Security Architect - Zero Trust & Access Controls in Bath
Security Architect - Zero Trust & Access Controls

Security Architect - Zero Trust & Access Controls in Bath

Bath Full-Time 48000 - 72000 £ / year (est.) No home office possible
Go Premium
H

At a Glance

  • Tasks: Lead the development of secure identity solutions and drive zero-trust architecture.
  • Company: Join the UK's number 1 investment platform, Hargreaves Lansdown.
  • Benefits: Enjoy flexible working, competitive salary, and a range of health benefits.
  • Why this job: Shape the future of digital security in a dynamic financial services environment.
  • Qualifications: Experience in security architecture and IAM solutions is essential.
  • Other info: Be part of a diverse team with excellent career growth opportunities.

The predicted salary is between 48000 - 72000 £ per year.

We are seeking an experienced Security Architect - Zero Trust & Access Controls to join our rapidly evolving financial services organisation. This role will be instrumental in shaping and securing our digital future as we undergo significant transformation across our technology landscape.

The position will focus primarily on securing customer interactions and fraud prevention while championing security-by-design principles across our product development lifecycle. You will be required to have a strategic input into enterprise IAM security architecture, with a direct influence on the security posture of our customer-facing services. Additionally, you will provide mentorship and guidance to our security architects, product security specialists and product development teams.

What you'll be doing

  • Strategic Leadership
    • Lead the development and evolution of enterprise IAM frameworks and patterns for customer-facing (Client) and workforce (Colleague) identity solutions across on-premises, colocation, SaaS, AWS, and Azure environments.
    • Drive zero-trust architecture adoption and security-by-design principles across all product development and engineering initiatives.
    • Provide thought leadership in cloud IAM, federated identity, privileged access management, and identity governance for hybrid multi-cloud environments.
  • Architecture & Design
    • Design and oversee robust IAM architectures spanning:
    • On-premises: Active Directory, AD FS, RADIUS/LDAP integrations.
    • Colocation: Hybrid identity sync, network-level authentication.
    • SaaS: Okta, Ping Identity, Auth0, Azure AD B2C.
    • AWS: IAM, Identity Center, Organizations, Cognito, Secrets Manager.
    • Azure: Entra ID, Conditional Access, PIM, Key Vault, Managed Identities.
  • Develop reference architectures for OAuth 2.0, OIDC, SAML 2.0, FIDO2/WebAuthn, and passwordless authentication flows.
  • Review and approve identity designs for critical systems including API security, service-to-service authentication, and customer authentication journeys.
  • Establish controls for identity lifecycle, access governance, JIT/JEA access, and privileged account management.
  • Digital Transformation
    • Align IAM architecture with agile delivery, DevSecOps practices, and infrastructure-as-code approaches.
    • Design identity controls enabling risk-based authentication, adaptive MFA, and continuous authorisation.
    • Develop migration strategies from legacy IAM systems to modern cloud-native platforms.
  • Governance & Risk Management
    • Participate in security governance forums, design authority and architecture review boards.
    • Conduct IAM assessments, access reviews, segregation of duties analysis, and privilege escalation risk reviews.
    • Ensure regulatory compliance (GDPR, PSD2, DORA) through identity controls and access certification.
  • About you

    • Extensive experience in security architecture with deep IAM, preferably within the Financial Services Industry.
    • Proven experience in designing and implementing IAM solutions.
    • Deep understanding of cloud security architecture and control (AWS, Azure).
    • Experience with modern authentication protocols (OAuth 2.0, OIDC, SAML) and fraud prevention technologies.
    • Extensive knowledge and expertise on securing mobile apps, API transactions and system integrations with optimal combination of security capabilities.
    • Knowledge of application cryptography, PKI infrastructure and use of mobile TEE.
    • Strong communication and stakeholder management skills, with the ability to translate complex technical concepts for non-technical audiences.
    • Able to work under pressure in a fast paced, transformation-focused environment.
    • Bachelor's degree in computer science, Information Security, or related field.
    • Relevant certifications (highly desirable): Certified Professional - Ping*, CyberArk Sentry - Any, Certified Identity and Access Manager (CIAM), AWS Certified Security Specialty, Microsoft Certified: Security, Compliance, and Identity Fundamentals (SC-900), Microsoft Certified: Identity and Access Administrator Associate (SC-300).

    Interview process

    This will be a 2-stage interview process, consisting of an intro call, competency and behavioural based interview with technical assessment.

    Working Schedule

    We are based in Bristol, BS1 5HL. This role is permanent, full time, 37.5 hours per week, Monday to Friday. We have returned to the office, however for this role we offer a hybrid flexible working pattern to enable you the option of working from home.

    Why us?

    Here at HL, we're the UK's number 1 investment platform for private investors, based in Bristol. For more than 40 years we've helped investors save time, tax and money on their investments. To achieve our mission, we believe we have a workplace like no other, with constant learning, dynamic teams, and a great ethos. We're steered by core values that promote service, quality, innovation, and opportunity in everything we do.

    What's on offer?

