Security Architect in London

Security Architect in London

London Full-Time 90000 - 100000 £ / year (est.) Home office (partial)
John Lewis plc

At a Glance

  • Tasks: Design innovative security solutions across cloud and network platforms to protect data.
  • Company: Join the John Lewis Partnership, a leader in retail focused on security and data insights.
  • Benefits: Competitive salary, hybrid working, and opportunities for professional growth.
  • Other info: Collaborate with cross-functional teams and stay ahead of industry trends.
  • Why this job: Make a real impact in a dynamic environment while shaping the future of security.
  • Qualifications: Experience in modern security architecture and agile delivery is essential.

The predicted salary is between 90000 - 100000 £ per year.

About the Role

Salary: £62,900.00 - £100,000.00. Contract type: Permanent. Working pattern: hybrid approach between London head office and home, as per personal needs and business requirements.

The John Lewis Partnership (JLP) is focused on security and data‑driven insights to serve partners and customers.

This role, as an integrated team member or advisor to service and domain teams, will design security solutions, patterns, and blueprints across data, platforms, cloud, and network capabilities to support strategic objectives within a changing threat landscape.

Key Responsibilities

  • Design end‑to‑end security solutions: create effective, efficient, repeatable, and sustainable solutions and patterns across cloud platforms (AWS, GCP) and traditional hosting environments.
  • Embed best practice and reduce risk: ensure security architecture best practices are applied during solution design, reducing delivery cost, operational risk, and technical debt.
  • Democratize secure delivery: enable architects and engineers across the enterprise via clear design principles, patterns, blueprints, and guardrails.
  • Provide commercial and contractual counsel: advise on commercial and contractual implications of existing or new obligations, reviewing contractual terms of technologies and business services.
  • Drive cross‑functional collaboration: partner closely with the CISO function, architecture, and engineering teams to provide value and optimise opportunities through solution evangelism.
  • Monitor and advise on industry trends: stay up to date with technology, retail, and socio‑economic trends to influence internal technology and business decisions.

Essential Skills and Experience

  • Modern security architecture expertise: extensive experience translating roadmap intent into outcome‑focused solutions that integrate best practice with business context.
  • Agile and technical architecture delivery: adaptable, engineering‑focused mindset with proven success across multiple service and domain teams using Agile and domain‑based delivery models.
  • Core security frameworks and methodologies: practical experience facilitating threat‑modeling workshops, working in Dev Sec Ops/Sec Ops, applying Zero Trust and NIST Cybersecurity Framework.
  • Hybrid‑cloud and infrastructure knowledge: expertise securing data and workloads across Google Cloud/Workspace, Amazon Web Services, Zscaler, and commodity Saa S.
  • Critical influence and leadership: ability to empower and influence decision‑makers, resolve challenges, and deliver outcomes aligned with business strategy.
  • Emerging technology and threat awareness: strong understanding of attacker tools, techniques, procedures and practical experience securing AI/LLM deployments.

Desirable Skills and Experience

  • Advanced architecture frameworks: experience designing SOC architectures (SIEM, SOAR, vulnerability management) and defining secure development lifecycles.
  • Regulated environments and evaluation: experience in PCI‑DSS and leading product evaluation and tool selection processes.
  • Professional certifications: TOGAF, SABSA, CISSP, CCSP, ISSAP, CEH, or platform‑specific certifications such as GCP Professional Cloud Architect/Security Engineer, Zscaler Zero Trust Associate, CSA Trusted AI Safety Expert.
  • Retail business domain knowledge: understanding of retail capabilities and processes, benchmarking against marketplace best practice.
  • Location

London Central Office, 1 Drummond Gate, London, SW1V 2QQ.

#J-18808-Ljbffr

Security Architect in London employer: John Lewis plc

John Lewis plc is an excellent employer, offering a supportive work culture at The Odney Hotel in the picturesque setting of Cookham, Berkshire. Employees benefit from competitive pay, flexible part-time hours, and opportunities for growth within a renowned company known for its commitment to customer service excellence. Join us to be part of a team that values your contributions and fosters a rewarding career in hospitality.

John Lewis plc

Contact Details:

John Lewis plc Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Security Architect in London

Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including John Lewis plc, love seeing candidates who actively engage in these challenges.

Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

Apply Directly Through John Lewis plc

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at John Lewis plc. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace Security Architect in London

Security Architecture Expertise
Cloud Security (AWS, GCP)
Agile Delivery
DevSecOps/SecOps
Zero Trust Framework
NIST Cybersecurity Framework
Hybrid-Cloud Infrastructure Knowledge

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at John Lewis plc insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to John Lewis plc that you’re committed to staying ahead in the game.

How to prepare for a job interview at John Lewis plc

Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

Prepare for Scenario-Based Questions

Expect the interviewers at John Lewis plc to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at John Lewis plc.

Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.