> Markdown version of [/jobs/ext/3192859-security-architect](https://www.wearedevelopers.com/jobs/ext/3192859-security-architect). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Architect - **Company:** DLA Piper - **Location:** London, UK - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Agile Methodology, Artificial Intelligence, Amazon Web Services, Microsoft Azure, Cloud Computing, Cloud Computing Security, Cyber Security, Continuous Integration, Data Governance, Information Leak Prevention, Identity and Access Management, Information Lifecycle Management, Information Systems Security Architecture Professional, Systems Development Life Cycle, Zero Trust Network Access, Sherwood Applied Business Security Architecture, Software Vulnerability Management, Data Logging, Data Processing, Google Cloud, Enterprise Software Applications, Cloud Platform System, Large Language Models, Mitre Att&ck, Cyber Threat Analysis, CIS Benchmarks, Devsecops, Static Application Security Testing, Vulnerability Analysis, Dynamic Application Security Testing - **Published:** September 3, 2026 - **Apply:** https://uk.indeed.com/viewjob?jk=2078f189a4cca22b ## About the Role * Experience of working to demonstrate compliance with Cloud Technologies (Azure, AWS, GCP) - Azure preferred however not essential. * Experience with security frameworks: NIST CSF, ISO 27001/27002, CIS Controls, MITRE ATT&CK * Familiarity with Zero Trust architecture principles * Knowledge of secure SDLC and DevSecOps practices (SAST, DAST, container/image scanning, CI/CD security) * Maintained awareness of emerging threats and vulnerability research. * Working knowledge of the use of Enterprise Systems Management tools * Familiarity in Agile development processes The following demonstrable experience is essential (minimum of 5): * Typically 7+ years in Information Security/IT, with 3+ years in an architecture-focused role * Cloud Security - Adoption & migration, Governance * Data Governance - DR, DLP, DRM, Data lifecycle Management * App & Systems Development Security * Asset Management including MDM * Identity & Access management * Network & Endpoint security * Logging, Monitoring & Retention * Threat intelligence, Automation & Orchestration * Configuration & Vulnerability management Relevant certifications (one or more preferred): * CISSP (Certified Information Systems Security Professional) * SABSA (Sherwood Applied Business Security Architecture) * CCSP (Certified Cloud Security Professional) * CISM (Certified Information Security Manager) * Cloud-specific certifications (AWS/Azure/GCP Security Specialty) ## Description The Security Architect plays a crucial role in supporting projects across the business. This role bridges business requirements with technical security controls, ensuring that systems are designed with security built in from the ground up rather than bolted on afterwards. The Security Architect will also need to support the wider security, compliance, risk and architectural community through the design and delivery of security controls, identification of new and changing requirements and in response to new and emerging threat., * Support projects and initiatives in an advisory capacity as a security SME * Design secure architectures for networks, systems, applications, and cloud environments in line with business and regulatory requirements * Ability to assess and architect guardrails for AI agents with tool-use/autonomous action capabilities * Knowledge of securing LLM and generative AI deployments: prompt injection defences, output validation, data leakage prevention, model access controls * Understanding of data governance for AI training data (sensitive data handling, PII redaction, data poisoning risks) * Identify and provide requirements to projects and initiatives * Review proposed technical solutions to ensure they meet security requirements (implementation governance) * Produce and maintain architectural artefacts (designs, standards, patterns, reference architectures) * Supply security requirements into projects and RFI/RFPs * Evaluate and recommend security tools, technologies and vendors * Drive improvements, support compliance through the execution of our security strategy * Mentor engineering and IT teams on secure design principles * Support and influence technical strategy, * Be Supportive: We care about others, value diversity and act thoughtfully - Our Architects work closely with colleagues in all positions, so the ability to form and maintain relationships and produce high quality written communication and documents is essential. We make things easier. * Be Collaborative: We give, we share and we join in - Our architects are collaborative problem solvers. We take responsibility and practice extreme ownership by default when it comes to supporting others. * Be Bold: We stand tall and challenge ourselves to think big - Our architects are always thinking about the big picture and looking for opportunities to enable our customers to do more. We don't work in a silo and need to be prepared to live outside of our comfort zones. * Be Exceptional: We exceed standards and expectations - Our architects set an example in everything they do and consistently look to go beyond MVP. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [The Cloud is Calling: Answer with In-Demand Skills](https://www.wearedevelopers.com/videos/945-the-cloud-is-calling-answer-with-in-demand-skills) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Crypto-secure Data Management with In-Database Blockchain](https://www.wearedevelopers.com/videos/632-crypto-secure-data-management-with-in-database-blockchain) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Top Must-Visit Developer Conferences in the US in 2026](https://www.wearedevelopers.com/magazine/679-top-must-visit-developer-conferences-in-the-us-in-2026) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking)