Architect - Security Solutions

Redcentric plc
UK
18 days ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours
Job source

Tech stack

Artificial Intelligence Amazon Web Services Microsoft Azure Backup Devices Cloud Computing Cloud Computing Security Cyber Security Continuous Integration Software Design Patterns DevOps Disaster Recovery High-Level Architecture
+15 more
Microsoft Security Essentials Network Segmentation Software Architecture Release Management Zero Trust Network Access Service Development Studio Security Information and Event Management Virtualization Technology Software Vulnerability Management Data Logging Togaf CIS Benchmarks Software Version Control Devsecops Vmware

Job description

This is a senior technical role with responsibility for the architectural integrity of security capabilities. You will ensure that security solutions and services are secure, scalable, supportable, auditable and commercially viable, while aligning them with Redcentric’s product strategy, service catalogue, governance model and customer outcomes.

Working across Product Management, Product Engineering, Security, Assurance, Delivery, Operations, Service Management and Architecture, you will translate customer, business, regulatory and operational requirements into clear architectures, reusable security patterns, control recommendations, risk statements and technical roadmaps.

You will act as a trusted security authority, providing pragmatic architectural leadership while helping Redcentric develop consistent, repeatable and operationally effective managed security services., Security architecture and design authority

  • Own the architectural direction and target-state design of assigned security products, services and platforms.
  • Define security architecture principles, standards, reference designs and reusable patterns.
  • Translate customer, product, regulatory, operational and commercial requirements into practical security architectures.
  • Produce high-quality architectural documentation, including high-level designs, decision records, threat models, control mappings, risk statements and service blueprints.
  • Approve, challenge or reject security designs within agreed governance boundaries.
  • Identify and escalate control gaps, architectural risks, dependencies, constraints and design exceptions.
  • Maintain consistency across customer solutions, product capabilities and managed service operating models.

Governance and assurance

  • Lead security architecture reviews and contribute to technical design authorities and governance forums.
  • Assess designs for security, resilience, supportability, auditability, commercial viability and operational readiness.
  • Apply risk-based judgement when balancing security requirements, customer outcomes, delivery effort and service quality.
  • Coordinate architectural decisions across cloud, identity, connectivity, hosting, workplace, infrastructure and operational security domains.
  • Support compliance with relevant security frameworks, regulatory requirements and customer obligations.
  • Provide clear, evidence-based recommendations to technical and non-technical stakeholders.

Product and service development

  • Work with Product Management and Product Engineering to shape repeatable security products and managed service capabilities.
  • Contribute to product roadmaps, platform selection, lifecycle planning, investment cases and build-versus-buy decisions.
  • Improve the automation, repeatability, resilience and operational effectiveness of security services.
  • Define monitoring, logging, incident response, evidence capture and operational control requirements.
  • Ensure that new and changed services can be transitioned effectively into SOC, MDR, service desk and operational teams.
  • Evaluate relevant suppliers, technologies and market developments.

Stakeholder and customer engagement

  • Lead or support customer workshops, solution reviews, technical briefings, due diligence and transition planning.
  • Support pre-sales, bids and proposals by shaping security requirements and validating solution approaches.
  • Communicate architectural decisions, risks, assumptions and trade-offs clearly.
  • Work effectively with customers, suppliers, sales, pre-sales, engineering, delivery, operations and assurance teams.
  • Influence outcomes without relying on direct authority.

Technical leadership

  • Provide clear implementation guardrails and design intent to engineering and delivery teams.
  • Mentor engineers, architects and security colleagues through design reviews, documentation and knowledge sharing.
  • Contribute to technical communities of practice and the development of Redcentric’s architecture capability.
  • Promote reusable design patterns, consistent standards and continuous improvement., We are particularly interested in candidates with experience in several of the following areas:
  • Security architecture, cloud security, security engineering or senior security consultancy.
  • Working within an MSP, MSSP, telecommunications provider, cloud provider, systems integrator or complex enterprise.
  • Designing and assuring security across identity, networks, endpoints, cloud infrastructure, virtualisation and data protection.
  • Defining architectures for security monitoring, vulnerability management, privileged access and incident response.
  • Producing high-level designs, reference architectures, decision records, threat models and implementation guidance.
  • Leading security design reviews or participating in architecture governance and technical design authorities.
  • Supporting product strategy, service development, lifecycle planning and technical roadmaps.
  • Working in regulated, public sector or critical service environments where auditability, resilience and evidence are important.
  • Supporting customer workshops, pre-sales activities, bids or supplier assessments.
  • Automation, scripting, Infrastructure as Code or repeatable security deployment practices.
  • DevSecOps or AI-enabled security operations.

