At a Glance
- Tasks: Lead security architecture design and risk assessments to protect our information assets.
- Company: Join Tesco, a leading retailer committed to serving customers and communities sustainably.
- Benefits: Enjoy a competitive salary, annual bonus, private medical insurance, and flexible working options.
- Why this job: Be part of a diverse team making a real impact on security in a dynamic environment.
- Qualifications: 10+ years in information security with strong knowledge of security frameworks and a relevant degree.
- Other info: We promote a fully inclusive workplace where everyone is welcome.
The predicted salary is between 72000 - 108000 £ per year.
Here at Tesco Cyber, we are seeking a highly skilled and experienced Enterprise Security Architect, who will be responsible for ensuring that all enterprise-built platforms and solutions align with our existing security framework and industry standards. This role requires a deep understanding of security principles, technologies, and best practices to protect our information assets and ensure compliance with regulatory requirements. The focus will be on collaborating with key stakeholders across various domains to enable our technology colleagues to work efficiently and manage their environments effectively. You will perform comprehensive risk assessments, develop strategies to mitigate threats, and ensure alignment with organizational security principles and best practices.
What is in it for you
- Annual bonus scheme of up to 45% of base salary
- Car Cash Allowance
- Holiday starting at 25 days plus a personal day (plus Bank holidays)
- Private medical insurance
- Retirement savings plan - save between 6% - 10% and Tesco will contribute 1.5 times this amount
- 26 weeks maternity and adoption leave (after 1 years' service) at full pay, followed by 13 weeks of Statutory Maternity Pay or Statutory Adoption Pay, we also offer 6 weeks fully paid paternity leave
- Free 24/7 virtual GP service
- Employee Assistance Programme (EAP) for you and your family, free access to a range of experts to support your mental wellbeing
You will be responsible for
- Design and implement robust security architectures for enterprise-wide capabilities, which our technology teams rely on regularly to operate their services and perform their day-to-day tasks efficiently, addressing identified threats and vulnerabilities.
- Conduct thorough risk assessments for new systems and existing environments, reviewing their designs and architectures to ensure they meet modern security requirements, identifying security risks, and recommending mitigation strategies.
- Influence and guide other teams to implement security solutions by collaborating across functions to integrate security principles and ensure systems align with business needs.
- Ensure all enterprise-built platforms align with our existing security framework and industry standards, while collaborating with other enabling and architecture teams to integrate security into all aspects of the organization's operations.
- Evaluate and enhance security processes to improve their efficiency and comprehensiveness.
- Continuously monitor and respond to emerging security trends and threats to workplace environments, virtualization technologies, and databases.
- Develop and maintain security architecture documentation, including policies, diagrams, and procedural guides.
- Act as an SME and advise on the security of the M365 platform, workplace solutions, and infrastructure control plane capabilities such as virtualization layers (VMWare).
- Lead and participate in internal technology initiatives to implement secure enterprise systems, ensuring alignment with security frameworks and organizational goals to enhance security posture.
You will need
Soft Skills:
- Proven leadership experience as a technical individual contributor in complex organizations.
- Analytical mindset with a proactive approach to identifying and solving security challenges.
- Strong communication and interpersonal skills to articulate complex security concepts to diverse audiences.
- Ability to work collaboratively with cross-functional teams while managing multiple initiatives.
- Demonstrated curiosity and flexibility in applying knowledge and advice.
Technical Skills:
- Demonstrable experience and expertise in designing, implementing, and applying balanced controls from security frameworks such as NIST, CIS, ISO 27001, and MITRE.
- Expertise in security controls and best practices for cloud-based workplace environments.
- Proficiency in Microsoft 365 security, compliance capabilities, identity and access management, and threat protection, including Microsoft Defender, Microsoft Entra, and Microsoft Purview.
- Expertise with virtualization platforms, ideally on VMware security solutions, including VMware NSX, VMware Carbon Black Cloud, and Horizon.
- Familiarity with virtualization security best practices and endpoint security.
- Proficiency in securing databases (e.g., SQL, NoSQL), with a focus on encryption, authentication, and monitoring solutions.
