Negotiable
Undetermined
Undetermined
London Area, United Kingdom
Summary: The role of Security Architect focuses on leading the design and evolution of a cloud-first security architecture for UK and US operations, emphasizing AWS security, zero trust network design, and identity & access management. This strategic and hands-on position requires collaboration with various teams to integrate security into platforms and products. The architect will define security frameworks, implement secure baselines, and conduct threat modeling for new services. The position offers an opportunity to influence security architecture in a dynamic, cloud-native environment.
Key Responsibilities:
- Define and maintain cloud and enterprise security reference architecture
- Design secure-by-design patterns for AWS, containers, serverless, and third-party integrations
- Lead zero trust strategy (ZTNA, identity-driven access, micro-segmentation)
- Shape IAM roadmap (RBAC, adaptive authentication, passwordless, federation)
- Partner with engineering to implement secure baselines, IaC guardrails, and continuous compliance
- Provide architectural oversight across EDR, CSPM, CIEM, SIEM, and secrets management
- Conduct threat modelling for new products and services
- Support governance, standards, and architecture review processes
Key Skills:
- Deep experience designing secure AWS architectures (multi-account, IAM, VPC, KMS, Control Tower, landing zones)
- Strong knowledge of zero trust and identity-centric security models
- Experience in DevOps/IaC environments (Terraform, CloudFormation, CDK)
- Hands-on familiarity with modern cloud security tooling
- Knowledge of OAuth, OIDC, API security, mTLS
- Strong understanding of frameworks such as NIST, ISO 27001, CIS
- Ability to influence stakeholders and translate security into practical engineering patterns
- AWS Security Specialty / Solutions Architect Pro, CISSP, CCSP, or CISM (nice to have)
- Experience with passwordless or advanced identity capabilities (nice to have)
- Background in large-scale cloud transformation or regulated environments (nice to have)
Salary (Rate): undetermined
City: London Area
Country: United Kingdom
Working Arrangements: undetermined
IR35 Status: undetermined
Seniority Level: undetermined
Industry: IT
Security Architect (AWS | Zero Trust | IAM) We’re looking for an experienced Security Architect to lead the design and evolution of a modern, cloud-first security architecture across UK and US operations. This is a strategic and hands-on role focused on AWS security, zero trust network design, and modern identity & access management. You’ll work closely with cloud, infrastructure, and engineering teams to embed security by design across platforms, products, and integrations.
What You’ll Do
- Define and maintain cloud and enterprise security reference architecture
- Design secure-by-design patterns for AWS, containers, serverless, and third-party integrations
- Lead zero trust strategy (ZTNA, identity-driven access, micro-segmentation)
- Shape IAM roadmap (RBAC, adaptive authentication, passwordless, federation)
- Partner with engineering to implement secure baselines, IaC guardrails, and continuous compliance
- Provide architectural oversight across EDR, CSPM, CIEM, SIEM, and secrets management
- Conduct threat modelling for new products and services
- Support governance, standards, and architecture review processes
What You’ll Bring
- Deep experience designing secure AWS architectures (multi-account, IAM, VPC, KMS, Control Tower, landing zones)
- Strong knowledge of zero trust and identity-centric security models
- Experience in DevOps/IaC environments (Terraform, CloudFormation, CDK)
- Hands-on familiarity with modern cloud security tooling
- Knowledge of OAuth, OIDC, API security, mTLS
- Strong understanding of frameworks such as NIST, ISO 27001, CIS
- Ability to influence stakeholders and translate security into practical engineering patterns
- Nice to Have AWS Security Specialty / Solutions Architect Pro, CISSP, CCSP, or CISM
- Experience with passwordless or advanced identity capabilities
- Background in large-scale cloud transformation or regulated environments
This is an opportunity to shape security architecture in a fast-moving, cloud-native environment and drive secure innovation at scale.