10+ Years of Relevant Experience
Security Solution Architects manage end-to-end solution design and are responsible for delivering architecture design documents aligned with business requirements, strategies, standards, and patterns.
They also:
- Create high-level designs
- Publish architecture patterns, key decisions, design deviations, technical risks and issues
- Present solutions at design authorities and to senior leadership and stakeholders
- Provide technical thought leadership
- Act as consultants across a wider programme portfolio
Principal Preferred Requirements
Cybersecurity Expertise
- Significant experience in security solution architecture
- Experience conducting and driving RFIs/RFPs and vendor assessments
- Familiarity with governance, risk and compliance frameworks, including:
NIST 800-53, ISO 27001, GDPR, ISF SOGP
Experience with:
- Graph databases and data lineage (document deconstruction and contextual mapping)
- Designing AI/ML platform architectures (experience with RAG + generative AI on documents/graph DBs is a plus)
- Strong general IT background; able to effectively communicate with non-security SMEs
Qualifications & Certifications
- Bachelor's or Master's in Cybersecurity, Computer Science, Software Engineering, or related field
- CISSP, CISM, or another recognized cybersecurity certification
Platform & Technology
- Experience with architecture tools: BizzDesign, Archi, or UML-based tools
- Working proficiency in:
- Jira (project/task management)
- Confluence (documentation)
Principal Accountabilities and Responsibilities
Architecture & Design
- Produce, manage, and update end-to-end solution designs as per business needs and reference architecture
- Publish and manage key design decision records
- Document and secure approval for design deviations and related technical debt
- Record and mitigate technical risks or issues related to solution design
- Translate requirements into architecture ensuring alignment with business outcomes
- Deliver efficient, timely, cost-effective solution designs across project lifecycle
- Maintain awareness of both business drivers and technical security priorities
- Encourage strong documentation practices
Governance
- Ensure all architecture artefacts (designs, patterns, deviations, risks) pass through formal governance
- Facilitate peer reviews and approvals for all designs before presenting to authorities
- Present artefacts at design authorities for feedback and sign-off
Risk and Dependency Management
- Identify and escalate technical and project risks/issues
- Recommend and document remediation plans
- Link design decisions to technical risk and articulate potential impacts
Leadership & Teamwork
- Act as the technical lead within the programmer
- Deliver technical thought leadership
- Maintain strong stakeholder communication (executives, project teams, SMEs)
- Serve as cybersecurity SME across broader IT initiatives