Security Architect positions focus on delivering results in their domain. This page aggregates open Security Architect roles and what employers typically expect.
# ABOUT THE ROLE **Salary -** £62,900.00 - £100,000.00 **Contract type -** Permanent **Working pattern -** The Partnership has adopted a hybrid working approach, meaning you'll be able to work a mixture between the London head office and home based upon your personal needs whilst balancing the needs of the business. The John Lewis Partnership (JLP) continually invests in its security capabilities, recognizing the trust our customers place in our brand and the information they provide to us. The Partnership is accelerating the use of data and insight to enhance the experience and relevance our Partners and technology systems provide to our customers. Working as an integrated team member or as an advisor to service and domain teams, this role is responsible for designing security solutions, patterns, and blueprints across our data, platforms, cloud, and network capabilities to support our strategic intent within an ever-changing threat landscape. ## **Key Responsibilities** - **Design End-to-End Security Solutions:** Create effective, efficient, repeatable, and sustainable security solutions and patterns across cloud platforms (AWS, GCP) and traditional hosting environments to make a tangible difference to business security. - **Embed Best Practice & Reduce Risk:** Ensure security architecture best practices are brought to bear during solution design activities undertaken by delivery teams and third parties to reduce delivery cost, operational risk, and technical debt. - **Democratize Secure Delivery:** Enable architects and engineers across the enterprise through clear design principles, patterns, blueprints, and guardrails to help scale and democratize secure delivery. - **Provide Commercial & Contractual Counsel:** Advise and consult on the commercial and contractual implications of existing or new obligations, specifically reviewing contractual terms of technologies and business services being procured within your domain. - **Drive Cross-Functional Collaboration:** Partner closely with the CISO function, architecture, and engineering teams to ensure security capabilities bring intended value, actively optimizing opportunities through solution evangelism**.** - **Monitor & Advise on Industry Trends:** Stay up-to-date with shifts in technology, retail, and socio-economic trends, influencing internal technology and business decisions to support JLP's long-term strategic aims. ## **Essential skills/experience you’ll need** - **Modern Security Architecture Expertise:** Extensive experience taking roadmap intent and combining it with good practice with business context and strong stakeholder engagement to define clear, outcome-focused solutions. - **Agile & Technical Architecture Delivery:** An adaptable, engineering-focused mindset with proven experience working across multiple service and domain teams through Agile and domain-based delivery models. - **Core Security Frameworks & Methodologies**: Practical experience facilitating threat modeling workshops, working within DevSecOps/SecOps environments, applying Zero Trust philosophies, and utilizing the NIST Cybersecurity Framework. - **Hybrid-Cloud & Infrastructure Knowledge:** Expert knowledge of securing data and workloads across Google Cloud/Workspace, Amazon Web Services, Zscaler, and commodity SaaS applications. - **Critical Influence & Leadership:** Proven ability to empower and influence others to make decisions, resolve challenges, and deliver outcomes that line up with the overarching business strategy. - **Emerging Tech & Threat Awareness:** A strong understanding of attacker tools, techniques, and procedures (alongside pragmatic mitigations) and practical experience securing AI/LLM deployments. ## **Desirable skills/experience you may have** - **Advanced Architecture Frameworks:** Experience designing SOC architectures (SIEM, SOAR, vulnerability management) and defining secure development lifecycles (SDLC). - **Regulated Environments & Evaluation:** Experience working…