At a Glance
- Tasks: Design and enhance security for our Snowflake data platform on Azure.
- Company: Join Insight Investment, a forward-thinking company prioritising security and innovation.
- Benefits: Inclusive workplace, competitive salary, and opportunities for professional growth.
- Other info: Collaborative environment focused on continuous improvement and career advancement.
- Why this job: Make a real impact by shaping secure system development practices.
- Qualifications: Experience with Snowflake, Azure security, and threat modelling required.
The predicted salary is between 60000 - 80000 £ per year.
Insight Investment is looking for a Security Architect to join the Data Platform team in Manchester. The role will focus on designing, implementing, and continuously enhancing the security of our Snowflake‑based data platform hosted on Microsoft Azure. This role has been created to strengthen security‑by‑design principles throughout the platform's development and delivery processes.
Working collaboratively within the team, you will partner closely with engineers and fellow architects to proactively identify cyber threats, devise proportionate security controls, and see these measures through to practical implementation. Your efforts will be instrumental in ensuring our platform remains secure and compliant, while supporting efficient and frictionless delivery. This is a hands‑on, delivery‑oriented position, embedded within the wider Data Platform team. You will play a key part in shaping our secure system development practices, championing robust governance and regulatory compliance, and enabling trusted access to data for users across the organisation.
Role Responsibilities
- Design and implement security architecture for the Snowflake data platform on Microsoft Azure, encompassing data, identity, network, and platform controls, while embedding security into Snowflake workspaces and GitHub‑backed repositories (secure branching, code reviews, pipelines, secrets management, and deployment patterns).
- Secure integrations with Sigma, Collibra, on‑premises systems, other clouds/SaaS, and third‑party vendors by ensuring connectivity, authentication, data exchange, and auditability.
- Lead threat modelling and hands‑on security assessments for systems, data flows, integrations, and vendors; translate findings into actionable controls, prioritise remediation, and track closure.
- Implement and refine controls across IAM (Entra ID/Azure AD, Snowflake roles/RBAC), networking (private endpoints, firewall rules), encryption and key management (customer‑managed keys, Key Vault), secrets management, monitoring, and logging, ensuring operability and observability (logs, alerts, dashboards), incident response, and post‑incident learning.
- Define and embed reusable, automatable security patterns, guardrails, and reference architectures in CI/CD; enforce secure data lifecycle controls (ingestion, storage, processing, sharing, retention/deletion), including classification, masking, and least‑privilege access.
- Work closely with the platform team and Internal Security to align on standards and enable secure delivery, contribute to Architecture Review Boards and technical risk management, and ensure compliance with legal, regulatory, industry, and enterprise standards, focusing on real risk reduction. Elevate the platform team's security maturity and mindset in the process.
Experience Required
- Snowflake on Azure security: role/warehouse design, RBAC, masking/row level controls, network policies, private connectivity, secure data sharing patterns.
- Azure security: identity (Entra ID), network isolation (VNets, Private Link), Key Vault / customer managed keys, policy/blueprints, logging/monitoring.
- GitHub security & DevSecOps: protected branches, code owners, signed commits, secrets management, GitHub Actions hardening, SAST/secret scanning, supply chain hygiene.
- Infrastructure as Code (e.g., Terraform) and pipeline embedded controls (policy as code, automated checks, drift detection).
- Threat modelling & risk assessment skills; ability to turn threats into concrete, testable mitigations and track them to done.
- Zero Trust and principle of least privilege mindset; strong grasp of enforcing role entitlement over data security (classification, tokenisation/masking, lineage, audit).
- Security observability: designing for logs, metrics and alerts that support detection, response and auditability.
- Working familiarity with industry frameworks (e.g., NIST CSF, CSA Cloud Controls) to communicate design rationale in governance forums.
- Clear, pragmatic communication to brief engineers, product, architects and ARB succinctly; documents decisions and residual risk.
Behaviours: collaborative, embedded, outcome focused, balances speed and safety, takes ownership, learns from incidents, influences through expertise, consultative stakeholder style, curiosity, continuous improvement mindset, transparent about trade offs and residual risk.
Insight is committed to being an inclusive employer and encourages applications from all suitably qualified applicants irrespective of background, circumstances, age, disability, gender identity, ethnicity, religion or belief and sexual orientation. If you are a candidate with a disability, or are assisting a candidate with a disability, and require an accommodation to apply for one of our jobs, please email us at.
Security Architect (Manchester) employer: Job Search Place Limited
At Insight Investment, we pride ourselves on fostering a collaborative and inclusive work culture that empowers our employees to thrive. As a Security Architect in Manchester, you will not only play a pivotal role in enhancing the security of our innovative data platform but also benefit from continuous professional development opportunities and a supportive environment that values your contributions. Join us to be part of a forward-thinking team dedicated to excellence and meaningful impact in the financial services sector.
StudySmarter Expert Advice🤫
We think this is how you could land Security Architect (Manchester)
✨Tip Number 1
Network like a pro! Reach out to folks in the industry, especially those already working at Insight Investment. A friendly chat can sometimes lead to insider info about job openings or even a referral.
✨Tip Number 2
Show off your skills! If you’ve got a portfolio or any projects that highlight your expertise in security architecture, make sure to share them during interviews. It’s a great way to demonstrate your hands-on experience.
✨Tip Number 3
Prepare for the technical grill! Brush up on your knowledge of Snowflake and Azure security practices. Be ready to discuss how you would tackle real-world scenarios related to the role.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining the team.
We think you need these skills to ace Security Architect (Manchester)
Some tips for your application 🫡
Tailor Your Application:Make sure to customise your CV and cover letter to highlight your experience with Snowflake and Azure security. We want to see how your skills align with the role, so don’t hold back on showcasing relevant projects!
Show Off Your Collaboration Skills:Since this role involves working closely with engineers and architects, it’s a good idea to mention any past experiences where you’ve successfully collaborated on security projects. We love seeing teamwork in action!
Be Clear and Concise:When writing your application, keep it straightforward and to the point. Use clear language to explain your experience and how it relates to the responsibilities listed in the job description. We appreciate clarity!
Apply Through Our Website:Don’t forget to submit your application through our website! It’s the best way for us to receive your details and ensures you’re considered for the role. We can’t wait to hear from you!
How to prepare for a job interview at Job Search Place Limited
✨Know Your Security Fundamentals
Before the interview, brush up on your knowledge of security architecture, especially in relation to Snowflake and Azure. Be prepared to discuss specific security controls, threat modelling, and how you would implement security measures in a data platform environment.
✨Showcase Your Hands-On Experience
Highlight any hands-on experience you've had with security assessments, IAM, and DevSecOps practices. Be ready to share examples of how you've successfully implemented security solutions or mitigated risks in previous roles.
✨Collaborative Mindset is Key
Since this role involves working closely with engineers and architects, demonstrate your collaborative skills. Prepare to discuss how you've partnered with teams in the past to enhance security practices and ensure compliance while maintaining efficient delivery.
✨Communicate Clearly and Pragmatically
Practice articulating complex security concepts in a clear and concise manner. You may need to explain your design rationale or decisions to non-technical stakeholders, so being able to communicate effectively is crucial.