At a Glance
- Tasks: Design and own cloud security architecture across multi-cloud environments.
- Company: Join Reply, a leader in cybersecurity and personal data protection.
- Benefits: Competitive salary, diverse workplace, and opportunities for professional growth.
- Other info: Be part of a dynamic team focused on innovation and sustainability.
- Why this job: Make a real impact in securing digital environments for major organisations.
- Qualifications: Experience in cloud security and strong stakeholder engagement skills required.
The predicted salary is between 70000 - 90000 £ per year.
Spike Reply is the company within the Reply Group focusing on cybersecurity and personal data protection. Its mission is to safeguard the values and privacy of people, companies and processes in order to support the growth of a global, sustainable digital world through innovation. Confidentiality, integrity and availability of systems are top priorities. Together with its partners, the company provides vendor-independent consulting services to help enterprises achieve a group-wide, security-oriented culture.
As a Cloud Security Architect, you will join Reply’s growing cybersecurity practice in a senior consulting role embedded within financial services and public sector organisations. You will take ownership of cloud security architecture, governance, and strategy across multi-cloud environments, working at the intersection of technology, risk, and business. You will engage with executive stakeholders, drive compliance programmes, and enable clients to adopt cloud securely and at scale. This is a high-impact role suited to a security professional who combines deep technical expertise with the strategic ability to translate complex threats into clear, actionable guidance.
Responsibilities:
- Design and own cloud security architecture across AWS, Azure, and/or GCP environments, including the development of reference architectures and reusable solution patterns.
- Define and author enterprise-level security policies, controls frameworks, and governance documentation aligned to industry standards.
- Lead risk assessments, threat modelling exercises, and security posture evaluations for cloud platforms and SaaS products, utilising methodologies such as FAIR.
- Drive compliance programmes covering ISO 27001, Cyber Essentials Plus, PCI DSS, and other relevant regulatory frameworks.
- Support DevSecOps adoption and integrate security tooling and controls into CI/CD pipelines across client delivery teams.
- Engage senior stakeholders and executive teams with clear security risk reporting, remediation guidance, and strategic security roadmaps.
- Lead or contribute to Security Champions communities of practice, fostering a security-aware engineering culture within client organisations.
- Provide security assurance for software development and third-party supplier onboarding, including SSPM tooling and SaaS security reviews.
- Architect secure identity solutions, including centralised and federated authentication models across complex, cross-domain environments.
- Support incident response planning and business continuity activities, ensuring cloud-hosted services meet resilience and recovery objectives.
- Contribute to FinOps activities from a cybersecurity cost and sustainability perspective, ensuring security investments are well-justified and efficiently allocated.
About the Candidate:
- Bachelor’s or Master’s degree in Cyber Security, Computer Science, Physics with Computing, or a related discipline; MSc or equivalent postgraduate qualification is advantageous.
- Proven experience in a Cloud Security Architect or Senior Security Consultant role.
- AWS Certified Security – Specialty (required), with CISSP, CRISC, or CCSP strongly preferred; additional certifications such as ISO 27001 Lead Implementer/Auditor, Azure Security Engineer, or GCP Security Engineer are advantageous.
- Hands-on experience securing workloads on AWS and/or Microsoft Azure (GCP experience beneficial).
- Track record of delivering security architecture within financial services and/or public sector environments.
- Experience supporting or achieving ISO 27001 and/or Cyber Essentials Plus accreditation.
- Practical experience with Infrastructure as Code (e.g. Terraform) and secure CI/CD pipeline design, alongside a background in application security, DevSecOps, or secure software engineering.
- Strong knowledge of network protocols including TCP/IP, DNS, VPN, and IPSEC, with experience working in scaled agile environments.
- Excellent stakeholder engagement skills, with the ability to communicate security risks clearly to senior and executive audiences and build trusted client relationships.
- Analytical and pragmatic mindset, with experience mentoring teams, contributing to security communities, and enabling secure innovation while balancing commercial and operational priorities.
Eligibility: Must be eligible for UK Security Check clearance.
Reply is an Equal Opportunities Employer and committed to embracing diversity in the workplace. We provide equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type regardless of age, sexual orientation, gender, identity, pregnancy, religion, nationality, ethnic origin, disability, medical history, skin colour, marital status or parental status or any other characteristic protected by the Law. Reply is committed to making sure that our selection methods are fair to everyone. To help you during the recruitment process, please let us know of any Reasonable Adjustments you may need.
CLOUD SECURITY ARCHITECT employer: Reply, Inc.
At Spike Reply, we pride ourselves on being an exceptional employer, particularly for those in the Cloud Security Architect role. Our commitment to innovation in cybersecurity is matched by a vibrant work culture that fosters collaboration and professional growth, offering employees opportunities to engage with senior stakeholders and lead impactful projects within the financial services and public sectors. Located in a dynamic environment, we provide a supportive atmosphere where diversity is celebrated, and every team member can thrive while contributing to a sustainable digital future.
StudySmarter Expert Advice🤫
We think this is how you could land CLOUD SECURITY ARCHITECT
✨Tip Number 1
Network like a pro! Get out there and connect with folks in the cybersecurity space. Attend meetups, webinars, or industry events. The more people you know, the better your chances of landing that Cloud Security Architect role.
✨Tip Number 2
Show off your skills! Create a portfolio showcasing your cloud security projects, especially if you've worked with AWS, Azure, or GCP. This will give potential employers a taste of what you can do and set you apart from the crowd.
✨Tip Number 3
Prepare for interviews by brushing up on your technical knowledge and soft skills. Be ready to discuss your experience with risk assessments and compliance programmes. Remember, they want to see how you can translate complex threats into actionable guidance!
✨Tip Number 4
Don't forget to apply through our website! We love seeing candidates who are genuinely interested in joining our team. Plus, it makes it easier for us to keep track of your application and get back to you quickly.
We think you need these skills to ace CLOUD SECURITY ARCHITECT
Some tips for your application 🫡
Tailor Your CV:Make sure your CV is tailored to the Cloud Security Architect role. Highlight your relevant experience in cloud security, governance, and compliance. We want to see how your skills align with our mission at Spike Reply!
Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you're passionate about cybersecurity and how you can contribute to our team. Be sure to mention any specific projects or achievements that showcase your expertise.
Showcase Your Certifications:Don’t forget to list your certifications prominently! AWS Certified Security – Specialty is a must, but if you have others like CISSP or ISO 27001, make sure they stand out. We love seeing candidates who are committed to their professional development.
Apply Through Our Website:We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows you’re keen on joining our team at Spike Reply!
How to prepare for a job interview at Reply, Inc.
✨Know Your Cloud Security Inside Out
Make sure you brush up on your knowledge of cloud security architecture, especially across AWS, Azure, and GCP. Be ready to discuss specific examples from your past experience where you've designed or implemented security measures in these environments.
✨Speak the Language of Compliance
Familiarise yourself with relevant compliance frameworks like ISO 27001 and Cyber Essentials Plus. Prepare to explain how you've driven compliance programmes in previous roles and how you can help the company achieve its security goals.
✨Engage with Executive Stakeholders
Since this role involves engaging with senior stakeholders, practice articulating complex security concepts in a clear and concise manner. Think about how you can present security risks and remediation strategies effectively to non-technical audiences.
✨Showcase Your Hands-On Experience
Be ready to discuss your practical experience with Infrastructure as Code and secure CI/CD pipeline design. Highlight any specific projects where you've integrated security tooling into development processes, as this will demonstrate your ability to bridge the gap between security and engineering.