Security Architect - Microsoft, SIEM, SOAR Hybrid LDN 3d/w -then less

Nova Source Technologies
London, UK
21 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours

Tech stack

Application Programming Interfaces (APIs) Microsoft Azure Cloud Computing Security Cloud Engineering Cyber Security System Configuration Continuous Integration Software Design Patterns Intrusion Detection and Prevention Microsoft Security Essentials Microsoft Software Security Information and Event Management
+8 more
Systems Integration Data Logging Data Ingestion Falcon Platform Cybercrime Palo Alto Networks SentinelOne Expertise Security Orchestration, Automation & Response

Job description

Security Architect - Microsoft, SIEM, SOAR, EDR, Cloud Security, Azure, Detection Engineering, Threat Hunting, Security Automation, SOC, APIs, Data Models, Integrations, Microsoft, CrowdStrike, SentinelOne, Palo Alto, Azure, Hybrid (London 3d/w then less), The Security Architect role is Hybrid with initially working 3 days a week on site in London for the first few months until up to speedand then 3 times a month thereafter. The role also involves occasional UK wide paid travel. Therefore, you must be based at a commutable distance from London., As Security Architect, you will take ownership of key security architecture across SIEM, SOAR, EDR, cloud security, detection engineering, threat hunting and automation. The Security Architect will work closely with internal and 3rd party engineering and SOC teams to shape the flow of security telemetry, enrichment, alerting, automation and analyst/customer visibility. The Security Architect will help shape secure, scalable and supportable architectures across internal and customer-facing platforms, providing architecture oversight for platform change, integrations and larger customer security designs. The Security Architect will also support improvements across detection, response, security content, telemetry quality, data coverage, APIs, integrations and platform configuration across SIEM, SOAR, EDR, Microsoft, CrowdStrike, SentinelOne and Palo Alto environments. Strong Security Architect experience, or senior hands-on security engineering with a strong design mindset, is essential.

Requirements

Proven track record as a Security Architect

SIEM, SOAR, EDR, cloud security, security automation and supporting security platforms

Strong Microsoft Security

One or more of the following CrowdStrike, SentinelOne, Palo Alto or similar

Log ingestion, detection engineering, alert handling, telemetry coverage and response automation

Security logging, detection, response, enrichment and automation design patterns

APIs Integrations

Cloud

Architecture governance for platform change

Reviewing technical designs for risk, scale, resilience, maintainability and day-to-day operational impact

Mentoring engineers and analysts on Security Architect principles, platform architecture and defensive engineering practices

Strong stakeholder communication across technical and non-technical teams

Desirable skills as Security Architect

InfoSec certs

Architecture certifications

Azure or similar cloud platform experience

Certifications relating to SIEM, SOAR, EDR, Microsoft, CrowdStrike, SentinelOne or Palo Alto

CI/CD, infrastructure as code, containers or cloud deployment patterns

Experience mentoring engineers, analysts or small technical teams

MSSP, consultancy or customer-facing security environment experience

This is an exceptional Security Architect opportunity with a great package and career progression on offer.

Key skills: Microsoft, SIEM, SOAR, EDR, Cloud Security, Azure, Detection Engineering, Threat Hunting, Security Automation, SOC, APIs, Data Models, Integrations, Microsoft, CrowdStrike, SentinelOne, Palo Alto, Azure, Hybrid (3d/w then less)

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.totaljobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

1:10 min

Exposing sensitive information through partial search logs

Dennis Schulz Dennis Schulz +1 · WWC Europe 2026

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:11 min

Securing heterogeneous legacy payment infrastructure against AI

Michele Zuccala Michele Zuccala +4 · WWC Europe 2026

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

Videos

See all

Related articles

See all