Cyber Security Architect

Company: Severn Trent
Apply for the Cyber Security Architect
Location: Coventry
Job Description:

Overview

In this role you will shape Severn Trent’s security posture by developing strategy, designing security solutions, and providing architectural assurance. You’ll secure a hybrid landscape across information and operational technology, cloud, and emerging tech while communicating complex security concepts to stakeholders. You’ll influence technology investments to balance security with business needs and enable safe delivery of services. This is a mission-driven, collaborative opportunity at a leading, inclusive utility with strong employee engagement.

Pay / Benefits

  • 28 days holiday + bank holidays
  • annual bonus scheme
  • leading pension scheme with employer contribution
  • Sharesave – discounted Severn Trent shares
  • Academy training and development
  • volunteering days

Responsibilities

  • Develop and document security strategy and high-level designs for cloud and on-prem environments
  • Provide security architectural assurance and consultancy to projects and teams
  • Design and select security solutions for hybrid architectures (information, OT/IOT, cloud, emerging tech)
  • Evaluate technologies to enhance security posture while aligning with business needs and culture
  • Communicate complex security problems to stakeholders and influence decision making
  • Collaborate with security operations, engineering, risk, and compliance teams
  • Protect data and information/operational systems to support secure business services

Key requirements

  • Experience in researching, developing and documenting complex security solutions and high-level designs
  • Knowledge of cloud and on-prem security architectures
  • Understanding of industry frameworks (NIST, NCSC CAF, CIS, IEC 62443)
  • Awareness of NIS Directive and PCI DSS (advantageous)
  • OT/IOT security knowledge from regulated industries (desirable)
  • Experience with IAM, device/infrastructure security, network security, application/workload security, data security, visibility/analytics, cloud security
  • Strong stakeholder engagement and communication skills
  • Industry-recognised security certifications (e.g., CCSP, CISSP, CISM, ISO 27001 Lead Auditor/Implementor, BCS) and cloud certifications (Azure, AWS)
  • flexible to collaborate with external suppliers and internal teams
  • robust communication
  • influence and stakeholder management
  • collaboration
  • Security architecture design
  • Identity and access management
  • Device and infrastructure security

Posted: September 14th, 2026