At a Glance
- Tasks: Lead secure design initiatives and develop security architecture patterns for innovative technology.
- Company: Join LSEG, a global leader in financial markets infrastructure and data, driving sustainable growth.
- Benefits: Enjoy healthcare, retirement planning, paid volunteering days, and a supportive work environment.
- Why this job: Be part of a dynamic team that values creativity and promotes a culture of collaboration.
- Qualifications: 7+ years in technical engineering or information security, with strong knowledge of security principles.
- Other info: This role offers the chance to influence security practices across a diverse global organisation.
The predicted salary is between 54000 - 84000 £ per year.
Manager Principal Security Architect: Secure Design (IC)
Join to apply for the Manager Principal Security Architect: Secure Design (IC) role at LSEG
Manager Principal Security Architect: Secure Design (IC)
2 days ago Be among the first 25 applicants
Join to apply for the Manager Principal Security Architect: Secure Design (IC) role at LSEG
Get AI-powered advice on this job and more exclusive features.
Security Architecture – Secure Design Team
Role: Manager – Principal Security Architect: Secure Design (Individual Contributor)
Grade: GG14
The Security Architecture Design team is responsible for developing Security Architecture patterns, developing security controls needed for new technology, promoting the use of the architectural patterns into development projects, leading the Security Architecture Design Forum, Evaluating architectural security risks in existing systems, consulting with system development teams and architects on building security into their design.
This key task of this role is accelerating the delivery of secure design artefacts and leading secure design interventions – by adding capacity and capability to the team.
Reports to: Senior Manager – Secure Design
Key Relationships
- Business Aligned Principal Security Architects
- CyberSecurity Engineering
- CyberSecurity Testing and Vulnerability Management
- Cloud Security
- Identity Management
- Security Architecture Design Forum (member)
- Project teams
- BISOs
Key Responsibilities
- Develop Security Architecture Design Patterns and Standards to comply with group security requirements, industry standards, customer requirements, regulatory requirements and good practices.
- Assist the development of and champion a Security Architecture control framework.
- Research, design and document the security posture requirements and controls of new technology introduced into the Group. Engage with technology acquisition processes to ensure all new technology introduced is evaluated.
- Research industry trends and regulatory requirements.
- Lead the Security Architecture evaluation of risks identified in systems, including reviewing, and proposing tactical and strategic remediation plans, and evaluation of the cost / risk benefits of remediations.
- Actively contribute to the adoption of secure by design practices, with technical delivery teams for both existing systems and new systems, e.g. use of internal or external guidance, leading Threat Modelling activity.
- Nurture the use of secure technical practices to deliver technical excellence.
- Support experimentation and innovation in solving problems
- Supervise third parties in their deliveries related to the domain area
- Provide company representation, internally and externally, related to information security, as needed.
- Contributes to the development of metrics and their monitoring to report the effectiveness and efficiency of the Security Architecture function.
- Contributes to the content and management of the Security Architecture intranet presence.
Team Responsibilities
- Guiding and mentoring other team members as required
- Deputising for Senior Manager – Secure Design when required
Critical Deliverables
- Developing and prioritising the security design pattern library
- Developing and delivering the security design patterns – individually or in conjunction with other teams, as necessary
- Working with the neighbouring security teams and delivery projects to address emerging areas of secure design guidance and interventions
- Developing security architecture interventions in business specific process for acquiring and developing new technology
- Contributing to the development and reporting of metrics for the Secure Design team, within the broader Security Architecture function
Impact
This is a group-wide role which is key to effective and efficient management of security risks associated with business technology systems.
The success of the post holder will be in balancing the major aspects of the role:
- the ability to work effectively and pragmatically with project teams, to drive secure by design outcomes, while enabling projects to deliver.
- develop or refresh security architectural collateral – based on the planned and emerging needs of the business
- during project delivery, identifying gaps in security architecture collateral to be added to the security design pattern library
Key Performance Indicators
- Delivery of design patterns (timeframe from development initiation to substantive draft, through to general availability)
- Successful outcomes from security architectural interventions with delivery projects
Functional Knowledge And Experience
7+ years of increasing responsibility in technical engineering or information security roles, security architecture preferred.
- Experience of enterprise architecture frameworks and their application
- Experience in threat modelling / design pattern development
- Proven Experience in designing and applying security controls into distributed systems (on premises and cloud)
- Thorough understanding of the latest security principles, techniques and protocols
- Critical, independent thinking
- Problem solving skills, ability to work under pressure and self-starter
- Deep understanding of both common and emerging vulnerabilities including their manifestation in different architectures (web applications, thick clients, APIs, networked infrastructure etc)
- Familiarity with industry standard guidance OWASP Top 10, SANS Top 25, NIST / CSC, CIS, NCSC etc.
- Applied understanding of topics such as authentication, access control, encryption, cloud security, operating system security, network security, database security.
- Experience of writing succinct, reader oriented, visually compelling documentation
- Familiarity with common Developer Tools (GitLab/Azure DevOps etc) and some experience with using YAML/Markdown/Terraform.
