At a Glance
- Tasks: Design and enhance security for our Snowflake data platform on Microsoft Azure.
- Company: Join Insight Investment, a leading asset manager with a collaborative culture.
- Benefits: Inclusive workplace, competitive salary, and opportunities for professional growth.
- Why this job: Make a real impact by securing data and shaping best practices in a dynamic environment.
- Qualifications: Experience with Snowflake, Azure security, and threat modelling required.
- Other info: Be part of a team that values curiosity, collaboration, and continuous improvement.
The predicted salary is between 36000 - 60000 £ per year.
Insight Investment is looking for a Security Architect to join the Data Platform team in Manchester. The role will focus on designing, implementing, and continuously enhancing the security of our Snowflake-based data platform hosted on Microsoft Azure. This role has been created to strengthen security-by-design principles throughout the platform’s development and delivery processes. Working collaboratively within the team, you will partner closely with engineers and fellow architects to proactively identify cyber threats, devise proportionate security controls, and see these measures through to practical implementation. Your efforts will be instrumental in ensuring our platform remains secure and compliant, while supporting efficient and frictionless delivery. This is a hands-on, delivery-oriented position, embedded within the wider Data Platform team. You will play a key part in shaping our secure system development practices, championing robust governance and regulatory compliance, and enabling trusted access to data for users across the organisation.
Role Responsibilities
- Design and implement security architecture for the Snowflake data platform on Microsoft Azure, encompassing data, identity, network, and platform controls, while embedding security into Snowflake workspaces and GitHub-backed repositories (secure branching, code reviews, pipelines, secrets management, and deployment patterns).
- Secure integrations with Sigma, Collibra, on-premises systems, other clouds/SaaS, and third-party vendors by ensuring connectivity, authentication, data exchange, and auditability.
- Lead threat modelling and hands-on security assessments for systems, data flows, integrations, and vendors; translate findings into actionable controls, prioritise remediation, and track closure.
- Implement and refine controls across IAM (Entra ID/Azure AD, Snowflake roles/RBAC), networking (private endpoints, firewall rules), encryption and key management (customer-managed keys, Key Vault), secrets management, monitoring, and logging, ensuring operability and observability (logs, alerts, dashboards), incident response, and post-incident learning.
- Define and embed reusable, automatable security patterns, guardrails, and reference architectures in CI/CD; enforce secure data lifecycle controls (ingestion, storage, processing, sharing, retention/deletion), including classification, masking, and least-privilege access.
- Work closely with the platform team and Internal Security to align on standards and enable secure delivery, contribute to Architecture Review Boards and technical risk management, and ensure compliance with legal, regulatory, industry, and enterprise standards, focusing on real risk reduction.
- Elevate the platform team’s security maturity and mindset in the process.
Experience Required
- Snowflake on Azure security: role/warehouse design, RBAC, masking/row-level controls, network policies, private connectivity, secure data sharing patterns.
- Azure security: identity (Entra ID), network isolation (VNets, Private Link), Key Vault / customer-managed keys, policy/blueprints, logging/monitoring.
- GitHub security & DevSecOps: protected branches, code owners, signed commits, secrets management, GitHub Actions hardening, SAST/secret scanning, supply-chain hygiene.
- Infrastructure-as-Code (e.g., Terraform) and pipeline-embedded controls (policy as code, automated checks, drift detection).
- Threat modelling & risk assessment skills; ability to turn threats into concrete, testable mitigations and track them to done.
- Zero Trust and principle of least-privilege mindset; strong grasp of enforcing role entitlement over data security (classification, tokenisation/masking, lineage, audit).
- Security observability: designing for logs, metrics and alerts that support detection, response and auditability.
- Working familiarity with industry frameworks (e.g., NIST CSF, CSA Cloud Controls) to communicate design rationale in governance forums.
- Clear, pragmatic communication to brief engineers, product, architects and ARB succinctly; documents decisions and residual risk.
Behaviours: collaborative, embedded, outcome-focused, balances speed and safety, takes ownership, learns from incidents, influences through expertise, consultative stakeholder style, curiosity, continuous improvement mindset, transparent about trade-offs and residual risk.
Insight is committed to being an inclusive employer and encourages applications from all suitably qualified applicants irrespective of background, circumstances, age, disability, gender identity, ethnicity, religion or belief and sexual orientation. If you are a candidate with a disability, or are assisting a candidate with a disability, and require an accommodation to apply for one of our jobs, please email us at TalentAcquisition@InsightInvestment.com.
About Insight Investment: Insight Investment is a leading asset manager focused on designing investment solutions to meet its clients’ needs. Founded in 2002, Insight’s collaborative approach has delivered both investment performance and growth in assets under management. Insight manages assets across its core liability-driven investment, risk management, full-spectrum fixed income, currency and absolute return capabilities. Insight has a global network of operations in the UK, Ireland, Germany, US, Japan and Australia. More information about Insight Investment can be found at: www.insightinvestment.com.
Security Architect - Data Platform (Manchester) employer: Insight Investment Group
Contact Detail:
Insight Investment Group Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Security Architect - Data Platform (Manchester)
✨Tip Number 1
Network like a pro! Reach out to people in the industry, attend meetups, and connect with current employees at Insight Investment. A friendly chat can sometimes lead to job opportunities that aren't even advertised!
✨Tip Number 2
Show off your skills! Prepare a portfolio or case studies that highlight your experience with Snowflake and Azure security. When you get the chance to chat with hiring managers, let them see what you can do!
✨Tip Number 3
Be proactive! If you spot any potential security issues or improvements in their current setup, mention them during your conversations. This shows you're already thinking like a Security Architect and are ready to contribute.
✨Tip Number 4
Apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining the Insight Investment team.
We think you need these skills to ace Security Architect - Data Platform (Manchester)
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Security Architect role. Highlight your experience with Snowflake on Azure and any relevant security projects you've worked on. We want to see how your skills align with our needs!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about security architecture and how you can contribute to our Data Platform team. Keep it concise but impactful – we love a good story!
Showcase Your Technical Skills: Don’t forget to highlight your technical skills in your application. Mention your experience with IAM, threat modelling, and DevSecOps practices. We’re looking for someone who can hit the ground running, so show us what you’ve got!
Apply Through Our Website: We encourage you to apply through our website for a smoother process. It helps us keep track of applications and ensures you get all the updates directly from us. Plus, it’s super easy!
How to prepare for a job interview at Insight Investment Group
✨Know Your Security Fundamentals
Make sure you brush up on your knowledge of security architecture, especially around Snowflake and Azure. Be ready to discuss specific security controls, threat modelling, and how you would implement security-by-design principles in a data platform.
✨Showcase Your Hands-On Experience
Prepare to share examples from your past roles where you've designed and implemented security measures. Highlight your experience with IAM, encryption, and incident response, as well as any hands-on assessments you've conducted.
✨Collaborate and Communicate
Since this role involves working closely with engineers and architects, practice articulating your thoughts clearly. Be ready to explain complex security concepts in simple terms and demonstrate your collaborative approach to problem-solving.
✨Understand the Company’s Values
Familiarise yourself with Insight Investment's commitment to inclusivity and collaboration. Be prepared to discuss how your values align with theirs and how you can contribute to a positive team culture while enhancing security practices.