At a Glance
- Tasks: Design secure architectures for cloud and AI systems, focusing on GCP and emerging technologies.
- Company: Leading tech firm dedicated to innovative security solutions.
- Benefits: Competitive salary, flexible working options, and opportunities for professional growth.
- Other info: Dynamic work environment with mentorship opportunities and career advancement.
- Why this job: Join a cutting-edge team shaping the future of cloud and AI security.
- Qualifications: 5+ years in security roles, strong knowledge of compliance frameworks, and GCP expertise.
The predicted salary is between 80000 - 100000 € per year.
Requirements
- Security‑first mindset — this role is primarily for a Security Architect, not a general cloud architect
- 5+ years’ experience in information security, cloud security and architecture roles
- Strong knowledge of security governance, risk and compliance frameworks (ISO 27001, NIST CSF/800‑53, NIS2, DORA)
- Strong communication skills and ability to work with senior stakeholders
- Experience mentoring teams or influencing security decisions
- Cloud‑native architecture design (GCP‑focused)
- Deep hands‑on experience with GCP security services and GCP security best practices
- Experience architecting secure multi‑project setups and identity boundaries
- Experience designing security for agent‑based AI systems and LLM‑integrated applications
- Hands‑on experience with AI/LLM security controls (prompt security, model governance, secure APIs, orchestration security)
- AI‑specific threat modelling expertise
- Strong cloud security background across AWS/Azure/GCP
- Experience in secure design of:
- IAM
- Zero Trust
- Network segmentation
- Data protection and encryption
- Application and API security
- Knowledge of SIEM, IAM, CASB, container/Kubernetes security
- Experience in Vibe coding, as well as technologies experience similar to Openclaw and Ollama
- One or more of: CISA, CRISC, CISM, CISSP (required)
- Eligible to obtain UK SC clearance
- Right to work in the UK
What the job involves
- As a Security Architect, you will play a key role in designing and delivering secure, scalable, and compliant architectures for our clients, with a particular focus on Google Cloud Platform (GCP) and emerging Agentic AI systems.
Security Architecture
- Translate business, data protection and security requirements into practical architectural designs leveraging industry frameworks (NIST, ISO 27001, CIS)
- Design and maintain cloud‑native security architectures, with deep expertise in GCP architecture, security services, and secure workload design
- Establish secure architectural patterns and standards across cloud platforms, with specific focus on GCP IAM, VPC Service Controls, Cloud Armor, Confidential Computing, and secure workload segmentation
- Develop security design documentation, diagrams, and rationale aligned with business and compliance requirements
- Apply risk‑based and threat‑based approaches to recommend secure and proportionate solutions
Agentic AI & LLM Security Architecture
- Designing security architectures for agent‑based AI systems, including orchestration frameworks, tool‑use agents, and multi‑agent workflows
- Implementing AI/LLM security controls across:
- Model security (input/output filtering, model guardrails)
- Prompt security, adversarial prompt defense, prompt isolation
- API & orchestration security, including secure agent tool use
- Data security for vector stores, embeddings, and retrieval services
- Performing AI‑specific threat modelling, including:
- Model extraction & poisoning
- Hallucination‑driven risk
- Sensitive data leakage
- Toxic output & jailbreak attempts
- Advising on secure integration of AI with cloud environments, focusing on compliant, privacy‑aware design
Risk & Threat Management
- Conduct comprehensive risk assessments and threat modelling for cloud and AI systems
- Support incident response, including issues involving AI‑driven systems and automated agents
- Provide actionable mitigation strategies for cloud and AI threats
Stakeholder Engagement & Technical Leadership
- Provide expert guidance to clients, presenting complex cloud and AI security concepts to technical and non‑technical partners
- Mentor teams on secure cloud design, AI security, and modern architecture practices
- Participate in pre‑sales and contribute to delivery collateral
Security Policy, Standards & Governance
- Develop and implement cloud and AI security policies and standards
- Support compliance assessments and audits, including cloud‑specific controls and emerging AI regulatory frameworks
- Ensure alignment to governance standards such as ISO 27001, NIST 800‑53/CSF, NIS2, DORA, and industry cloud security benchmarks
Technology Evaluation & Continuous Improvement
- Conduct cloud and AI security architecture reviews, including:
- Cloud configuration reviews
- GCP security posture assessments
- AI pipeline hardening
- Evaluate and recommend security technologies for cloud, AI, identity, and data protection
- Stay up to date with new threats, especially in LLM, agentic AI, and GCP contexts
Security Architect in Birmingham employer: Deepstreamtech
As a leading employer in the tech industry, we pride ourselves on fostering a security-first culture that empowers our Security Architects to innovate and excel. With a strong focus on employee growth, we offer extensive training opportunities and mentorship programmes, ensuring our team stays at the forefront of cloud and AI security advancements. Located in a vibrant tech hub, we provide a collaborative work environment that values diversity and encourages creative problem-solving, making it an ideal place for professionals seeking meaningful and rewarding careers.
StudySmarter Expert Advice🤫
We think this is how you could land Security Architect in Birmingham
✨Tip Number 1
Network like a pro! Attend industry meetups, webinars, and conferences related to security architecture. It's a great way to meet potential employers and get your name out there.
✨Tip Number 2
Show off your skills! Create a portfolio showcasing your past projects, especially those involving GCP and AI security. This will give you an edge when chatting with hiring managers.
✨Tip Number 3
Practice your pitch! Be ready to explain complex security concepts in simple terms. This will help you connect with both technical and non-technical stakeholders during interviews.
✨Tip Number 4
Don’t forget to apply through our website! We’re always on the lookout for talented Security Architects, and applying directly can give you a better chance of landing that dream job.
We think you need these skills to ace Security Architect in Birmingham
Some tips for your application 🫡
Show Your Security Mindset:Make sure to highlight your security-first mindset in your application. We want to see how your experience aligns with the specific requirements of a Security Architect, so don’t hold back on showcasing your knowledge of security governance and compliance frameworks.
Tailor Your Experience:When detailing your experience, focus on your hands-on work with GCP security services and cloud-native architecture design. We love seeing real examples of how you've tackled security challenges, especially in relation to AI systems and multi-project setups.
Communicate Clearly:Strong communication skills are key for this role. Make sure your application reflects your ability to convey complex security concepts to both technical and non-technical stakeholders. We appreciate clarity and conciseness!
Apply Through Our Website:We encourage you to apply through our website for the best chance of getting noticed. It’s the easiest way for us to keep track of your application and ensure it reaches the right people. Don’t miss out!
How to prepare for a job interview at Deepstreamtech
✨Know Your Security Frameworks
Make sure you brush up on your knowledge of security governance, risk, and compliance frameworks like ISO 27001 and NIST CSF. Be ready to discuss how you've applied these in past roles, especially in relation to cloud security and architecture.
✨Showcase Your GCP Expertise
Since this role focuses on Google Cloud Platform, highlight your hands-on experience with GCP security services. Prepare examples of secure multi-project setups you've designed and how you've implemented best practices in GCP.
✨Communicate Clearly with Stakeholders
Strong communication skills are key for this position. Practice explaining complex security concepts in simple terms, as you'll need to engage with both technical and non-technical stakeholders. Think about how you've influenced security decisions in the past.
✨Prepare for AI-Specific Security Challenges
Given the focus on agent-based AI systems, be ready to discuss your experience with AI/LLM security controls. Familiarise yourself with threat modelling specific to AI, such as model extraction and prompt security, and be prepared to share your insights on these topics.