Principal Security Architect in London

Principal Security Architect in London

London Full-Time Home office (partial)
Artificial Labs

At a Glance

  • Tasks: Lead security architecture and ensure secure development practices across our innovative platform.
  • Company: Join a cutting-edge InsurTech company transforming the specialty insurance market.
  • Benefits: Enjoy private medical insurance, generous holiday allowance, and stock options.
  • Other info: Collaborative culture with opportunities for continuous learning and growth.
  • Why this job: Make a real impact on security in a fast-growing tech environment.
  • Qualifications: Experience in security architecture and cloud security is essential.

About Artificial

We’re building the next generation of technology for the specialty (re)insurance market. Our mission is to transform how brokers and carriers operate in complex markets by removing operational barriers and enabling smarter, faster decision-making. We use modern technology to solve real challenges for some of the world’s leading brokers and insurers. By automating the repetitive and structuring the complex, we help our partners unlock new opportunities for innovation and growth.

You’ll be joining a collaborative team that values curiosity, ownership, and continuous learning. We work in an environment where ideas are heard, support is built-in, and outcomes matter. Everyone here has the chance to make a tangible impact on our products, our customers, and the industry.

We've just raised $45M (£33M) in Series B funding from lead investor CommerzVentures, new investor Move Capital, as well as all existing shareholders. This investment round gives us the room to grow with confidence, continue to innovate, and ensure that Artificial remains the first choice for brokers and carriers seeking a smarter way to trade digitally.

Join us, and take the chance to be a part of something that will change the landscape of insurance for generations.

About the role

This is a senior technical security role for our product and platform. You'll set the standards and guardrails that shape how we build, and you'll spend a lot of your time working directly with engineers to help them build securely. We want someone who gets stuck in and helps teams solve problems, not someone who sits apart and signs things off. Security has to be designed into what we build, not added afterwards. You'll own our secure development standards, run threat modelling on the work that carries the most risk, and set the direction for how we handle cloud security, identity, vulnerability management and data protection. A big part of the job is lifting the security knowledge of the engineering and product teams so that sensible decisions get made in-team every day, without everything having to route through you.

You'll work across engineering, platform and the wider security team, and your focus will be the technical side of security across the whole product lifecycle, from how we design and build through to how we protect data and control access as we grow.

Responsibilities

  • Give engineers practical, hands-on security advice throughout the development lifecycle, so they can ship quickly and safely.
  • Own our secure development and secure coding standards, and coordinate penetration testing across the delivery lifecycle.
  • Run threat modelling on the highest-risk work, and set up the approach and training so teams can do their own.
  • Set the security standards and guardrails for our cloud environment, covering secure configuration, access and encryption, and support the people who put them into practice.
  • Decide how we judge vulnerability severity and remediation priority, and set the standards that engineering works to.
  • Design how we manage identity and privileged access, including strong authentication and controlled elevation of access.
  • Lead our approach to data security, including classification, keeping customer data properly separated, and choosing and rolling out data-loss-prevention tooling.
  • Bring deep security judgement to assessments of higher-risk suppliers.

About you

  • Plenty of experience in a senior or principal security architecture or application security role, ideally in a cloud-based software company that has grown quickly.
  • Strong hands-on cloud security background, covering secure configuration, access and identity, encryption, guardrails and security considerations for modern cloud and serverless architecture.
  • Solid grounding in secure software development, including threat modelling, secure coding, awareness of common application security risks such as the OWASP Top 10, automated security testing and running penetration tests.
  • Practical experience across vulnerability management, identity and privileged access, data security, and software supply-chain practices such as SBOMs.
  • A pragmatic approach that helps engineers move quickly, rather than slowing them down.
  • Clear communicator who can win over technical and non-technical colleagues and turn security risk into practical decisions.
  • Willing to explore where AI can strengthen how we build and secure our products, and pragmatic about applying it where it genuinely fits.

We especially want to hear from you if you have:

  • Worked in InsurTech, FinTech or another regulated industry.
  • Helped build a security function or set of practices from an early stage.
  • Built security into a modern engineering delivery setup.
  • Worked on software that serves many customers from shared infrastructure, and the data-separation questions that come with it.
  • Relevant certifications such as CISSP, CCSP or an AWS security qualification, though we care more about what you can do than what you hold.
  • Spent time training and coaching engineers on security.

Benefits

  • Private medical insurance.
  • Income protection insurance.
  • Life insurance of 4 * base salary.
  • On-site gym and shower facilities.
  • Enhanced maternity and paternity pay.
  • Team social events and company parties.
  • Salary exchange on pension and nursery fees.
  • Access to Maji, the financial wellbeing platform.
  • Company stock options managed through Ledgy.
  • Milestone Birthday Bonus and a Life Events leave policy.
  • Generous holiday allowance of 28 days plus national holidays.
  • Home office and equipment allowance, and a company MacBook.
  • Learning allowance and leave to attend conferences or take exams.
  • YuLife employee benefits, including EAP and bereavement helplines.
  • For each new hire, we plant a tree through our partnership with Ecologi Action.
  • The best coffee machine in London, handmade in Italy and imported just for us!

We’re proud to be an equal opportunities employer and are committed to building a team that reflects the diverse communities around us. If there’s anything you need to make the hiring process more accessible, just let us know—we’re happy to make adjustments. You’re also welcome to share your preferred pronouns with us at any point.

Think you don’t meet every requirement? Please apply anyway. We value potential as much as experience, and we know that raw talent counts.

As part of our hiring process, we’ll carry out some background checks. These may include a criminal record check, reviewing your credit history, speaking with previous employers and confirming your academic qualifications.

Principal Security Architect in London employer: Artificial Labs

At Artificial Labs, we pride ourselves on being an exceptional employer in the heart of Greater London, offering a dynamic work culture that fosters innovation and collaboration. Our commitment to employee growth is evident through tailored development programmes and mentorship opportunities, ensuring that our team members thrive in their careers while contributing to the exciting evolution of the specialty insurance market. With comprehensive benefits like private medical insurance and a generous holiday allowance, we provide a supportive environment where you can make a meaningful impact.

Artificial Labs

Contact Details:

Artificial Labs Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Principal Security Architect in London

Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Artificial Labs, love seeing candidates who actively engage in these challenges.

Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

Apply Directly Through Artificial Labs

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Artificial Labs. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace Principal Security Architect in London

Cloud Security
Secure Software Development
Threat Modelling
Secure Coding Standards
Vulnerability Management
Identity and Access Management
Data Security

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Artificial Labs insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Artificial Labs that you’re committed to staying ahead in the game.

How to prepare for a job interview at Artificial Labs

Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

Prepare for Scenario-Based Questions

Expect the interviewers at Artificial Labs to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Artificial Labs.

Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.