> Markdown version of [/jobs/ext/2970762-cloud-security-solution-architect](https://www.wearedevelopers.com/jobs/ext/2970762-cloud-security-solution-architect). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cloud Security Solution Architect - **Company:** GCS Ltd - **Location:** Deepcar, UK - **Contract:** Permanent contract - **Skills:** Computing Platforms, User Authentication, Cloud Computing, Cloud Computing Security, Cloud Engineering, Cyber Security, Continuous Integration, Software Design Documents, Software Design Patterns, Disaster Recovery, High-Level Architecture, Identity and Access Management, Key Management, OAuth, OpenID, Public Key Infrastructure, Openid Connect, Cloud Services, Zero Trust Network Access, Security Assertion Markup Language (SAML), Policy as Code, SSL Certificate Management, Google Cloud, Cloud Platform System, Istio, Software Security, Event Driven Architecture, Containerization, Kubernetes, Devsecops, Microservices - **Published:** September 18, 2026 - **Apply:** https://www.apply4u.co.uk/jobs/cloud-security-solution-architect/47447327 ## About the Role Cloud-Native Architecture Microservices Container Platforms Service Mesh Concepts Modern Architecture Event-Driven Architecture Messaging and Asynchronous Processing Policy-as-Code OPA (Open Policy Agent) and/or Cedar PDP / PEP Design Patterns Delivery & Governance Enterprise Solution Architecture Architecture Governance Risk Management Technical Leadership Stakeholder Management Architecture Review Boards Technical Design Assurance Desirable Experience Financial Services or other highly regulated environments. Large-scale transformation programmes. Identity modernisation initiatives. Cloud security and platform engineering. DevSecOps and CI/CD practices. Machine Identity and Agent Identity frameworks. Experience working across global, distributed delivery teams. Candidate Profile The ideal candidate will be an experienced Solution Architect with strong Identity & Access Management expertise and a proven track record delivering complex security and identity solutions within enterprise-scale environments. They will be comfortable operating across strategy, architecture, governance, and technical delivery while influencing senior stakeholders and driving architectural decisions across multiple workstreams. GCS is acting as an Employment Business in relation to this vacancy. #J-18808-Ljbffr ## Description architects, engineering teams, security stakeholders, and technology partners to translate business, security, and regulatory requirements into enterprise-grade IAM solutions. Key Responsibilities Produce High-Level Designs (HLDs) and Low-Level Designs (LLDs) for identity capabilities. Define end-to-end solution architectures across business, application, data, security, and infrastructure domains. Translate business, security, operational, and regulatory requirements into technical solutions. Develop architecture patterns, standards, and reference designs. Define integration patterns between identity platforms, applications, infrastructure, and cloud services. Design cloud-native identity solutions within containerised and cloud environments. Define authentication, authorisation, federation, and access control architectures. Design and support Human Identity, Agent Identity, and Workload Identity capabilities. Develop Zero Trust security architectures and trust boundary models. Design API security, service-to-service authentication, and workload authentication frameworks. Develop event-driven integration patterns using messaging and asynchronous processing technologies. Design Policy Decision Point (PDP) and Policy Enforcement Point (PEP) architectures using Policy-as-Code principles. Define PKI, certificate lifecycle management, secrets management, and cryptographic integration patterns. Design highly available, resilient, and disaster recovery capable solutions. Ensure solutions meet security, performance, scalability, resilience, and operational requirements. Produce architecture decision records (ADRs) and technical design documentation. Participate in Architecture Reviews, Design Authorities, and governance processes. Conduct technical assurance and solution reviews across internal and third-party deliveries. Identify risks, assumptions, issues, constraints, and dependencies across programme workstreams. Collaborate with Enterprise Architecture teams to ensure alignment to strategic target-state architecture. Support engineering teams throughout implementation, testing, and production readiness activities. Mentor engineers and promote architecture and engineering best practices. Evaluate emerging technologies and identity solutions against programme requirements. Support roadmap planning and future-state architecture development. Essential Experience & Skills Identity & Access Management Enterprise Identity & Access Management (IAM) Authentication and Authorisation Identity Federation Identity Governance & Administration (IGA) Privileged Access Management (PAM) Non-Human Identity Management Workload and Service Identity Identity Standards & Protocols OAuth 2.0 OpenID Connect (OIDC) SAML SCIM Security Architecture Zero Trust Architecture Security Architecture and Security Controls API Security Service-to-Service Authentication Secrets Management PKI and Certificate Management Cloud & Platform Technologies Google Cloud Platform (GCP) Kubernetes ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Get started with securing your cloud-native Java microservices applications](https://www.wearedevelopers.com/videos/123-get-started-with-securing-your-cloud-native-java-microservices-applications) - [Rate-limiting using eBPF and Istio: How to protect your SaaS customers from themselves](https://www.wearedevelopers.com/videos/100220-rate-limiting-using-ebpf-and-istio-how-to-protect-your-saas-customers-from-themselves) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) - [The Cloud is Calling: Answer with In-Demand Skills](https://www.wearedevelopers.com/videos/945-the-cloud-is-calling-answer-with-in-demand-skills) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [7 Cloud Computing Trends Coming in 2025 for Developers](https://www.wearedevelopers.com/magazine/412-7-cloud-computing-trends-coming-in-2025-for-developers) - [Got AI ideas but no money? Here are 10 free ways to level up your AI skills with Google Cloud](https://www.wearedevelopers.com/magazine/600-got-ai-ideas-but-no-money-here-are-10-free-ways-to-level-up-your-ai-skills-with-google-cloud) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Best US AI Conferences for CTOs in 2026: Build vs. Buy, Vendor Evaluation, and Peer Intelligence](https://www.wearedevelopers.com/magazine/736-best-us-ai-conferences-for-ctos-in-2026-build-vs-buy-vendor-evaluation-and-peer-intelligence)