Lead Security Architect in SECURITY ARCHITECTURE
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
- Demonstrates a solid understanding of common infrastructure design patterns, enabling effective evaluation and implementation of robust solutions.
- Possesses a good grasp of widely used encryption and networking protocols, ensuring the secure and reliable operation of systems and data flows.
- Has experience working in a cyber role that involves stakeholder management, facilitating collaboration and clear communication across teams and departments.
- Displays proficiency in reviewing and assessing technical documentation to identify potential design issues, contributing to more secure and reliable outcomes.
- Able to articulate vulnerabilities as risks, providing clear and actionable insights to inform decision-making and prioritisation.
- Experienced in writing technical documentation, ensuring clarity and consistency for both technical and non-technical audiences.
Essential Criteria
- Champion a modern security posture - threat informed and focused on measurable reduction of attack surface.
- Security architecture strategy & guardrails - define and evolve the security patterns, principles, standards, and roadmaps that guide projects and platforms.
- Secure-by-design delivery - partner with solution architects, SMEs and delivery teams to embed controls and use threat-led thinking throughout discovery, design, build, and delivery; ensure designs meet policy and technical standards.
- Act as senior architectural voice for high impact initiatives, aligning security capabilities to business outcomes and risk profiles, and shaping option analysis with clear trade-offs.
- Architecture governance - drive effective design reviews and signoffs; document how solutions interact with the wider enterprise and ensure compliance with our delivery and assurance frameworks.
- Cross-Technology influence - collaborate across Technology and business domains to translate strategy into target designs, balancing resilience with productivity and simplification.
- Partner with our Assurance team to land the right controls at the right stages, ensuring risk is actively surfaced and owned.
- Communicate complex security choices simply - at meetings/workshops, in option papers, and roadmaps that influence senior stakeholders and unblock decisions.
- Breadth and depth in IT/security architecture, with a track record delivering secure designs and steering multiteam programmes.
- Stakeholder leadership-comfortable influencing senior leaders and guiding engineers/SMEs; strong documentation and communication skills., This role is open to flexible working patterns, these may include:
- Job share
- Flexible start and end time to each day
- Ability to adapt calendar as needed, this could be to fit in the school run, gym, or appointments
- A 50% in-office attendance requirement can be spread across the month to accommodate diverse working patterns, such as the flexibility to purchase a weekly train ticket for certain weeks
- Working from abroad policy (subject to approval and policy within the team), Your day typically begins with a project team stand-up, where you discuss the current progress and any challenges faced by the team. As the representative for the cyber security division, you play a crucial role in resolving any issues that fall within your remit, ensuring that obstacles are swiftly addressed to keep projects on track
During the afternoon, your focus shifts to the review of a design proposal for a new service. This involves a thorough assessment of the proposal. As you work through the details, you remain vigilant for any potential security issues. Where you identify a concern, you collaborate closely with subject matter experts to validate the risks. Together, you devise suitable mitigation strategies. This collaborative method ensures that the proposed service remains consistent with best security practices and supports the bank’s commitment to robust security.
Following your workday, there are many opportunities to socialise. You can join a variety of sports clubs, reading groups, and other ad-hoc activities organised by the social committee, providing a welcoming environment for all colleagues.
How this role fits into the wider Bank:
The Cyber Security Division (CSD) is a distinguished team of cyber security professionals dedicated to safeguarding the Bank of England from cyber-attacks and related incidents. In 2023, CSD received the Financial Services Award of the Year at the National Cyber Awards, building upon prior recognition for individual team members at the WeAreTechWomen and Women in IT Awards, as well as Central Banking’s Best Cyber Resilience Initiative.
Those working in Cyber Security are passionate about protecting the Bank from security incidents. The Bank of England’s complex technological landscape presents significant challenges, often spanning multiple systems located in internal data centres, cloud environments, and SaaS platforms. Addressing these challenges demands cross-team collaboration and a high level of technical expertise.
The role involves assessing the security of solutions proposed by different Bank teams. By working closely with colleagues across technology and throughout the organisation, you will contribute significantly to protecting the organisation and its information assets.
Teams within the division are committed to continuously developing their expertise in a rapidly changing environment. Staff are encouraged to enhance their skills through both internal and external opportunities, including mentoring, training, and pursuing formal qualifications, in line with industry best practices.
Our Approach to Inclusion
The Bank values diversity, equity and inclusion. We play a key role in maintaining monetary and financial stability, and to do that effectively, we believe we need a workforce that reflects the society we serve.
At the Bank of England, we want all colleagues to feel valued and respected, so we’re working hard to build an inclusive culture which supports people from all backgrounds and communities to be at their best at work. We celebrate all forms of diversity, including (but not limited to) age, disability, ethnicity, gender, gender identity, race, religion, sexual orientation and socioeconomic status. We believe that it’s by drawing on different perspectives and experiences that we’ll continue to make the best decisions for the public.
We welcome applications from individuals who work flexibly, including job shares and part time working patterns. We’ve also partnered with external organisations to support us in making adjustments for candidates and employees in the recruitment process where they’re needed.
From 1st October 2026, we expect all our colleagues to spend a minimum of 50% of their working time in the office per month. This is to capitalise on the benefits of working together in person across teams, while maintaining the flexibility offered by home working. Subject to that minimum requirement, individuals and managers should work together to find what works best for them and their team.
Requirements
- Knowledge of well-known Frameworks (e.g., NIST, MITRE ATT&CK, ISO 27001) and the ability to apply them pragmatically within delivery.
- Team leadership experience either as a virtual team or direct line management experience.
- Relevant certifications (e.g., CISSP, CISM).
Benefits & conditions
We encourage flexible working, part time working and job share arrangements. Part time salary and benefits will be on a pro-rated basis as appropriate.
Leeds: £72,320 - £81,360
London: £80,320 - £90,360
In addition, we also offer a comprehensive benefits package as detailed below:
- Currently a non-contributory, career average pension giving you a guaranteed retirement benefit of 1/80th of your annual salary for every year worked. There is the option to increase your pension (to 1/65th) or decrease (to 1/105th) in exchange for salary through our flexible benefits programme each year. The Bank has the discretion to vary standard accrual rates and dial up and dial down rates at any time and to withdraw dial up and dial down options at any time.
- A discretionary performance award based on a current award pool.
- An 8% benefits allowance with the option to take as salary or purchase a wide range of flexible benefits.
- 26 days’ annual leave with option to buy up to 12 additional days through flexible benefits.
- Private medical insurance and income protection.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Understanding and Mitigating Common Web Vulnerabilities
9 Ways to Make Money Hacking
Walking Into The Era of Supply Chain Risks
Best Companies to work for in London: Top 25 Companies in 2023