Business and sector expertise
- Preferred prior experience in the financial services and / or technology sector
- Preferred prior experience in a heavily regulated environment
Leadership And Management Experience
- Experience in supervising and supporting specialist individual contributors in technology domains; inspiring others to delivery of outcomes.
- Experience in working collaboratively with remote and offshore team members
- Must have a collaborative work style ensuring that stakeholders are engaged in decision making processes.
- Highly adaptable and able to approach challenges differently in order to achieve goals.
LSEG is a leading global financial markets infrastructure and data provider. Our purpose is driving financial stability, empowering economies and enabling customers to create sustainable growth.
Our purpose is the foundation on which our culture is built. Our values of Integrity, Partnership, Excellence and Change underpin our purpose and set the standard for everything we do, every day. They go to the heart of who we are and guide our decision making and everyday actions.
Working with us means that you will be part of a dynamic organisation of 25,000 people across 65 countries. However, we will value your individuality and enable you to bring your true self to work so you can help enrich our diverse workforce. You will be part of a collaborative and creative culture where we encourage new ideas and are committed to sustainability across our global business. You will experience the critical role we have in helping to re-engineer the financial ecosystem to support and drive sustainable economic growth. Together, we are aiming to achieve this growth by accelerating the just transition to net zero, enabling growth of the green economy and creating inclusive economic opportunity.
LSEG offers a range of tailored benefits and support, including healthcare, retirement planning, paid volunteering days and wellbeing initiatives.
We are proud to be an equal opportunities employer. This means that we do not discriminate on the basis of anyones race, religion, colour, national origin, gender, sexual orientation, gender identity, gender expression, age, marital status, veteran status, pregnancy or disability, or any other basis protected under applicable law. Conforming with applicable law, we can reasonably accommodate applicants\’ and employees\’ religious practices and beliefs, as well as mental health or physical disability needs.
Please take a moment to read this privacy notice carefully, as it describes what personal information London Stock Exchange Group (LSEG) (we) may hold about you, what its used for, and how its obtained, your rights and how to contact us as a data subject.
If you are submitting as a Recruitment Agency Partner, it is essential and your responsibility to ensure that candidates applying to LSEG are aware of this privacy notice.
Seniority level
- Seniority levelMid-Senior level
Employment type
- Employment typeFull-time
Job function
Manager Principal Security Architect: Secure Design (IC) (London) employer: LSEG
Contact Detail:
LSEG Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Manager Principal Security Architect: Secure Design (IC) (London)
✨Tip Number 1
Familiarise yourself with the latest security principles and frameworks mentioned in the job description, such as OWASP Top 10 and NIST. This knowledge will not only help you in interviews but also demonstrate your commitment to staying updated in the field.
✨Tip Number 2
Network with professionals in the cybersecurity and financial services sectors. Attend relevant meetups or webinars to connect with individuals who may provide insights or referrals for the role at LSEG.
✨Tip Number 3
Prepare to discuss your experience with threat modelling and security architecture interventions in detail. Be ready to share specific examples of how you've successfully implemented secure design practices in previous roles.
✨Tip Number 4
Showcase your leadership skills by highlighting any experience you have in mentoring or supervising team members. This is crucial for a managerial role, so be prepared to discuss how you've inspired others to achieve security outcomes.
We think you need these skills to ace Manager Principal Security Architect: Secure Design (IC) (London)
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience in security architecture and design. Focus on your achievements in developing security patterns and frameworks, as well as any leadership roles you've held.
Craft a Compelling Cover Letter: In your cover letter, express your passion for security architecture and how your background aligns with the responsibilities of the role. Mention specific projects or experiences that demonstrate your ability to lead secure design interventions.
Showcase Technical Skills: Clearly outline your technical skills related to security controls, threat modelling, and familiarity with industry standards like OWASP and NIST. Use bullet points for clarity and impact.
Highlight Collaborative Experience: Since the role involves working with various teams, emphasise your experience in collaborative environments. Provide examples of how you've successfully engaged stakeholders in decision-making processes.
How to prepare for a job interview at LSEG
✨Understand the Role Thoroughly
Before your interview, make sure you have a solid grasp of the responsibilities and expectations for the Manager Principal Security Architect role. Familiarise yourself with security architecture patterns, secure design principles, and the specific technologies mentioned in the job description.
✨Showcase Your Experience
Be prepared to discuss your previous experience in security architecture and how it relates to the role. Highlight specific projects where you've developed security controls or led secure design interventions, and be ready to explain the outcomes and lessons learned.
✨Demonstrate Problem-Solving Skills
Given the emphasis on critical thinking and problem-solving in this role, come prepared with examples of challenges you've faced in past positions. Discuss how you approached these problems, the solutions you implemented, and the impact they had on your team or organisation.
✨Engage with Industry Trends
Stay updated on the latest trends and regulatory requirements in security architecture. During the interview, reference current industry standards like OWASP Top 10 or NIST guidelines, and discuss how you would apply this knowledge to enhance the security posture of the organisation.