Key Responsibilities
- Act as the Security Architect for new technology projects, assessing solution architectures and technical designs.
- Define and embed security requirements across applications, Azure and cloud services, infrastructure, SaaS, AI and third-party solutions.
- Conduct threat modelling, security risk assessments and design reviews, identifying risks and appropriate mitigations.
- Work with project teams, architects and suppliers to ensure security controls are incorporated throughout the delivery lifecycle.
- Support architecture governance, including Architecture Review Board and Design Review Board activities.
- Review third-party solutions and provide security guidance during procurement and onboarding.
- Ensure solutions align with security policies, ISO 27001, NIST and client security requirements.
- Develop security architecture patterns, standards and design guidance.
- Provide security consultancy to business and IT stakeholders throughout project delivery.
- Collaborate with Security Operations, GRC, IAM and Infrastructure teams to ensure new services can be securely managed and supported.
Key Experience
- Experience as a Security Architect, Solutions Architect, Technical Security Consultant or similar.
- Strong experience supporting technology projects and transformation programmes.
- Strong knowledge of Microsoft Azure, Microsoft 365 and Microsoft Entra ID.
- Knowledge of IAM, network and endpoint security, cloud security, data protection and Zero Trust architecture.
- Experience conducting threat modelling, security risk assessments and technical design reviews.
- Ability to translate security requirements into practical technical solutions.
- Experience working with third-party suppliers and SaaS providers.
- Strong stakeholder management and communication skills.