Security Architect.

Copello Global
Gloucester, UK
2 days ago
Apply on copello.co.uk
Prepare application

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Compensation
£187,200.0 - £228,800.0
Working hours
Regular working hours
Job source

Tech stack

Microsoft Access Adobe InDesign Amazon Web Services Applications Architecture Computing Platforms Systems Engineering Microsoft Azure Software as a Service Cloud Computing Cloud Computing Security Cloud Engineering Control Objectives for Information and Related Technology (COBIT)
+23 more
Cyber Security Data as a Services Hardware Security Module Infrastructure as a Service (IaaS) Identity and Access Management Information Systems Security Architecture Professional Key Management Network Segmentation Platform as a Service (PAAS) Public Key Infrastructure Zero Trust Network Access Sherwood Applied Business Security Architecture Private Cloud Environment Data Logging Cloud Platform System Technical Debt HybridCloud Infrastructure as Code (IaC) Togaf Containerization Hardware Infrastructure Cloud Migration Serverless Computing

Job description

I am looking for an experienced Security Architect to lead the design, assurance and continual improvement of secure technology solutions across cloud, hybrid and on-premise environments. This role will be responsible for embedding security throughout the full technology lifecycle, supporting cloud adoption, cloud systems engineering, digital transformation programmes and enterprise platforms.

Working with architecture, engineering, infrastructure, security and delivery teams, you will provide technical leadership to ensure solutions align with Secure by Design principles, organisational risk appetite, regulatory requirements and industry best practice. Experience with cryptographic services and key management is advantageous but not essential.

Key Responsibilities

Security Architecture & Cloud Systems Engineering

  • Design and assure secure architectures across cloud, hybrid and on-premise environments.
  • Develop security architecture principles, standards, patterns and reference architectures.
  • Embed security requirements within platform, infrastructure and application architectures.
  • Review solution designs to ensure appropriate security controls are implemented throughout the system lifecycle.
  • Support secure cloud adoption, modernisation and digital transformation initiatives.
  • Provide expert guidance across infrastructure, applications, networks, platforms and data services.
  • Ensure solutions meet requirements for confidentiality, integrity, availability, resilience and recoverability.
  • Support the design of complex, distributed and mission-critical systems.

Security Assurance & Risk Management

  • Conduct security architecture reviews, threat modelling and risk assessments.
  • Identify security risks, vulnerabilities and technical debt, recommending appropriate mitigations.
  • Support risk-based decision making across programmes and enterprise initiatives.
  • Define security requirements, control objectives and acceptance criteria.
  • Contribute to security assurance, accreditation and compliance activities.
  • Ensure designs align with security policies, standards and regulatory obligations.

Cloud Security & Platform Architecture

  • Provide security oversight across public cloud, private cloud and hybrid cloud platforms.
  • Assess cloud-native services, Infrastructure as Code (IaC), container platforms and modern application architectures.
  • Support secure migration from legacy environments to cloud-hosted solutions.
  • Develop security patterns covering identity and access management (IAM), privileged access, network segmentation, platform security, logging, monitoring and resilience.
  • Evaluate emerging technologies and provide recommendations for secure adoption.

Architecture Governance & Technical Leadership

  • Contribute to security architecture strategy, roadmaps and target-state architectures.
  • Participate in design authorities, architecture review boards and governance activities.
  • Develop reusable security patterns and guidance for engineering teams.
  • Lead security reviews relating to major technology change and transformation programmes.
  • Balance security, operational and business requirements when making architectural decisions.

Stakeholder Engagement

  • Collaborate with Enterprise Architects, Solution Architects, Cloud Engineers, Infrastructure Teams and Delivery Managers.
  • Communicate security risks and recommendations to both technical and non-technical stakeholders.
  • Build strong relationships across technology and programme teams.
  • Promote secure design principles and architectural best practice.
  • Mentor architects and engineers in secure systems design.

Continuous Improvement

  • Keep up to date with developments in cloud computing, platform engineering, infrastructure security and emerging technologies.
  • Contribute to the enhancement of security standards, architecture frameworks and governance processes.
  • Share knowledge and best practice across security, architecture and engineering communities.
  • Support ongoing improvements in security assurance and systems engineering practices.

Requirements

  • Proven experience as a Security Architect within complex enterprise, government, defence or highly regulated environments.
  • Strong knowledge of cloud architecture and cloud security across IaaS, PaaS and SaaS platforms.
  • Experience with hybrid and on-premise infrastructure architectures.
  • Strong understanding of secure system design, security architecture patterns and security controls.
  • Experience conducting threat modelling, security architecture reviews and risk assessments.
  • Ability to support and influence risk-based decision making at programme and enterprise level.
  • Experience developing architecture standards, governance frameworks and security patterns.
  • Knowledge of networking, identity and access management (IAM), platform security and security monitoring.
  • Excellent stakeholder management, communication and influencing skills., * Experience supporting cloud migration and digital transformation programmes.
  • Knowledge of Zero Trust architectures and modern enterprise security frameworks.
  • Experience working within MOD, Defence Digital, Government or National Security environments.
  • Understanding of cryptographic services, PKI, key management systems and Hardware Security Modules (HSMs).
  • Relevant certifications such as CISSP, SABSA, CCSK, CCSP, TOGAF, Azure Security Engineer, AWS Security Specialty or equivalent.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on copello.co.uk
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:10 min

Exposing sensitive information through partial search logs

Dennis Schulz Dennis Schulz +1 · World Congress 2026 Europe

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:56 min

Discovering incidents using logs, metrics, and traces

Nele Uhlemann · World Congress 2023

10:35 min

Teaching and coaching security concepts for lasting impact

Tanya Janca · World Congress 2021

5:21 min

Protecting infrastructure with the shared responsibility model

Mustafa Toroman · World Congress 2023

1:40 min

Tracking data modifications with Delta Lake transaction logs

Matthias Niehoff Matthias Niehoff · World Congress 2026 Europe

Videos

See all

Related articles

See all