Senior Online Security Architect – Azure DevSecOps in London

Senior Online Security Architect – Azure DevSecOps in London

London Full-Time 70000 - 90000 £ / year (est.) Home office (partial)
M

At a Glance

  • Tasks: Secure online platforms by assessing designs and identifying risks in digital services.
  • Company: Join M&S, a dynamic and inclusive leader in retail innovation.
  • Benefits: Enjoy a 20% discount, competitive holidays, and generous pension schemes.
  • Other info: Be part of a diverse team that values your unique contributions.
  • Why this job: Make a real impact in security while working with cutting-edge technology.
  • Qualifications: Senior experience in security consulting and strong Azure cloud knowledge required.

The predicted salary is between 70000 - 90000 £ per year.

The Principal Security Consultant (Online) is a senior, hands‑on security specialist supporting the secure design and delivery of online and digital platforms. The role provides expert security assurance, design review, and DevSecOps guidance across web, mobile, API, and cloud‑native services hosted primarily on Microsoft Azure. The role works closely with the Business Information Security Officer (BISO) for the online domain to ensure security risks are identified early, assessed pragmatically, and managed in line with business priorities and enterprise risk appetite.

What you’ll do

  • Review and assess solution designs and architectures for online and digital services
  • Identify security risks across identity, APIs, cloud services, data flows, and third‑party integrations
  • Provide clear, proportionate security recommendations aligned to enterprise standards
  • Advise on embedding security controls into CI/CD pipelines (e.g. SAST, SCA, secrets scanning, IaC scanning)
  • Support secure engineering practices across build, deploy, and operate phases

Who you are

  • Senior experience in security consulting, product security, or application security
  • Strong background in online and digital platforms (web, mobile, APIs, e‑commerce)
  • Proven ability to review and challenge technical designs and architectures
  • Strong understanding of DevSecOps and modern CI/CD practices
  • Hands‑on knowledge of Azure cloud security

What’s in it for you

  • Being a part of M&S is exactly that – playing your part to bring the magic of M&S to our customers every day.
  • We’re an inclusive, dynamic, exciting, and ever evolving business built on doing the right thing and bringing exceptional quality, value, service to every customer, whenever, wherever and however they want to shop with us.
  • After completing your probationary period, you’ll receive 20% colleague discount across all M&S products and many of our third‑party brands for you and a member of your household.
  • Competitive holiday entitlement with the potential to buy extra holiday days!
  • Discretionary bonus schemes awarded based on how you achieve your personal objectives and our performance as a business.
  • A generous Defined Contribution Pension Scheme and Life Assurance.
  • A dedicated welcome to our teams with a tailored induction and a wide range of training programmes to develop your skills.
  • Amazing perks and discounts via our M&S Choices portal to maximise your financial and personal wellbeing.
  • Industry‑leading parental, adoption and neonatal policies, providing support and flexibility for your family.
  • Access to a fantastic range of wellbeing support for all colleagues including access to our 24/7 Virtual GP and PAM Assist to support you and your family.
  • A charity volunteer day to support a charity or cause you’re passionate about through a dedicated day away from work.

Everyone’s welcome. We’re ambitious about the future of retail. We’re innovating, disrupting, and leading the way into a more inspiring, digital era. It’s an exciting time to be part of M&S. To support us on our journey, we’re building inclusive, diverse teams where everyone can be themselves, do their best work, and make change happen. We support each other and succeed together. Don’t worry if you don’t meet every single requirement of the job description. It’s more of a guide to what’s possible within the role. If you’re passionate, ready to work hard, and think the role feels right for you, we’d love to hear from you.

Senior Online Security Architect – Azure DevSecOps in London employer: Marks & Spencer Plc

Joining M&S as a Senior Online Security Architect means becoming part of a dynamic and inclusive team dedicated to delivering exceptional quality and service. With competitive benefits such as a generous pension scheme, extensive training programmes, and a strong focus on employee wellbeing, M&S fosters an environment where you can thrive both personally and professionally. Embrace the opportunity to innovate in a leading retail company that values diversity and encourages you to bring your authentic self to work.

M

Contact Details:

Marks & Spencer Plc Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Senior Online Security Architect – Azure DevSecOps in London

Tip Number 1

Network like a pro! Reach out to folks in the industry, attend meetups, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.

Tip Number 2

Show off your skills! Create a portfolio or GitHub repository showcasing your projects, especially those related to Azure security and DevSecOps. This gives potential employers a taste of what you can do beyond just a CV.

Tip Number 3

Prepare for interviews by practising common questions and scenarios related to online security and cloud services. We recommend doing mock interviews with friends or using online platforms to get comfortable with the process.

Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, it shows you’re genuinely interested in being part of our team at M&S.

We think you need these skills to ace Senior Online Security Architect – Azure DevSecOps in London

Security Consulting
Application Security
DevSecOps
CI/CD Practices
Azure Cloud Security
Risk Assessment
Technical Design Review

Some tips for your application 🫡

Tailor Your CV:Make sure your CV speaks directly to the role of Senior Online Security Architect. Highlight your experience with Azure, DevSecOps, and any relevant security consulting work. We want to see how your skills align with what we’re looking for!

Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you’re passionate about online security and how your background makes you a perfect fit for our team. Don’t forget to mention specific projects or achievements that relate to the job.

Showcase Your Technical Skills:In your application, be sure to highlight your hands-on experience with security practices, especially in CI/CD pipelines and Azure cloud security. We love seeing concrete examples of how you've tackled security challenges in the past!

Apply Through Our Website:We encourage you to apply through our website for the best chance of getting noticed. It’s super easy, and you’ll be able to keep track of your application status. Plus, we love seeing candidates who take the initiative to connect with us directly!

How to prepare for a job interview at Marks & Spencer Plc

Know Your Azure Security Inside Out

Make sure you brush up on your knowledge of Azure cloud security. Familiarise yourself with the latest security features and best practices. Being able to discuss specific Azure services and how they relate to security will show that you're not just a theorist but someone who can apply this knowledge practically.

Prepare for Technical Design Challenges

Expect to review and challenge technical designs during your interview. Prepare by practising how you would assess security risks in various architectures, especially focusing on APIs and cloud services. Use real-world examples from your experience to demonstrate your thought process and decision-making skills.

Showcase Your DevSecOps Expertise

Be ready to discuss how you've embedded security controls into CI/CD pipelines in your previous roles. Highlight any tools or methodologies you've used, such as SAST or IaC scanning, and be prepared to explain how these practices improve security outcomes in a fast-paced development environment.

Align with Company Values

Research M&S's values and culture before your interview. Be prepared to discuss how your personal values align with theirs, especially around inclusivity and innovation. Showing that you understand and resonate with their mission will help you stand out as a candidate who is not only qualified but also a good cultural fit.