Technical knowledge Relevant knowledge may include: Security operations and platforms

  • SOC, SIEM and SOAR.
  • EDR, NDR and XDR.
  • Vulnerability and attack-surface management.
  • Privileged Access Management.
  • SASE and Security Service Edge.
  • Cloud security posture management.
  • Logging, monitoring, incident response and evidence capture.

Cloud, identity and infrastructure security

  • Zero Trust architecture and identity security.
  • Privileged access and delegated administration.
  • Network segmentation and endpoint protection.
  • Secure configuration and security guardrails.
  • Data protection, backup and resilience.
  • Azure, AWS and VMware security patterns.
  • Cloud-native security and observability.

Governance, risk and compliance

  • Risk assessment and threat modelling.
  • Cyber resilience and disaster recovery.
  • Supplier and technology security assurance.
  • Security control ownership and operational responsibilities.
  • Telecommunications Security Act requirements.
  • NCSC guidance and the Cyber Assessment Framework.
  • ISO 27001, Cyber Essentials Plus, CIS Controls and NIST Cybersecurity Framework.
  • Customer-specific and sector-specific security obligations.

Modern engineering

  • DevSecOps and platform engineering.
  • Infrastructure as Code and automation.
  • CI/CD, source control and secure release management.
  • Operational readiness and secure service transition.
  • Requirements, Constraints, Assumptions and Risks documentation.
  • Architecture decision records, control mappings and service blueprints., Equivalent practical experience will be considered in place of formal certification. What success looks like In this role, you will:

  • Establish clear architectural direction for standalone and integrated security products, and services.
  • Improve the consistency and reuse of security patterns and standards.
  • Strengthen security assurance and technical governance.
  • Reduce design ambiguity, delivery rework and operational risk.
  • Enable engineering teams through clear guidance and architectural guardrails.
  • Improve the repeatability, supportability and operational readiness of security services.
  • Help shape commercially viable security roadmaps.
  • Build confidence with customers and internal stakeholders through clear, pragmatic advice.
  • Develop security architecture and engineering capability through mentoring and knowledge sharing.

Requirements

You will be an experienced security professional who can operate independently as a trusted architectural authority. You will be comfortable making decisions in complex or ambiguous situations and escalating significant risks or cross-domain issues when wider input is required. You will combine deep technical security knowledge with strong commercial awareness, stakeholder engagement and an understanding of how services must be delivered and supported within a managed service environment.

Skills and behaviours You will demonstrate:

  • Strong security architecture judgement and technical authority.
  • Structured architectural thinking and risk-based decision-making.
  • The ability to turn complex customer, business and regulatory requirements into practical designs.
  • A pragmatic approach that balances security, risk, supportability, cost and customer value.
  • Strong communication, facilitation and influencing skills.
  • The confidence to challenge constructively and make clear recommendations.
  • The ability to produce concise, high-quality architecture and security documentation.
  • Comfortable getting hands on with technology and AI.
  • A collaborative, outcome-focused approach to problem-solving.
  • The ability to mentor and guide engineering, architecture and operational teams., Relevant certifications are desirable and may include:
  • Security clearance desirable.
  • CISSP, CCSP or CISM.
  • Microsoft security certifications.
  • AWS security certifications.
  • VMware security certifications.
  • TOGAF or another recognised architecture qualification.
  • ITIL or an equivalent service-management qualification.
  • DevOps, automation, platform engineering or Infrastructure as Code certifications.

About the company

Redcentric is looking for an experienced Security Architect to shape, design and assure secure customer solutions and security-enabled services across our managed service portfolio.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:24 min

Evaluating formal AWS certifications versus raw practical engineering experience

Jan Giacomelli · LIVE

1:40 min

Managing containerized infrastructure with Podman Desktop

Cedric Clyburn Cedric Clyburn +1 · World Congress 2025

1:22 min

Analyzing differences between mobile and traditional backend DevOps

Mete Baydar Mete Baydar · World Congress 2025

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:41 min

Parallels between cloud and legacy infrastructure lock-ins

Björn Stahl Björn Stahl · World Congress 2024

3:27 min

Defining DevOps through its historical origins and foundational texts

Sonal Patil · LIVE

Videos

See all

Related articles

See all