Senior Security Architect
Anson McCade · London Area, United Kingdom
Apply & track with Apply EdgeWe’re looking for an experienced Security Architect to lead the design and delivery of secure, resilient technology across platforms, applications and cloud services.This is a hands-on leadership role where you’ll work closely with Agile engineering and delivery teams to embed security throughout the software development lifecycle — from initial architecture and design through to implementation and ongoing operation.You’ll bring a pragmatic approach to security, balancing risk, cost, usability and business requirements, while helping teams adopt modern security practices and technologies.What you’ll be doingLead the security architecture and secure design of cloud services, platforms and applications.Identify vulnerabilities and security risks within system designs and recommend pragmatic, proportionate mitigations.Embed DevSecOps, Continuous Security, CI/CD and secure software development practices across delivery teams.Work across areas including Cloud Security, AI/ML, Data, M365 and Security Architecture.Apply recognised security frameworks, standards and regulations including NCSC, NIST, ISO 27001, PCI DSS and GDPR.Assess application, infrastructure and platform architectures to identify security weaknesses and opportunities for improvement.Perform and support security testing across software, infrastructure and cloud environments.Apply strong knowledge of network security, TCP/IP, OSI, OWASP, PKI, TLS and cryptographic controls.Work closely with engineers, architects, product teams and senior stakeholders to build security into delivery from the outset.Lead, coach and mentor security engineers and junior team members, supporting their technical and professional development.Share security knowledge and best practice with both technical teams and clients.Help drive innovation by evaluating and applying new security technologies, methodologies and approaches.What we’re looking forYou’ll have a strong background in Security Architecture, Cloud Security or secure technology delivery, with experience designing and implementing security across modern technology environments.You’ll ideally bring:Proven experience delivering secure cloud services and solutions.Strong understanding of security architecture, threat identification and risk mitigation.Experience across at least one of AI/ML, Cloud, Security Architecture, M365 or Data.Strong knowledge of NCSC, NIST, ISO, PCI DSS and GDPR.Background in application architecture, software development and/or infrastructure architecture.Hands-on experience with security testing and vulnerability assessment.Practical understanding of DevSecOps, CI/CD and Continuous Security.Strong knowledge of network security, OWASP, PKI, TLS and cryptographic controls.Experience managing, coaching or mentoring technical professionals.Excellent communication skills, with the ability to translate complex security concepts for both technical and non-technical audiences.A pragmatic mindset and the ability to balance security, usability, cost and business risk.Desirable experienceIdentity and Access Management (IAM), authentication and authorisation.Governance, Risk and Compliance (GRC).Operational security and security operations.Supply chain security and third-party risk.Secure user management.Penetration testing qualifications such as OSCP, CREST, TIGER or equivalent.Experience leading Security Engineers, Architects or junior security professionals.