Cyber Security Solution Architect

Cognizant
Coventry, UK
2 days ago
Apply on www.adzuna.co.uk
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Compensation
£63,000.0 - £84,000.0
Working hours
Regular working hours

Tech stack

Kubernetes Security Amazon Web Services Proxy Servers Microsoft Azure Cisco PIX Cloud Computing Cloud Computing Security Cloud Engineering Cyber Security Continuous Integration DevOps Domain Name System Security Extensions
+48 more
Federated Identity Management Identity and Access Management Intrusion Detection Systems Virtual Private Networks (VPN) Python (Programming Language) Key Management Network Security Network Diagrams Network Segmentation Ping (Networking Utility) Public Key Infrastructure Windows PowerShell Role-Based Access Control Azure Active Directory Zero Trust Network Access Security Information and Event Management Virtual Local Area Networks Software Vulnerability Management Wide Area Networks Symantec Google Cloud Okta Cyberark Mitre Att&ck Multi-Cloud QRadar Cyber Threat Analysis Firewalls (Computer Science) Juniper Togaf Microsoft InTune Azure Security Center Falcon Platform Kubernetes Palo Alto Networks Patch Management Casper Suite Fortinet Cloud Migration CIS Benchmarks Firepower SailPoint Terraform Prisma Cloud Platform Splunk SentinelOne Expertise Devsecops Cisco

Job description

  • Design and architect end-to-end security solutions covering IAM, network security, cloud security, endpoint protection, and perimeter defense across on-prem and multi-cloud environments
  • Lead the architecture, deployment, and optimization of firewalls, IDS/IPS, VPNs, proxies, and network segmentation strategies
  • Design and implement IAM frameworks including SSO, MFA, PAM, RBAC/ABAC, identity federation, and lifecycle management
  • Architect cloud security controls across AWS, Azure, and GCP, including IAM policies, network security groups, encryption, key management, workload protection, and cloud security posture management
  • Design secure landing zones and cloud architecture patterns aligned with the shared responsibility model
  • Define endpoint security architecture including EDR/XDR, device hardening, patch management, mobile device management, and endpoint compliance policies
  • Develop security reference architectures, standards, and blueprints aligned with industry frameworks
  • Conduct security architecture reviews for new projects, applications, cloud migrations, and infrastructure changes
  • Perform risk assessments, threat modeling, and security gap analyses, and recommend remediation strategies
  • Collaborate with network, cloud, application, DevOps, and endpoint teams to embed security by design
  • Evaluate, select, and integrate security tools and technologies
  • Define and enforce security policies, standards, and best practices across the organization
  • Provide technical leadership during incident response and post-incident architecture hardening
  • Create and maintain documentation including HLDs, LLDs, network diagrams, cloud architecture diagrams, data flow diagrams, and security runbooks
  • Support audits, compliance assessments, and regulatory requirements
  • Mentor security engineers and junior architects on best practices and emerging threats
  • Stay current with emerging threats, vulnerabilities, and technologies and recommend proactive improvements

Technologies:

  • AWS
  • Architect
  • Azure
  • CI/CD
  • Cloud
  • Cisco
  • DevSecOps
  • DevOps
  • Flow
  • GCP
  • IAM
  • Support
  • Kubernetes
  • Mobile
  • Network
  • PowerShell
  • Prisma
  • Python
  • RBAC
  • Security
  • Splunk
  • TOGAF
  • Terraform
  • WAF, We are seeking an experienced Cyber Security Solution Architect to design, implement, and oversee enterprise-wide security architecture. The ideal candidate will act as the technical authority bridging business requirements with secure, scalable technical solutions. This role requires 3 days working from our office in Coventry.

Requirements

  • Good experience in cybersecurity and in a solution/security architect role
  • Strong hands-on and architectural experience with IAM platforms such as Okta, Azure AD/Entra ID, Ping Identity, SailPoint, CyberArk (PAM), and ForgeRock
  • Strong hands-on and architectural experience with firewalls and network security technologies such as Palo Alto, Fortinet, Cisco ASA/Firepower, Check Point, and Juniper
  • Strong hands-on and architectural experience with network security concepts including VPNs, VLANs, segmentation, NAC, SD-WAN, DNS security, and secure routing/switching
  • Strong hands-on and architectural experience with cloud security across AWS, Azure, and GCP, including CSPM/CNAPP tools such as Wiz, Prisma Cloud, and Orca
  • Strong hands-on and architectural experience with endpoint security tools such as CrowdStrike, Microsoft Defender for Endpoint, SentinelOne, and Symantec, plus MDM/UEM tools such as Intune and Jamf
  • Cybersecurity fundamentals including vulnerability management, threat intelligence, encryption/PKI, and data protection
  • Experience designing Zero Trust Architecture (ZTA)
  • Strong understanding of cloud-native security architecture and shared responsibility models
  • Knowledge of security frameworks such as NIST CSF, ISO 27001, CIS Controls, and MITRE ATT&CK
  • Experience with SIEM/SOAR platforms such as Splunk, QRadar, and Sentinel
  • Scripting and automation experience with Python, PowerShell, or Terraform is a plus
  • Understanding of DevSecOps and CI/CD security integration
  • Container and Kubernetes security exposure is a plus
  • Preferred certifications include CISSP, CISM, CCSP, AWS Certified Security - Specialty, Azure Security Engineer, Google Professional Cloud Security Engineer, Palo Alto PCNSE, Fortinet NSE, Cisco CCNP Security, CyberArk CDE, Okta Certified Professional, and TOGAF or another architecture certification

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.adzuna.co.uk
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 · LIVE

1:29 min

Expanding practical knowledge with community sandboxes and resources

Stuart Clark · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

4:37 min

Architecting single sign-on flows across multiple application domains

Gift Egwuenu · World Congress 2023

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

3:45 min

Prototyping deterministic agents with n8n and PyATS

Alfonso Sandoval Rosas Alfonso Sandoval Rosas · Europe 2026 Virtual

Videos

See all

Related articles

See all