Overview
In this Security Architect role you will design end-to-end security architectures for public sector and enterprise clients, embedding security-by-design into delivery. You will collaborate with solution architects, engineering teams and leadership to align with risk appetites. You will drive threat modelling, governance, and compliance, and mentor juniors while growing the Security Practice. This role offers autonomy and opportunity to shape security offerings and win new work.
Pay / Benefits
- Competitive salary
- Bonus scheme
- Private healthcare insurance
- 25 days annual leave + bank holidays
- Pension (statutory & contributory)
- Flexible working
Responsibilities
- Design end-to-end security architectures aligned with business, technical, regulatory, and security requirements
- Develop security strategies for cloud-native, hybrid, and on-premise environments
- Conduct security architecture reviews and provide risk-mitigating recommendations
- Translate business and technical requirements into secure, scalable designs
- Ensure alignment with enterprise security architecture and governance
- Support Agile delivery by embedding security-by-design
- Define and document security patterns and reusable artefacts
- Lead threat modelling activities and mitigation strategies
- Collaborate with cross-functional teams to drive secure decision-making
- Advise on identity and access management approaches
- Incorporate security, privacy, compliance, and risk management into solutions
- Support security assurance activities including risk assessments and testing
- Contribute to DevSecOps with automation and continuous security
- Produce architectural documentation and security artefacts
- Mentor junior team members and contribute to the Security Practice
Key requirements
- Extensive stakeholder engagement experience including with senior leadership
- Experience in client-facing/consultancy environments
- Proven track record in enterprise security architectures
- Strong understanding of security architecture methodologies and frameworks
- Experience with threat modelling and risk assessments
- Experience in regulated environments and security assurance
- Ability to balance security with business objectives
- Experience crafting secure architectures across cloud and hybrid environments
- Knowledge of security controls for applications, infrastructure, data, and identity
- Experience in Agile delivery and embedding security into processes
- Familiarity with public sector security requirements and accreditation approaches
- Experience supporting compliance initiatives with standards/regulatory frameworks
- Strong communication and influencing skills
- Collaborative and consultative approach
- Stakeholder management and workshop facilitation
- Cloud security across Azure, AWS, GCP, and Microsoft 365
- Zero Trust and secure-by-design methodologies
- Identity and access management ( federation, SSO, MFA, PAM)
…