- Proficiency in risk analysis, security controls management planning, and disaster recovery planning.
- Experience with security technologies such as firewalls, intrusion detection/prevention systems, and encryption.
Qualifications & Experience:
- Strong knowledge of security frameworks and standards (e.g., NIST, ISO 27001).
- Bachelor's degree in Computer Science, Information Technology, or a related field.
- Minimum of 10 years of experience in information security, with at least 5 years in a security architecture role.
- Professional certifications such as SABSA, CISSP, CISM, or TOGAF are highly desirable.
- Professional certifications in risk management such as CRISC are desirable.
About us
Our vision at Tesco is to become every customer's favourite way to shop, whether they are at home or out on the move. Our core purpose is 'Serving our customers, communities and planet a little better every day'. Serving means more than a transactional relationship with our customers. It means acting as a responsible and sustainable business for all stakeholders, for the communities we are part of and for the planet. Diversity, equity and inclusion (DE&I) at Tesco means that whoever you are and whatever your background, we always want you to feel represented and that you can be yourself at work. In short, we're a place where Everyone's Welcome. We're proud to have been accredited Disability Confident Leader and we're committed to providing a fully inclusive and accessible recruitment process. We're a big business and we can offer a range of diverse full-time & part-time working patterns across our many business areas, which means that we can find something that works for you. We work in a more blended pattern - combining office and remote working. Our offices will continue to be where we connect, collaborate and innovate.
Principal Enterprise Security Architect employer: Tesco UK
Contact Detail:
Tesco UK Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Principal Enterprise Security Architect
✨Tip Number 1
Network with professionals in the cybersecurity field, especially those who have experience in enterprise security architecture. Attend industry events or webinars to connect with potential colleagues and learn about the latest trends and challenges in the sector.
✨Tip Number 2
Familiarise yourself with Tesco's existing security frameworks and standards, such as NIST and ISO 27001. Understanding how these frameworks are applied within the company can give you an edge during discussions with hiring managers.
✨Tip Number 3
Prepare to discuss your experience with Microsoft 365 security and virtualization platforms like VMware. Be ready to share specific examples of how you've implemented security measures in these environments, as this will demonstrate your hands-on expertise.
✨Tip Number 4
Showcase your leadership skills by discussing past experiences where you've influenced cross-functional teams to adopt security best practices. Highlighting your ability to communicate complex concepts effectively will resonate well with the interviewers.
We think you need these skills to ace Principal Enterprise Security Architect
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience in enterprise security architecture. Focus on your expertise with security frameworks like NIST and ISO 27001, and include specific examples of how you've implemented security solutions in previous roles.
Craft a Compelling Cover Letter: In your cover letter, express your passion for security architecture and how your skills align with Tesco's mission. Mention your leadership experience and ability to collaborate across teams, as these are key aspects of the role.
Showcase Technical Skills: Clearly outline your technical skills related to Microsoft 365 security, cloud environments, and virtualization technologies. Use bullet points to make this information easy to read and ensure it stands out.
Highlight Soft Skills: Don't forget to mention your soft skills, such as communication and analytical thinking. Provide examples of how you've successfully communicated complex security concepts to diverse audiences or led cross-functional initiatives.
How to prepare for a job interview at Tesco UK
✨Showcase Your Technical Expertise
Be prepared to discuss your experience with security frameworks like NIST, ISO 27001, and MITRE. Highlight specific projects where you've designed and implemented security architectures, especially in cloud environments and using tools like Microsoft 365.
✨Demonstrate Leadership Skills
As a Principal Enterprise Security Architect, you'll need to lead cross-functional teams. Share examples of how you've influenced others to adopt security best practices and how you've managed multiple initiatives simultaneously.
✨Communicate Clearly
You’ll be explaining complex security concepts to diverse audiences. Practice articulating these ideas simply and effectively, ensuring that you can adapt your communication style based on who you're speaking to.
✨Prepare for Risk Assessment Scenarios
Expect questions about conducting risk assessments and developing mitigation strategies. Be ready to walk through your thought process and methodologies for identifying and addressing security risks in various environments.