Senior Online Security Architect – Azure DevSecOps in City of Westminster

Senior Online Security Architect – Azure DevSecOps in City of Westminster

City of Westminster Full-Time 70000 - 90000 £ / year (est.) Home office (partial)
M

At a Glance

  • Tasks: Secure online platforms by assessing designs and identifying risks in digital services.
  • Company: Join M&S, a dynamic and inclusive leader in retail innovation.
  • Benefits: Enjoy a 20% discount, competitive holidays, and generous pension schemes.
  • Other info: Be part of a diverse team that values your unique contributions.
  • Why this job: Make a real impact in security while working with cutting-edge technology.
  • Qualifications: Senior experience in security consulting and strong Azure cloud knowledge required.

The predicted salary is between 70000 - 90000 £ per year.

The Principal Security Consultant (Online) is a senior, hands‑on security specialist supporting the secure design and delivery of online and digital platforms. The role provides expert security assurance, design review, and DevSecOps guidance across web, mobile, API, and cloud‑native services hosted primarily on Microsoft Azure. The role works closely with the Business Information Security Officer (BISO) for the online domain to ensure security risks are identified early, assessed pragmatically, and managed in line with business priorities and enterprise risk appetite.

What you’ll do

  • Review and assess solution designs and architectures for online and digital services
  • Identify security risks across identity, APIs, cloud services, data flows, and third‑party integrations
  • Provide clear, proportionate security recommendations aligned to enterprise standards
  • Advise on embedding security controls into CI/CD pipelines (e.g. SAST, SCA, secrets scanning, IaC scanning)
  • Support secure engineering practices across build, deploy, and operate phases

Who you are

  • Senior experience in security consulting, product security, or application security
  • Strong background in online and digital platforms (web, mobile, APIs, e‑commerce)
  • Proven ability to review and challenge technical designs and architectures
  • Strong understanding of DevSecOps and modern CI/CD practices
  • Hands‑on knowledge of Azure cloud security

What’s in it for you

  • Being a part of M&S is exactly that – playing your part to bring the magic of M&S to our customers every day.
  • We’re an inclusive, dynamic, exciting, and ever evolving business built on doing the right thing and bringing exceptional quality, value, service to every customer, whenever, wherever and however they want to shop with us.
  • After completing your probationary period, you’ll receive 20% colleague discount across all M&S products and many of our third‑party brands for you and a member of your household.
  • Competitive holiday entitlement with the potential to buy extra holiday days!
  • Discretionary bonus schemes awarded based on how you achieve your personal objectives and our performance as a business.
  • A generous Defined Contribution Pension Scheme and Life Assurance.
  • A dedicated welcome to our teams with a tailored induction and a wide range of training programmes to develop your skills.
  • Amazing perks and discounts via our M&S Choices portal to maximise your financial and personal wellbeing.
  • Industry‑leading parental, adoption and neonatal policies, providing support and flexibility for your family.
  • Access to a fantastic range of wellbeing support for all colleagues including access to our 24/7 Virtual GP and PAM Assist to support you and your family.
  • A charity volunteer day to support a charity or cause you’re passionate about through a dedicated day away from work.

Everyone’s welcome. We’re ambitious about the future of retail. We’re innovating, disrupting, and leading the way into a more inspiring, digital era. It’s an exciting time to be part of M&S. To support us on our journey, we’re building inclusive, diverse teams where everyone can be themselves, do their best work, and make change happen. We support each other and succeed together. Don’t worry if you don’t meet every single requirement of the job description. It’s more of a guide to what’s possible within the role. If you’re passionate, ready to work hard, and think the role feels right for you, we’d love to hear from you.

Senior Online Security Architect – Azure DevSecOps in City of Westminster employer: Marks & Spencer Plc

Joining M&S as a Senior Online Security Architect means becoming part of a dynamic and inclusive team dedicated to delivering exceptional quality and service. With competitive benefits such as a generous pension scheme, extensive training programmes, and a strong focus on employee wellbeing, M&S fosters an environment where you can thrive both personally and professionally. Embrace the opportunity to innovate in a leading retail company that values diversity and encourages every employee to contribute to its exciting digital transformation.

M

Contact Details:

Marks & Spencer Plc Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Senior Online Security Architect – Azure DevSecOps in City of Westminster

Tip Number 1

Network like a pro! Reach out to folks in the industry, attend meetups, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.

Tip Number 2

Show off your skills! Create a portfolio or GitHub repository showcasing your projects, especially those related to Azure security and DevSecOps. This gives potential employers a tangible look at what you can do.

Tip Number 3

Prepare for interviews by practising common questions and scenarios related to online security and cloud services. We recommend doing mock interviews with friends or using online platforms to get comfortable with the process.

Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in being part of our team at M&S.

We think you need these skills to ace Senior Online Security Architect – Azure DevSecOps in City of Westminster

Security Consulting
Product Security
Application Security
Online and Digital Platforms
Technical Design Review
DevSecOps
CI/CD Practices

Some tips for your application 🫡

Tailor Your CV:Make sure your CV speaks directly to the role of Senior Online Security Architect. Highlight your experience with Azure, DevSecOps, and any hands-on security projects you've tackled. We want to see how your skills align with what we’re looking for!

Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to tell us why you’re passionate about security in online platforms and how your background makes you a perfect fit for our team. Keep it engaging and personal – we love a good story!

Showcase Your Achievements:Don’t just list your responsibilities; show us what you’ve achieved! Whether it’s reducing security risks or implementing successful CI/CD practices, we want to know how you’ve made an impact in your previous roles.

Apply Through Our Website:We encourage you to apply through our website for a smoother process. It helps us keep track of your application and ensures you don’t miss out on any important updates. Plus, it’s super easy!

How to prepare for a job interview at Marks & Spencer Plc

Know Your Azure Security Inside Out

Make sure you brush up on your Azure cloud security knowledge. Familiarise yourself with the latest security features and best practices. Being able to discuss specific Azure services and how they relate to security will show that you're not just a theorist but someone who can apply this knowledge practically.

Prepare for Technical Design Challenges

Expect to review and challenge technical designs during your interview. Prepare by practising how you would assess security risks in various architectures, especially focusing on APIs and cloud services. Use real-world examples from your experience to demonstrate your thought process.

Showcase Your DevSecOps Expertise

Be ready to discuss how you've embedded security controls into CI/CD pipelines in past roles. Highlight specific tools and methodologies you've used, such as SAST or IaC scanning, and be prepared to explain their importance in maintaining secure online platforms.

Align with Company Values

Research M&S's values and culture before your interview. Be prepared to discuss how your personal values align with theirs, especially around inclusivity and innovation. Showing that you understand and resonate with their mission can set you apart from other candidates.