Security Architect

Security Architect

Full-Time 70000 - 90000 £ / year (est.) No working from home possible
Reply

At a Glance

  • Tasks: Design and own cloud security architecture across multi-cloud environments.
  • Company: Join Spike Reply, a leader in cybersecurity and data protection.
  • Benefits: Competitive salary, diverse workplace, and opportunities for professional growth.
  • Other info: Be part of a dynamic team focused on innovation and sustainability.
  • Why this job: Make a real impact in securing digital spaces for businesses and communities.
  • Qualifications: Experience in cloud security and strong stakeholder engagement skills required.

The predicted salary is between 70000 - 90000 £ per year.

Spike Reply is the company within the Reply Group focusing on cybersecurity and personal data protection. Its mission is to safeguard the values and privacy of people, companies and processes in order to support the growth of a global, sustainable digital world through innovation. Confidentiality, integrity and availability of systems are top priorities. Together with its partners, the company provides vendor-independent consulting services to help enterprises achieve a group-wide, security-oriented culture.

As a Cloud Security Architect, you will join Reply’s growing cybersecurity practice in a senior consulting role embedded within financial services and public sector organisations. You will take ownership of cloud security architecture, governance, and strategy across multi-cloud environments, working at the intersection of technology, risk, and business. You will engage with executive stakeholders, drive compliance programmes, and enable clients to adopt cloud securely and at scale. This is a high-impact role suited to a security professional who combines deep technical expertise with the strategic ability to translate complex threats into clear, actionable guidance.

Responsibilities

  • Design and own cloud security architecture across AWS, Azure, and/or GCP environments, including the development of reference architectures and reusable solution patterns.
  • Define and author enterprise-level security policies, controls frameworks, and governance documentation aligned to industry standards.
  • Lead risk assessments, threat modelling exercises, and security posture evaluations for cloud platforms and SaaS products, utilising methodologies such as FAIR.
  • Drive compliance programmes covering ISO 27001, Cyber Essentials Plus, PCI DSS, and other relevant regulatory frameworks.
  • Support DevSecOps adoption and integrate security tooling and controls into CI/CD pipelines across client delivery teams.
  • Engage senior stakeholders and executive teams with clear security risk reporting, remediation guidance, and strategic security roadmaps.
  • Lead or contribute to Security Champions communities of practice, fostering a security-aware engineering culture within client organisations.
  • Provide security assurance for software development and third-party supplier onboarding, including SSPM tooling and SaaS security reviews.
  • Architect secure identity solutions, including centralised and federated authentication models across complex, cross-domain environments.
  • Support incident response planning and business continuity activities, ensuring cloud-hosted services meet resilience and recovery objectives.
  • Contribute to FinOps activities from a cybersecurity cost and sustainability perspective, ensuring security investments are well‑justified and efficiently allocated.

About the Candidate

  • Bachelor’s or Master’s degree in Cyber Security, Computer Science, Physics with Computing, or a related discipline; MSc or equivalent postgraduate qualification is advantageous.
  • Proven experience in a Cloud Security Architect or Senior Security Consultant role.
  • AWS Certified Security – Specialty (required), with CISSP, CRISC, or CCSP strongly preferred; additional certifications such as ISO 27001 Lead Implementer/Auditor, Azure Security Engineer, or GCP Security Engineer are advantageous.
  • Hands‑on experience securing workloads on AWS and/or Microsoft Azure (GCP experience beneficial).
  • Track record of delivering security architecture within financial services and/or public sector environments.
  • Experience supporting or achieving ISO 27001 and/or Cyber Essentials Plus accreditation.
  • Practical experience with Infrastructure as Code (e.g. Terraform) and secure CI/CD pipeline design, alongside a background in application security, DevSecOps, or secure software engineering.
  • Strong knowledge of network protocols including TCP/IP, DNS, VPN, and IPSEC, with experience working in scaled agile environments.
  • Excellent stakeholder engagement skills, with the ability to communicate security risks clearly to senior and executive audiences and build trusted client relationships.
  • Analytical and pragmatic mindset, with experience mentoring teams, contributing to security communities, and enabling secure innovation while balancing commercial and operational priorities.

Eligibility: Must be eligible for UK Security Check clearance.

Reply is an Equal Opportunities Employer and committed to embracing diversity in the workplace. We provide equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type regardless of age, sexual orientation, gender, identity, pregnancy, religion, nationality, ethnic origin, disability, medical history, skin colour, marital status or parental status or any other characteristic protected by the Law. Reply is committed to making sure that our selection methods are fair to everyone. To help you during the recruitment process, please let us know of any Reasonable Adjustments you may need.

Security Architect employer: Reply

Spike Reply is an exceptional employer that prioritises innovation and security in the rapidly evolving digital landscape. With a strong commitment to employee growth, we offer opportunities for professional development through engaging projects in cybersecurity, particularly within financial services and public sector organisations. Our inclusive work culture fosters collaboration and diversity, ensuring that every team member can contribute meaningfully while enjoying the benefits of a supportive environment.

Reply

Contact Details:

Reply Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Security Architect

Tip Number 1

Network like a pro! Get out there and connect with folks in the cybersecurity field. Attend meetups, webinars, or industry conferences. The more people you know, the better your chances of landing that dream role.

Tip Number 2

Show off your skills! Create a portfolio showcasing your cloud security projects or any relevant work you've done. This can really set you apart from other candidates and give potential employers a taste of what you can bring to the table.

Tip Number 3

Prepare for interviews by brushing up on your technical knowledge and soft skills. Practice explaining complex security concepts in simple terms, as you'll need to engage with executive stakeholders. We want you to shine!

Tip Number 4

Don't forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, we love seeing passionate candidates who are eager to join our mission in cybersecurity.

We think you need these skills to ace Security Architect

Cloud Security Architecture
AWS Security – Specialty
CISSP
CRISC
CCSP
ISO 27001 Lead Implementer/Auditor
Azure Security Engineer

Some tips for your application 🫡

Tailor Your CV:Make sure your CV reflects the skills and experiences that align with the Cloud Security Architect role. Highlight your cloud security expertise, relevant certifications, and any experience in financial services or public sector environments.

Craft a Compelling Cover Letter:Use your cover letter to tell us why you're passionate about cybersecurity and how your background makes you a great fit for our team. Be sure to mention specific projects or achievements that showcase your ability to drive compliance and security strategies.

Showcase Your Technical Skills:Don’t shy away from detailing your hands-on experience with AWS, Azure, or GCP. We want to see how you've secured workloads and integrated security into CI/CD pipelines, so be specific about the tools and methodologies you've used.

Apply Through Our Website:We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it gives you a chance to explore more about our company culture and values!

How to prepare for a job interview at Reply

Know Your Cloud Security Inside Out

Make sure you brush up on your knowledge of cloud security architecture, especially across AWS, Azure, and GCP. Be ready to discuss specific projects where you've designed or implemented security measures, as this will show your hands-on experience.

Speak the Language of Compliance

Familiarise yourself with relevant compliance frameworks like ISO 27001 and Cyber Essentials Plus. Prepare to explain how you've driven compliance programmes in past roles, as this will demonstrate your ability to align security strategies with business needs.

Engage with Executive Stakeholders

Practice articulating complex security concepts in a way that resonates with senior stakeholders. Think about examples where you've successfully communicated risks and remediation strategies, as this will highlight your stakeholder engagement skills.

Showcase Your Strategic Mindset

Be prepared to discuss how you've balanced security with commercial priorities in previous roles. Highlight any experience mentoring teams or contributing to security communities, as this will illustrate your ability to foster a security-aware culture.