At a Glance
- Tasks: Lead the design of secure architectures and ensure security is embedded in all initiatives.
- Company: Join Tokio Marine HCC, a leading Specialty Insurer with a focus on innovation.
- Benefits: Enjoy a competitive salary, great benefits, and opportunities for professional growth.
- Other info: Be part of a dynamic team that values creativity and collaboration.
- Why this job: Make a real impact in cyber security while working with cutting-edge technologies.
- Qualifications: Experience in cyber security and security architecture is essential.
The predicted salary is between 70000 - 90000 £ per year.
Overview:
Why Tokio Marine HCC?
Standing still is not an option in the current world of Insurance. TMHCC is one of the world’s leading Specialty Insurers. With deep expertise in our chosen lines of business, our unparalleled track record and a solid balance sheet, TMHCC evaluates and manages risk like no one else in the industry. Looking beyond profit, empowering our people and delivering on our commitments are at the core of our customer values, along with a desire to grow and provide creative and innovative solutions to our clients.
This role sits within: IT
We are the foundation for TMHCC’s success - enabling the business to grow, compete, and innovate through technology, security, and solution design. From shaping strategy to delivering resilient operations, we ensure every capability is aligned to business value. Our inclusive and collaborative culture empowers everyone to explore ideas, solve meaningful challenges, and build fulfilling careers that make a real impact.
Job Purpose:
To define, lead, and evolve security architecture across the international business division of TMHCC, ensuring security is embedded by design across business and technology initiatives. As a senior member of the International Security team, you will provide strategic direction, establish security architectural standards, and work closely with architecture, engineering, infrastructure, and business teams to design secure, scalable solutions. Reporting to the International CISO, you will oversee the alignment of security controls with enterprise risk, regulatory requirements, and business objectives.
Key Responsibilities:
- Define and maintain the enterprise security architecture framework, standards, and reference architectures aligned to industry best practices (e.g. NIST, SABSA, TOGAF).
- Provide architectural oversight and governance for major technology initiatives, ensuring security risks are identified, assessed, and mitigated early in the lifecycle.
- Lead the design and assurance of secure architectures across applications, cloud, infrastructure, and data platforms.
- Act as a trusted advisor to senior IT and Architecture leadership, translating business requirements into secure architectural solutions.
- Establish and enforce security design principles, patterns, and guardrails to support secure-by-design and DevSecOps practices.
- Drive the integration of security controls into enterprise platforms, including identity, network, cloud, and application ecosystems.
- Lead threat modelling and risk assessments for complex systems and emerging technologies in line with Enterprise Security architecture frameworks.
- Collaborate with engineering, operations, and security teams to ensure consistent implementation of architectural standards and controls.
- Support regulatory compliance and audit activities by ensuring architectures align with internal policies and external requirements.
- Establish and maintain a robust, scalable security architecture that aligns with TMHCC’s business strategy, risk appetite, and regulatory obligations.
- Provide effective architectural governance across programmes and projects, ensuring security risks are proactively identified and mitigated.
- Drive adoption of secure-by-design principles and architectural standards, improving consistency, resilience, and security maturity across the organisation.
Skills and Experience Specification:
Essential:
- Experience in cyber security, with significant experience in security architecture.
- Proven experience designing and implementing security architectures across cloud (AWS/Azure), applications, infrastructure, and data platforms.
- Experience applying security frameworks and standards (e.g. NIST CSF, CIS, SABSA, TOGAF).
- Deep understanding of identity and access management, network security, cloud security, and application security principles.
- Experience leading threat modelling, risk assessments, and security design reviews for complex systems in accordance with threat modelling frameworks (e.g. STRIDE).
- Ability to translate business and technical requirements into secure architectural designs and patterns.
- Strong stakeholder management skills, with experience influencing senior leadership and cross-functional teams.
- Experience establishing architectural governance, standards, and security design authority processes.
- Excellent communication skills, with the ability to articulate complex security concepts to both technical and non-technical audiences.
