detection and control design.
Working knowledge of recognised frameworks and guidance, including NCSC CAF, NIST CSF, ISO 27001/27005 and Cyber Essentials Plus.
The confidence to communicate complex security risks clearly to technical teams, customers and senior stakeholders.
A collaborative approach and the ability to balance competing programme and managed service priorities.

Experience within the NHS or wider public sector would be valuable, as would exposure to Oracle Fusion or HCM security, ServiceNow, major programme transitions, KQL, Scripting or security across AWS and Google Cloud.

Relevant certifications may include SC-100, SC-200, AZ-500, CISSP, CISM, TOGAF, SABSA or NCSC Certified Cyber Professional.

What can we offer you?

Referral bonus scheme of £1000 when you successfully refer a friend.
Access to our LinkedIn Learning platform, with over 16000 expert-led online tutorials to enhance and achieve your personal and professional goals.
Healthcare cash plan. This will give you access to online GP appointments, 24/7 access to qualified counsellors and cash back against a range of general healthcare
Casual dress policy
Company Pension Scheme
Company social events
25 days annual leave plus public/bank holidays
Purchase of annual leave scheme

Life at Littlefish:

Our company values shape who we are as a business, what we stand for and how we work. Hiring people with our values at heart, is very important as we see Littlefish grow.

I am High Performing- I like to raise the bar, we look at creating opportunities to increase quality and improve efficiency, we strive for service excellence.

I am Passionate- We build team success and celebrate them together, I am enthusiastic and energetic, I care about the people I work with and we support one another.

I Have a Can-Do Attitude- I am not afraid to step outside my comfort zone, we are not afraid to challenge status quo, we get stuff done!

I am Cyber Conscious – I am vigilant, responsible, and proactive in protecting our people, customers and organisation from Cyber threats.

So, if you feel like you can make a tangible difference, apply today, and join us on this journey.

Here at Littlefish we aim to be somewhere everyone can be themselves. We are committed to encouraging a diverse and inclusive community where everyone irrespective of who they are, or their background, can feel equal and supported.

We encourage applications from people of all backgrounds. Please get in touch if you are concerned about any difficulties you may face during your recruitment process, so we adjust accordingly.

Part of our application process includes a set of ED&I (Equality, diversity and inclusion) questions. Please note, each question has a prefer not to say option).

…

Posted: October 7th, 2026