    • Discretionary annual bonus* and annual pay review
    • 25 days* holiday plus bank holidays and 1-day additional Christmas closure
    • Option to purchase an additional 5 days holiday**
    • Flexible working options available, including hybrid working
    • Enhanced parental leave
    • Pension scheme up to 11% employer contribution
    • Income Protection and Life insurance (4 x salary core level of cover)
    • Private medical insurance*
    • Health care cash plans - including optical, dental, and outpatient care
    • Health screening programme
    • Help@hand - confidential support including mental health counselling and remote GP
    • Wellhub - unlimited access to fitness providers and wellness coach sessions
    • Variety of travel to work schemes with bike storage and shower facilities
    • Inhouse barista and deli serving subsidised coffee and sandwiches
    • Two paid volunteering days per year

    *dependant on role level

    ** only available to select during our annual benefits window, in November each year

    Hargreaves Lansdown is an inclusive employer that values diversity in its workforce. We encourage applications from all individuals without regard to race, religion, gender, sexual orientation, national origin, disability or age. This role may also be available on a flexible working or part time basis - please ask the Recruitment & Onboarding team for more information. Please note, we are unable to provide employment sponsorship to candidates.

    Security Architect - Zero Trust & Access Controls in Bath employer: Hargreaves Lansdown

    Hargreaves Lansdown is an exceptional employer, offering a dynamic work culture that fosters continuous learning and innovation in the heart of Bristol. With a strong commitment to employee growth, we provide extensive benefits including flexible working options, generous holiday allowances, and comprehensive health support, ensuring our team members thrive both personally and professionally. Join us to be part of a leading financial services organisation where your contributions directly shape our digital future and enhance customer security.
    H

    Contact Detail:

    Hargreaves Lansdown Recruiting Team

    StudySmarter Expert Advice 🤫

    We think this is how you could land Security Architect - Zero Trust & Access Controls in Bath

    ✨Tip Number 1

    Network like a pro! Reach out to folks in the industry, attend meetups, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.

    ✨Tip Number 2

    Prepare for those interviews! Research the company, understand their security architecture needs, and be ready to discuss how your experience aligns with their goals. Practise common interview questions and have your own questions ready to show your interest.

    ✨Tip Number 3

    Showcase your expertise! Create a portfolio or a blog where you share insights on IAM solutions, zero-trust architecture, or any relevant projects you've worked on. This not only demonstrates your knowledge but also sets you apart from other candidates.

    ✨Tip Number 4

    Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining our team at Hargreaves Lansdown.

    We think you need these skills to ace Security Architect - Zero Trust & Access Controls in Bath

    Security Architecture
    Identity and Access Management (IAM)
    Zero Trust Architecture
    Cloud Security (AWS, Azure)
    Modern Authentication Protocols (OAuth 2.0, OIDC, SAML)
    Fraud Prevention Technologies
    API Security
    Mobile Application Security
    Stakeholder Management
    Regulatory Compliance (GDPR, PSD2, DORA)
    Agile Delivery
    DevSecOps Practices
    Infrastructure as Code
    Mentorship and Guidance

    Some tips for your application 🫡

    Tailor Your CV: Make sure your CV is tailored to the Security Architect role. Highlight your experience with IAM frameworks, cloud security, and any relevant certifications. We want to see how your skills align with our needs!

    Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about security architecture and how you can contribute to our mission. Keep it concise but impactful – we love a good story!

    Showcase Your Technical Skills: Don’t forget to mention your expertise in modern authentication protocols and fraud prevention technologies. We’re looking for someone who can hit the ground running, so make sure we know what you bring to the table!

    Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way to ensure your application gets into the right hands. Plus, it shows us you’re serious about joining our team!

    How to prepare for a job interview at Hargreaves Lansdown

    ✨Know Your IAM Inside Out

    Make sure you brush up on your knowledge of Identity and Access Management (IAM) frameworks. Be ready to discuss your experience with various IAM solutions, especially in the context of financial services. Highlight specific projects where you've implemented security-by-design principles.

    ✨Showcase Your Cloud Security Savvy

    Since this role involves cloud environments like AWS and Azure, be prepared to talk about your experience with cloud security architecture. Discuss any relevant certifications you hold and how they relate to the job. Real-world examples of how you've tackled cloud security challenges will impress the interviewers.

    ✨Demonstrate Strategic Thinking

    This position requires strategic input into IAM security architecture. Prepare to share your thoughts on zero-trust architecture and how it can be applied in a financial services context. Think about how you would align IAM architecture with agile delivery and DevSecOps practices.

    ✨Communicate Clearly and Confidently

    Strong communication skills are essential for this role. Practice explaining complex technical concepts in simple terms, as you'll need to engage with non-technical stakeholders. Use examples from your past experiences to illustrate your points and show how you can bridge the gap between technical and non-technical teams.

    Security Architect - Zero Trust & Access Controls in Bath
    Hargreaves Lansdown
    Location: Bath
    Go Premium

    Land your dream job quicker with Premium

    You’re marked as a top applicant with our partner companies
    Individual CV and cover letter feedback including tailoring to specific job roles
    Be among the first applications for new jobs with our AI application
    1:1 support and career advice from our career coaches
    Go Premium

    Money-back if you don't land a job in 6-months

    H
    • Security Architect - Zero Trust & Access Controls in Bath

      Bath
      Full-Time
      48000 - 72000 £ / year (est.)
    • H

      Hargreaves Lansdown

      1000+
    Similar positions in other companies
    UK’s top job board for Gen Z
    discover-jobs-cta
    Discover now
    >