- Relevant certifications (e.g. CISSP, CCSP, or equivalent).
- Familiarity with Zero Trust architectures and modern security models.
Desirable:
- Experience within financial services or regulated industries.
- Experience with applicable UK and EU regulation (e.g. DORA and GDPR).
- Experience with containerisation, Kubernetes, and microservices security.
- Knowledge of emerging technologies and security implications (e.g. AI/ML).
- General Architecture certifications (e.g. TOGAF).
What We Offer:
The Tokio Marine HCC Group of Companies offers a competitive salary and employee benefit package. We are a successful, dynamic organization experiencing rapid growth and are seeking energetic and confident individuals to join our team of professionals.
The Tokio Marine HCC Group of companies is an equal opportunity employer. Please visit www.tmhcc.com for more information about our companies.
Your success is our priority. In a world that is rapidly changing, TMHCC enables you to take on opportunities with confidence. At Tokio Marine HCC, we pride ourselves on hiring the smartest, most conscientious people, who want to make a difference no matter their background. And then we give them the support and trust they need. We’re always looking for curious, creative transformative thinkers who want to change the status quo and have a passion for doing the right thing. If this is you, then we want you on our team.
Cyber Security Architect employer: Tokio Marine HCC
At Tokio Marine HCC, we foster an inclusive and collaborative work culture that empowers our employees to explore innovative ideas and tackle meaningful challenges. Located in the heart of London, we offer competitive salaries, comprehensive benefits, and ample opportunities for professional growth, ensuring that our team members can build fulfilling careers while making a significant impact in the world of cyber security.
StudySmarter Expert Advice🤫
We think this is how you could land Cyber Security Architect
✨Tip Number 1
Network like a pro! Get out there and connect with folks in the cyber security field. Attend meetups, webinars, or industry conferences. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Show off your skills! Create a portfolio showcasing your projects, especially those related to security architecture. This could be anything from threat modelling to secure cloud implementations. Having tangible examples of your work can really set you apart.
✨Tip Number 3
Prepare for interviews by brushing up on common security scenarios and frameworks like NIST or TOGAF. Be ready to discuss how you've applied these in past roles. We want to see that you can translate complex concepts into practical solutions!
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, it shows you’re genuinely interested in joining our team at Tokio Marine HCC. Let’s make it happen!
We think you need these skills to ace Cyber Security Architect
Some tips for your application 🫡
Tailor Your CV:Make sure your CV is tailored to the Cyber Security Architect role. Highlight your experience in security architecture and relevant frameworks like NIST or TOGAF. We want to see how your skills align with what we're looking for!
Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you're passionate about cyber security and how you can contribute to our team. Be sure to mention any specific projects or achievements that relate to the role.
Showcase Your Technical Skills:Don’t forget to showcase your technical skills in your application. Mention your experience with cloud security, identity management, and threat modelling. We love seeing candidates who can translate complex concepts into practical solutions!
Apply Through Our Website:We encourage you to apply through our website for the best chance of success. It’s the easiest way for us to keep track of your application and ensure it gets the attention it deserves. Plus, it shows you’re serious about joining our team!
How to prepare for a job interview at Tokio Marine HCC
✨Know Your Security Frameworks
Familiarise yourself with key security frameworks like NIST, SABSA, and TOGAF. Be ready to discuss how you've applied these in your previous roles, especially in designing secure architectures across cloud and infrastructure.
✨Showcase Your Stakeholder Management Skills
Prepare examples of how you've influenced senior leadership and cross-functional teams. Highlight your ability to translate complex security concepts into understandable terms for non-technical audiences.
✨Demonstrate Threat Modelling Expertise
Be prepared to discuss your experience with threat modelling and risk assessments. Use specific examples to illustrate how you've identified and mitigated security risks in complex systems.
✨Align with Business Objectives
Understand the business goals of Tokio Marine HCC and be ready to explain how your security architecture can support these objectives. Show that you can integrate security controls seamlessly into enterprise platforms while maintaining compliance.