At a Glance
- Tasks: Design and own cloud security architecture across multi-cloud environments.
- Company: Join Spike Reply, a leader in cybersecurity and data protection.
- Benefits: Competitive salary, diverse workplace, and opportunities for professional growth.
- Other info: Be part of a dynamic team committed to innovation and sustainability.
- Why this job: Make a real impact in securing digital spaces for businesses and communities.
- Qualifications: Experience in cloud security and strong stakeholder engagement skills required.
The predicted salary is between 70000 - 90000 £ per year.
Spike Reply is the company within the Reply Group focusing on cybersecurity and personal data protection. Its mission is to safeguard the values and privacy of people, companies and processes in order to support the growth of a global, sustainable digital world through innovation. Confidentiality, integrity and availability of systems are top priorities. Together with its partners, the company provides vendor-independent consulting services to help enterprises achieve a group-wide, security-oriented culture.
As a Cloud Security Architect, you will join Reply’s growing cybersecurity practice in a senior consulting role embedded within financial services and public sector organisations. You will take ownership of cloud security architecture, governance, and strategy across multi-cloud environments, working at the intersection of technology, risk, and business. You will engage with executive stakeholders, drive compliance programmes, and enable clients to adopt cloud securely and at scale. This is a high-impact role suited to a security professional who combines deep technical expertise with the strategic ability to translate complex threats into clear, actionable guidance.
Responsibilities
- Design and own cloud security architecture across AWS, Azure, and/or GCP environments, including the development of reference architectures and reusable solution patterns.
- Define and author enterprise-level security policies, controls frameworks, and governance documentation aligned to industry standards.
- Lead risk assessments, threat modelling exercises, and security posture evaluations for cloud platforms and SaaS products, utilising methodologies such as FAIR.
- Drive compliance programmes covering ISO 27001, Cyber Essentials Plus, PCI DSS, and other relevant regulatory frameworks.
- Support DevSecOps adoption and integrate security tooling and controls into CI/CD pipelines across client delivery teams.
- Engage senior stakeholders and executive teams with clear security risk reporting, remediation guidance, and strategic security roadmaps.
- Lead or contribute to Security Champions communities of practice, fostering a security-aware engineering culture within client organisations.
- Provide security assurance for software development and third-party supplier onboarding, including SSPM tooling and SaaS security reviews.
- Architect secure identity solutions, including centralised and federated authentication models across complex, cross-domain environments.
- Support incident response planning and business continuity activities, ensuring cloud-hosted services meet resilience and recovery objectives.
- Contribute to FinOps activities from a cybersecurity cost and sustainability perspective, ensuring security investments are well‑justified and efficiently allocated.
About the Candidate
- Bachelor’s or Master’s degree in Cyber Security, Computer Science, Physics with Computing, or a related discipline; MSc or equivalent postgraduate qualification is advantageous.
- Proven experience in a Cloud Security Architect or Senior Security Consultant role.
- AWS Certified Security – Specialty (required), with CISSP, CRISC, or CCSP strongly preferred; additional certifications such as ISO 27001 Lead Implementer/Auditor, Azure Security Engineer, or GCP Security Engineer are advantageous.
- Hands‑on experience securing workloads on AWS and/or Microsoft Azure (GCP experience beneficial).
- Track record of delivering security architecture within financial services and/or public sector environments.
- Experience supporting or achieving ISO 27001 and/or Cyber Essentials Plus accreditation.
- Practical experience with Infrastructure as Code (e.g. Terraform) and secure CI/CD pipeline design, alongside a background in application security, DevSecOps, or secure software engineering.
- Strong knowledge of network protocols including TCP/IP, DNS, VPN, and IPSEC, with experience working in scaled agile environments.
- Excellent stakeholder engagement skills, with the ability to communicate security risks clearly to senior and executive audiences and build trusted client relationships.
- Analytical and pragmatic mindset, with experience mentoring teams, contributing to security communities, and enabling secure innovation while balancing commercial and operational priorities.
- Must be eligible for UK Security Check clearance.
Reply is an Equal Opportunities Employer and committed to embracing diversity in the workplace. We provide equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type regardless of age, sexual orientation, gender, identity, pregnancy, religion, nationality, ethnic origin, disability, medical history, skin colour, marital status or parental status or any other characteristic protected by the Law. Reply is committed to making sure that our selection methods are fair to everyone. To help you during the recruitment process, please let us know of any Reasonable Adjustments you may need.
Security Architect in London employer: Reply
Spike Reply is an exceptional employer that prioritises innovation and security in the rapidly evolving field of cybersecurity. With a strong commitment to employee growth, we offer opportunities for professional development through hands-on experience in cloud security architecture within dynamic financial services and public sector environments. Our inclusive work culture fosters collaboration and diversity, ensuring that every team member can contribute meaningfully while enjoying the benefits of a supportive and forward-thinking workplace.
StudySmarter Expert Advice🤫
We think this is how you could land Security Architect in London
✨Tip Number 1
Network like a pro! Reach out to folks in the cybersecurity field, especially those at Spike Reply. A casual chat can lead to opportunities that aren’t even advertised yet.
✨Tip Number 2
Show off your skills! Prepare a portfolio or case studies showcasing your cloud security projects. This will help you stand out during interviews and demonstrate your hands-on experience.
✨Tip Number 3
Get involved in relevant communities! Join forums or groups focused on cloud security and share your insights. This not only builds your reputation but also connects you with potential employers.
✨Tip Number 4
Apply through our website! It’s the best way to ensure your application gets noticed. Plus, it shows you’re genuinely interested in being part of the Spike Reply team.
We think you need these skills to ace Security Architect in London
Some tips for your application 🫡
Tailor Your CV:Make sure your CV is tailored to the Cloud Security Architect role. Highlight your relevant experience in cloud security, governance, and compliance programmes. We want to see how your skills align with our mission at Spike Reply!
Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you're passionate about cybersecurity and how you can contribute to our team. Be sure to mention any specific projects or achievements that showcase your expertise.
Showcase Your Certifications:Don’t forget to list your certifications prominently! AWS Certified Security – Specialty is a must, but if you have others like CISSP or CRISC, make sure they stand out. We love seeing candidates who are committed to their professional development.
Apply Through Our Website:We encourage you to apply through our website for a smoother application process. It helps us keep track of your application and ensures you don’t miss any important updates from us. Plus, it’s super easy!
How to prepare for a job interview at Reply
✨Know Your Cloud Security Inside Out
Make sure you brush up on your knowledge of cloud security architecture, especially across AWS, Azure, and GCP. Be ready to discuss specific examples from your past experience where you've designed or implemented security measures in these environments.
✨Speak the Language of Compliance
Familiarise yourself with relevant compliance frameworks like ISO 27001 and Cyber Essentials Plus. Prepare to explain how you've driven compliance programmes in previous roles and how you can help the company achieve its regulatory goals.
✨Engage with Executive Stakeholders
Practice articulating complex security concepts in a way that resonates with senior stakeholders. Think about how you can present security risks and remediation strategies clearly and concisely, as this will be crucial in your role.
✨Showcase Your Technical Expertise
Be prepared to dive deep into technical discussions about Infrastructure as Code and secure CI/CD pipelines. Highlight any hands-on experience you have and be ready to share insights on how you’ve integrated security into development processes.