> Markdown version of [/jobs/ext/1455213-security-architect](https://www.wearedevelopers.com/jobs/ext/1455213-security-architect). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Architect - **Company:** Atos - **Location:** Birmingham, UK - **Salary:** £72,822.0 - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Microsoft Azure, Cloud Computing, Cloud Computing Security, Cyber Security, High-Level Architecture, Identity and Access Management, Information Systems Security Architecture Professional, Network Security, Microsoft Security Essentials, Zero Trust Network Access, Sherwood Applied Business Security Architecture, Mitre Att&ck, Togaf, CIS Benchmarks - **Published:** July 27, 2026 - **Apply:** https://www.adzuna.co.uk/jobs/details/5816309715 ## About the Role * Significant experience in Information Security, Cyber Security Architecture or Solution Architecture. * Experience designing secure enterprise, cloud and hybrid environments. * Understanding of: * Identity & Access Management (IAM) * Network Security * Cloud Security (Azure and/or AWS and/or GCP) * Security Monitoring and Incident Response * Data Protection and Encryption * Zero Trust principles * Experience performing threat modelling and security risk assessments. * Knowledge of security frameworks and standards such as: * ISO 27001 * NIST CSF * CIS Controls * NCSC Guidance * Secure by Design principles * Excellent stakeholder management and communication skills. Desirable * Experience within regulated industries (Government, Critical National Infrastructure, Financial Services, Healthcare etc.). * Knowledge of OT/ICS security environments. * Experience supporting bids, proposals and customer engagements. Qualifications & Certification Desirable Certifications * CISSP * CISM * SABSA * CCSP * TOGAF * AWS Certified Cloud Practitioner * Microsoft Security, Compliance, and Identity Fundamentals (SC-900) Key Competencies * Strategic thinking * Technical leadership * Risk-based decision making * Problem solving * Stakeholder management * Communication and influencing * Governance and assurance * Continuous improvement mindset Success Measures * Security requirements are embedded early in project lifecycles. * Risks are identified and mitigated effectively. * Architecture reviews are completed successfully and on time. * Security compliance obligations are met. ## Description Contribution / Impact: This role offers the opportunity to contribute security outcomes of one of the UK's largest and most high-profile infrastructure programmes. The successful candidate will play a critical role in ensuring secure-by-design delivery across a programme of works with significant national importance. Bigger Challenge / Scope / Responsibilities: This is an opportunity to step into a role with greater scope, responsibility, and impact. You will lead security across complex, multi-stakeholder programmes, addressing architectural and operational challenges that directly influence business and security outcomes. Interesting Brand or Reputation: Join Atos and help secure some of the UK's most critical infrastructure. The scale, complexity, and visibility of these programmes will enhance your professional reputation, strengthen your personal brand, and position you as a trusted security leader. Influence: This role provides a unique opportunity to shape and strengthen the cyber security posture of a Critical National Infrastructure organisation, influencing strategic decisions, driving behavioural change, and delivering security outcomes across the enterprise. Hybrid: Initially, the role will require a presence at the client's Birmingham city centre offices for three days per week. As familiarity with the environment increases and key deliverables are achieved, the on-site requirement is expected to reduce accordingly. Role Purpose: The Security Architect is responsible for ensuring that security is embedded into business and technology solutions by design. The role provides security leadership across projects, programmes and operational services, ensuring that security architectures, risks and controls align with business objectives, regulatory requirements and industry best practice. Working closely with technical architects, solution architects, project teams, operational teams and customer stakeholders, the Security Architect provides expert guidance and governance throughout the solution lifecycle., Security Architecture & Design * Develop and maintain security architectures, patterns, standards and reference designs. * Review and assure solution designs to ensure compliance with security policies and security-by-design principles. * Produce and review High-Level Designs (HLDs). * Ensure solutions align with enterprise architecture, risk appetite and security strategy. Risk Assessment & Threat Modelling * Conduct threat modelling exercises using recognised methodologies (e.g. STRIDE, MITRE ATT&CK). * Perform security risk assessments for new and existing services. * Identify vulnerabilities, threats and control gaps, recommending appropriate mitigation activities. * Support risk management processes and risk-based decision making. Governance & Assurance * Act as a security authority within architecture review boards and governance forums. * Define and maintain security standards, controls and architecture principles. * Review and approve architecture exceptions where appropriate. * Ensure compliance with relevant regulations, contractual obligations and industry frameworks. Security Strategy & Roadmaps * Support the development and maintenance of security strategy and roadmaps. * Identify opportunities to improve security capability, resilience and operational effectiveness. * Contribute to long-term security transformation initiatives. Stakeholder Engagement * Collaborate with business leaders, delivery teams, operational teams, suppliers and customers. * Translate complex technical security concepts into business-focused recommendations. * Act as a trusted advisor on security architecture and cyber risk matters. Incident & Operational Support * Provide architectural support during security incidents and major service disruptions. * Support root cause analysis and remediation activities. * Assist with security tooling evaluations and strategic technology decisions. Mentoring & Leadership * Lead and mentor architects, engineers and technical specialists. * Promote security awareness and best practice across teams. * Contribute to the development of the organisation's security architecture capability. ## Related Videos - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Building Well-Architected applications](https://www.wearedevelopers.com/videos/691-building-well-architected-applications) - [Agile work at CARIAD – Creating a customer web application for controlling the vehicle ](https://www.wearedevelopers.com/videos/200-agile-work-at-cariad-creating-a-customer-web-application-for-controlling-the-vehicle) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Best Companies to work for in London: Top 25 Companies in 2023](https://www.wearedevelopers.com/magazine/187-best-companies-to-work-for-in-london-top-25-companies-in-2023) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers) - [Building Security Champions](https://www.wearedevelopers.com/magazine/87-building-security-champions)