IT Security Architect (AI, Cloud, Networks, ISO27001)
Totum
Greater London, UK
1 day ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Apply on www.collegerecruiter.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Job source
Tech stack
Artificial Intelligence
Software System Penetration Testing
Microsoft Azure
Cloud Computing
Cyber Security
Network Security
Network Segmentation
Peering
Software Architecture
Zero Trust Network Access
Microsoft Power Automate
Firewalls (Computer Science)
+3 more
Togaf
Azure Service Fabric
Api Management
Job description
- Own the enterprise security architecture vision, strategy and roadmaps from a corporate business, technology and data perspective - encompassing on-premises cloud, hybrid and network security domains including Zero Trust and SASE frameworks.
- Define and own the firm’s AI security architecture standards and governance framework - assessing the security risks associated with AI and machine learning adoption, including data privacy, model integrity, prompt injection, and supply chain risks - ensuring the firm can harness the AI technology safely and responsibly.
- Complement the Information Security Team and the Risk and Compliance Team, supporting alignment of architectural decisions with relevant industry frameworks such as ISO 27001, NST, CIS and regulations such as GDPR and NIS2.
- Create and maintain architectural documentation as artefacts that relate to Security, architectural designs, patterns, principles, standards and technology selection, ensuring these remain current and fit for purpose.
- Advise and architect designs to ensure smooth deployment and secure operation for fulfilling business objectives and processes across the firm’s technology estate.
- Contribute to any Design Authorities and the firm’s Architecture Review Board process
Skills Required
- Certifications - CISSP, CISM and TOGAF9 would be ideal.
- Proven experience in architectural roles selecting, designing and overseeing the deployment of complex solutions across on premise, cloud and hybrid environments at enterprise scale.
- Architectural experience of product lifecycle delivery, owning the security design from strategy and roadmap through to execution.
- Experience with working with security-based technology such as but not limited to IDAM, Firewalls, NAC, Segmentation and penetration testing in a global organization.
- Hands on experience with network and Zero Trust security technologies including ZTNA, CASB, IDAM, Firewalls, NAC and network segmentation.
- Practical experience designing and implementing Zero Trust and SASE frameworks, including vendor evaluation and adoption of platforms such as Palo Alto Prisma, Zscaler or equivalent.
- Hands on and design experience of Azure networking including VNET\u2019s, VNET Peering and VNET Gateways along with integration of Azure PaaS services such as APIM, Azure AI foundry and Logic Apps.
- Solid understanding of GRC Frameworks including ISO 27001 and NIST with the ability to translate risk and compliance requirements into practical architectural controls and standards.
- Knowledge of applicable data privacy practices and laws with particular emphasis on GDPR and Data Residency requirements and NIS2 obligations.
This role offers hybrid working - 2 days onsite weekly.
Requirements
- Certifications - CISSP, CISM and TOGAF9 would be ideal.
- Proven experience in architectural roles selecting, designing and overseeing the deployment of complex solutions across on premise, cloud and hybrid environments at enterprise scale.
- Architectural experience of product lifecycle delivery, owning the security design from strategy and roadmap through to execution.
- Experience with working with security-based technology such as but not limited to IDAM, Firewalls, NAC, Segmentation and penetration testing in a global organization.
- Hands on experience with network and Zero Trust security technologies including ZTNA, CASB, IDAM, Firewalls, NAC and network segmentation.
- Practical experience designing and implementing Zero Trust and SASE frameworks, including vendor evaluation and adoption of platforms such as Palo Alto Prisma, Zscaler or equivalent.
- Hands on and design experience of Azure networking including VNET\u2019s, VNET Peering and VNET Gateways along with integration of Azure PaaS services such as APIM, Azure AI foundry and Logic Apps.
- Solid understanding of GRC Frameworks including ISO 27001 and NIST with the ability to translate risk and compliance requirements into practical architectural controls and standards.
- Knowledge of applicable data privacy practices and laws with particular emphasis on GDPR and Data Residency requirements and NIS2 obligations.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.collegerecruiter.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
DC
Daniel Cranney
6 months ago
AJ
Austin Joy
What Are The Top Skills Required For Azure Developers?
over 4 years ago
CS
Christina Schaireiter
Best US AI Conferences for CTOs in 2026: Build vs. Buy, Vendor Evaluation, and Peer Intelligence
3 months ago
EM
Eli McGarvie
IT Salaries in UK
almost 3 years ago
LM
Luis Minvielle
The 12 Best Jobs for Software Engineers
over 2 years ago
LM
Luis Minvielle
The Most Popular IT Jobs on the Market
over 2 years ago