CLOUD SECURITY ARCHITECT

Finops
London, UK
8 days ago
Apply on www.apply4u.co.uk
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours

Tech stack

Amazon Web Services Microsoft Azure Software as a Service Cloud Computing Security Cyber Security Continuous Integration Domain Name System (DNS) Internet Protocol Security (IP SEC) Virtual Private Networks (VPN) Network Protocols PCI Data Security Standards Software Engineering
+6 more
TCP/IP Google Cloud Software Security Information Technology Terraform Devsecops

Requirements

drive compliance programmes, and enable clients to adopt cloud securely and at scale. This is a high-impact role suited to a security professional who combines deep technical expertise with the strategic ability to translate complex threats into clear, actionable guidance. Responsibilities Design and own cloud security architecture across AWS, Azure, and/or GCP environments, including the development of reference architectures and reusable solution patterns Define and author enterprise-level security policies, controls frameworks, and governance documentation aligned to industry standards Lead risk assessments, threat modelling exercises, and security posture evaluations for cloud platforms and SaaS products, utilising methodologies such as FAIR Drive compliance programmes covering ISO 27001, Cyber Essentials Plus, PCI DSS, and other relevant regulatory frameworks Support DevSecOps adoption and integrate security tooling and controls into CI/CD pipelines across client delivery teams Engage senior stakeholders and executive teams with clear security risk reporting, remediation guidance, and strategic security roadmaps Lead or contribute to Security Champions communities of practice, fostering a security-aware engineering culture within client organisations Provide security assurance for software development and third-party supplier onboarding, including SSPM tooling and SaaS security reviews Architect secure identity solutions, including centralised and federated authentication models across complex, cross-domain environments Support incident response planning and business continuity activities, ensuring cloud-hosted services meet resilience and recovery objectives Contribute to FinOps activities from a cybersecurity cost and sustainability perspective, ensuring security investments are well-justified and efficiently allocated About the Candidate Bachelor’s or Master’s degree in Cyber Security, Computer Science, Physics with Computing, or a related discipline; MSc or equivalent postgraduate qualification is advantageous Proven experience in a Cloud Security Architect or Senior Security Consultant role AWS Certified Security - Specialty (required), with CISSP, CRISC, or CCSP strongly preferred; additional certifications such as ISO 27001 Lead Implementer/Auditor, Azure Security Engineer, or GCP Security Engineer are advantageous Hands-on experience securing workloads on AWS and/or Microsoft Azure (GCP experience beneficial) Track record of delivering security architecture within financial services and/or public sector environments Experience supporting or achieving ISO 27001 and/or Cyber Essentials Plus accreditation Practical experience with Infrastructure as Code (e.g. Terraform) and secure CI/CD pipeline design, alongside a background in application security, DevSecOps, or secure software engineering Strong knowledge of network protocols including TCP/IP, DNS, VPN, and IPSEC, with experience working in scaled agile environments Excellent stakeholder engagement skills, with the ability to communicate security risks clearly to senior and executive audiences and build trusted client relationships Analytical and pragmatic mindset, with experience mentoring teams, contributing to security communities, and enabling secure innovation while balancing commercial and operational priorities Eligibility: Must be eligible for UK Security Check clearance Reply is an Equal Opportunities Employer and committed to embracing diversity in the workplace. We provide equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type regardless of age, sexual orientation, gender, identity, pregnancy, religion, nationality, ethnic origin, disability, medical history, skincolour, marital status or parental status or any other characteristic protected by the Law. Reply is committed to making sure that our selection methods are fair to everyone. To help you during the recruitment process, please let us know of any Reasonable Adjustments you may need. #J-18808-Ljbffr

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.apply4u.co.uk
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:34 min

Essential commands for running and testing Terraform configurations

Hennie Francis · LIVE

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

5:02 min

Mapping distributed compute paradigms to modern vehicles

Joachim Werner · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:32 min

Overview of Terraform and Terraform Cloud features

Devlin Duldulao · LIVE

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

Videos

See all

Related articles

See all