Architect - Security Solutions
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+15 more
Job description
This is a senior technical role with responsibility for the architectural integrity of security capabilities. You will ensure that security solutions and services are secure, scalable, supportable, auditable and commercially viable, while aligning them with Redcentric’s product strategy, service catalogue, governance model and customer outcomes.
Working across Product Management, Product Engineering, Security, Assurance, Delivery, Operations, Service Management and Architecture, you will translate customer, business, regulatory and operational requirements into clear architectures, reusable security patterns, control recommendations, risk statements and technical roadmaps.
You will act as a trusted security authority, providing pragmatic architectural leadership while helping Redcentric develop consistent, repeatable and operationally effective managed security services., Security architecture and design authority
- Own the architectural direction and target-state design of assigned security products, services and platforms.
- Define security architecture principles, standards, reference designs and reusable patterns.
- Translate customer, product, regulatory, operational and commercial requirements into practical security architectures.
- Produce high-quality architectural documentation, including high-level designs, decision records, threat models, control mappings, risk statements and service blueprints.
- Approve, challenge or reject security designs within agreed governance boundaries.
- Identify and escalate control gaps, architectural risks, dependencies, constraints and design exceptions.
- Maintain consistency across customer solutions, product capabilities and managed service operating models.
Governance and assurance
- Lead security architecture reviews and contribute to technical design authorities and governance forums.
- Assess designs for security, resilience, supportability, auditability, commercial viability and operational readiness.
- Apply risk-based judgement when balancing security requirements, customer outcomes, delivery effort and service quality.
- Coordinate architectural decisions across cloud, identity, connectivity, hosting, workplace, infrastructure and operational security domains.
- Support compliance with relevant security frameworks, regulatory requirements and customer obligations.
- Provide clear, evidence-based recommendations to technical and non-technical stakeholders.
Product and service development
- Work with Product Management and Product Engineering to shape repeatable security products and managed service capabilities.
- Contribute to product roadmaps, platform selection, lifecycle planning, investment cases and build-versus-buy decisions.
- Improve the automation, repeatability, resilience and operational effectiveness of security services.
- Define monitoring, logging, incident response, evidence capture and operational control requirements.
- Ensure that new and changed services can be transitioned effectively into SOC, MDR, service desk and operational teams.
- Evaluate relevant suppliers, technologies and market developments.
Stakeholder and customer engagement
- Lead or support customer workshops, solution reviews, technical briefings, due diligence and transition planning.
- Support pre-sales, bids and proposals by shaping security requirements and validating solution approaches.
- Communicate architectural decisions, risks, assumptions and trade-offs clearly.
- Work effectively with customers, suppliers, sales, pre-sales, engineering, delivery, operations and assurance teams.
- Influence outcomes without relying on direct authority.
Technical leadership
- Provide clear implementation guardrails and design intent to engineering and delivery teams.
- Mentor engineers, architects and security colleagues through design reviews, documentation and knowledge sharing.
- Contribute to technical communities of practice and the development of Redcentric’s architecture capability.
- Promote reusable design patterns, consistent standards and continuous improvement., We are particularly interested in candidates with experience in several of the following areas:
- Security architecture, cloud security, security engineering or senior security consultancy.
- Working within an MSP, MSSP, telecommunications provider, cloud provider, systems integrator or complex enterprise.
- Designing and assuring security across identity, networks, endpoints, cloud infrastructure, virtualisation and data protection.
- Defining architectures for security monitoring, vulnerability management, privileged access and incident response.
- Producing high-level designs, reference architectures, decision records, threat models and implementation guidance.
- Leading security design reviews or participating in architecture governance and technical design authorities.
- Supporting product strategy, service development, lifecycle planning and technical roadmaps.
- Working in regulated, public sector or critical service environments where auditability, resilience and evidence are important.
- Supporting customer workshops, pre-sales activities, bids or supplier assessments.
- Automation, scripting, Infrastructure as Code or repeatable security deployment practices.
- DevSecOps or AI-enabled security operations.
Technical knowledge Relevant knowledge may include: Security operations and platforms
- SOC, SIEM and SOAR.
- EDR, NDR and XDR.
- Vulnerability and attack-surface management.
- Privileged Access Management.
- SASE and Security Service Edge.
- Cloud security posture management.
- Logging, monitoring, incident response and evidence capture.
Cloud, identity and infrastructure security
- Zero Trust architecture and identity security.
- Privileged access and delegated administration.
- Network segmentation and endpoint protection.
- Secure configuration and security guardrails.
- Data protection, backup and resilience.
- Azure, AWS and VMware security patterns.
- Cloud-native security and observability.
Governance, risk and compliance
- Risk assessment and threat modelling.
- Cyber resilience and disaster recovery.
- Supplier and technology security assurance.
- Security control ownership and operational responsibilities.
- Telecommunications Security Act requirements.
- NCSC guidance and the Cyber Assessment Framework.
- ISO 27001, Cyber Essentials Plus, CIS Controls and NIST Cybersecurity Framework.
- Customer-specific and sector-specific security obligations.
Modern engineering
- DevSecOps and platform engineering.
- Infrastructure as Code and automation.
- CI/CD, source control and secure release management.
- Operational readiness and secure service transition.
- Requirements, Constraints, Assumptions and Risks documentation.
-
Architecture decision records, control mappings and service blueprints., Equivalent practical experience will be considered in place of formal certification. What success looks like In this role, you will:
- Establish clear architectural direction for standalone and integrated security products, and services.
- Improve the consistency and reuse of security patterns and standards.
- Strengthen security assurance and technical governance.
- Reduce design ambiguity, delivery rework and operational risk.
- Enable engineering teams through clear guidance and architectural guardrails.
- Improve the repeatability, supportability and operational readiness of security services.
- Help shape commercially viable security roadmaps.
- Build confidence with customers and internal stakeholders through clear, pragmatic advice.
- Develop security architecture and engineering capability through mentoring and knowledge sharing.
Requirements
You will be an experienced security professional who can operate independently as a trusted architectural authority. You will be comfortable making decisions in complex or ambiguous situations and escalating significant risks or cross-domain issues when wider input is required. You will combine deep technical security knowledge with strong commercial awareness, stakeholder engagement and an understanding of how services must be delivered and supported within a managed service environment.
Skills and behaviours You will demonstrate:
- Strong security architecture judgement and technical authority.
- Structured architectural thinking and risk-based decision-making.
- The ability to turn complex customer, business and regulatory requirements into practical designs.
- A pragmatic approach that balances security, risk, supportability, cost and customer value.
- Strong communication, facilitation and influencing skills.
- The confidence to challenge constructively and make clear recommendations.
- The ability to produce concise, high-quality architecture and security documentation.
- Comfortable getting hands on with technology and AI.
- A collaborative, outcome-focused approach to problem-solving.
- The ability to mentor and guide engineering, architecture and operational teams., Relevant certifications are desirable and may include:
- Security clearance desirable.
- CISSP, CCSP or CISM.
- Microsoft security certifications.
- AWS security certifications.
- VMware security certifications.
- TOGAF or another recognised architecture qualification.
- ITIL or an equivalent service-management qualification.
- DevOps, automation, platform engineering or Infrastructure as Code certifications.
About the company
Redcentric is looking for an experienced Security Architect to shape, design and assure secure customer solutions and security-enabled services across our managed service portfolio.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
What Are The Top Skills Required For Azure Developers?
The 12 Best Jobs for Software Engineers
Is Software Engineering Over-Saturated?
Why Upskilling And Reskilling is Important For Developers