Senior Security Architect
Role details
Job location
Tech stack
Job description
The role of the Senior Security Architect demands business insight; technical acuity; and the ability to think, communicate and write at various levels of abstraction. A formal information security architecture process is one of the key enablers of a security programme. It is the planning process that provides the models, templates and principles that are used to design, implement and operate information security solutions. It enables consistency, leverage and reuse to satisfy the business requirements for security services in an optimum manner.
You will
- Lead the design and assurance of security architectures across digital, cloud and data-driven solutions, ensuring they follow best practice, comply with regulations and meet organisational security standards.
- Facilitate and guide threat-modelling activities-such as identifying risks, attack paths and mitigations-so that security is embedded early in every solution
- Ensure consistent and comprehensive application of security controls across the business unit, governing reusable patterns, principles and reference architectures
- Work collaboratively with architecture, engineering and delivery teams to integrate security into agile and traditional delivery models, including support for DevSecOps and automated security testing.
- Provide end-to-end ownership of SSEN Distribution security architecture, including oversight of risks, controls, compliance and secure operations, ensuring alignment with frameworks such as NCSC, NIST and IEC 62443
Requirements
- Proven experience designing and governing security architectures in complex or regulated enterprise environments, ideally covering cloud, identity, data, network and application security
- Strong understanding of cloud security [SaaS, PaaS, IaaS (including AWS, Azure) etc], including IAM, network protection, encryption, monitoring, zero-trust concepts and secure cloud-native design
- Hands-on experience with threat-modelling techniques and the ability to translate identified threats into meaningful, actionable technical controls.
- Practical knowledge of key regulatory and compliance frameworks including NIS, , with the ability to apply to solution design
- Relevant professional certifications (e.g., CISSP, CCSP, Azure Security Engineer, AWS Security Specialty) or equivalent experience that demonstrates deep security capability
Benefits & conditions
Pulled from the full job description
- Employee discount
- Gym membership
- Private medical insurance
- Cycle to work scheme
- Discounted gym membership
Full job description
Base Location: You'll be expected to spend 50% of your working week in one of the following locations : Glasgow, Perth, Reading, Havant
Salary: £59,800 - £89,800 + performance-related bonus and a range of benefits to support your finances, wellbeing and family.
Working Pattern: Permanent | Full Time | Flexible First options available, Enjoy discounts on private healthcare and gym memberships. Wellbeing benefits like a free online GP and 24/7 counselling service. Interest-free loans on tech and transport season tickets, or a new bike with our Cycle to Work scheme. As well as generous family entitlements such as maternity and adoption pay, and paternity leave.