Cyber Security Architect & Engineering Lead

Moore Kingston Smith
London, UK
6 days ago
Apply on uk.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Application Programming Interfaces (APIs) Artificial Intelligence Microsoft Azure Software as a Service Cloud Computing Cloud Computing Security Cyber Security Data Security Identity and Access Management Intrusion Detection and Prevention Information Systems Security Architecture Professional
+16 more
Python (Programming Language) Network Security Microsoft Security Essentials Windows PowerShell Zero Trust Network Access Sherwood Applied Business Security Architecture Software Engineering Microsoft Power Automate Office365 Software Security Togaf Cybercrime Data Analytics Integration Frameworks Serverless Computing Security Orchestration, Automation & Response

Job description

We are looking for a senior, hands-on Cyber Security Architect & Engineering Lead to help shape and strengthen our future security architecture at Moore Kingston Smith.

This is a technical leadership role, sitting within our Information Security team and reporting to the Head of Information Security. You will be responsible for translating security strategy and business requirements into secure designs, practical controls, technical standards and measurable outcomes.

This is not a purely advisory or compliance-focused position. We are looking for someone who can design, prototype, configure, guide implementation and validate the effectiveness of security controls across identity, cloud, data, endpoints, applications, networks and third-party services.

A key part of the role will be helping the firm adopt AI and emerging technologies securely, including Microsoft 365 Copilot, AI agents, custom AI applications and data-driven platforms., * Define and maintain security architecture across identity, endpoints, networks, cloud, SaaS, data, applications and integration platforms.

  • Design and implement modern security controls, with a strong focus on Zero Trust, secure-by-design principles and automation.
  • Lead security architecture reviews and threat modelling for major projects, new products, high-risk integrations and emerging technologies.
  • Act as the technical lead for AI security, helping to establish practical controls for Microsoft 365 Copilot, AI agents, custom AI applications and related technologies.
  • Provide senior technical oversight across security monitoring, detection engineering, incident response and recovery capability.
  • Lead or support the response to complex or high-severity security incidents, working with internal teams, external SOC providers and specialist partners.
  • Improve vulnerability and exposure management, using business risk, exploitability, attack-path context and threat intelligence to prioritise remediation.
  • Support the technical implementation and evidence required for ISO 27001, Cyber Essentials Plus, client assurance and other regulatory or contractual obligations.
  • Provide clear, risk-based technical advice to senior leaders, project teams and technology owners.
  • Coach technology teams in secure design and engineering practices, helping to build security capability beyond the core security team.

Requirements

We are looking for someone with demonstrable experience in cyber security architecture, security engineering or a closely related senior technical security role., * Strong experience designing and implementing security controls in a Microsoft-centric environment, including Microsoft 365, Entra ID, Defender XDR, Sentinel, Azure and Microsoft Purview.

  • Strong knowledge of identity security, Zero Trust, cloud security, data security, endpoint security, network security, application security, API security and secure software development.
  • Experience of security architecture review, threat modelling, technical standards, reference architecture and control design.
  • Practical experience across incident response, detection engineering, threat hunting, vulnerability or exposure management and security automation.
  • Ability to automate security and assurance processes using tools such as Python, PowerShell, Logic Apps, Azure Functions, APIs, infrastructure as code or equivalent platforms.
  • Working knowledge of ISO 27001, Cyber Essentials Plus, NIST CSF and recognised AI security or governance frameworks.
  • The ability to explain complex technical risk clearly to senior stakeholders and influence delivery teams without relying on formal authority.
  • A practical, outcome-focused approach, with a track record of taking ownership, improving controls and validating that they work effectively.

Experience in a regulated, client-confidential or professional services environment would be advantageous., * Microsoft Certified: Cybersecurity Architect Expert, SC-100

  • CISSP or CCSP
  • Microsoft security certifications such as AZ-500 or SC-200
  • GIAC certifications in incident response, cloud, detection or forensics
  • ISO 27001 Lead Implementer or Lead Auditor
  • Architecture or threat-modelling accreditation such as SABSA, TOGAF or equivalent practical experience

You will be a practical problem-solver who is comfortable moving between architecture, configuration, testing and stakeholder engagement. You’ll be confident challenging outdated controls and practices, while staying pragmatic, commercially aware and focused on business outcomes. You’ll also be calm under pressure, collaborative in your approach and able to build trust with both technical and non-technical teams.

About the company

At Moore Kingston Smith, we believe in the potential of people to make a positive impact, fuelled by the power of genuine understanding. Working with small, medium and large clients, we are a multi-disciplinary advisory, tax and audit firm with expertise across multiple sectors, uniquely positioned to help people realise their ambitions. Our London and regional teams deliver quality results locally and nationally, and worldwide alongside the Moore Global network. Through respect, collaboration and active listening, understanding is at the heart of everything we do with our clients, colleagues and communities. We value people and projects that promote positive change for the future. Come and join us to make a difference.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on uk.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:11 min

Securing heterogeneous legacy payment infrastructure against AI

Michele Zuccala Michele Zuccala +4 · World Congress 2026 Europe

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

46 sec

Using LLMs to reverse engineer undocumented legacy code

Michele Zuccala Michele Zuccala +4 · World Congress 2026 Europe

Videos

See all

Related articles

See all