Senior Security Architect
Listed on 2025-12-02
-
IT/Tech
Cybersecurity, Systems Engineer
As the Senior Security Architect, you will be a key part of the Information Security team, focused on developing, implementing, and governing robust security architecture strategies and patterns across Thames Water. This role will support our mission to protect systems, data, and operations from cyber threats by enabling secure‑by‑design practices across all digital initiatives.
Reporting to the Head of Security Architecture, you will work collaboratively with key stakeholders across Thames Water to ensure new and existing technology capabilities are designed and delivered with the necessary, appropriate and proportionate security measures. This role requires deep technical expertise, strategic thinking, and strong leadership in embedding cybersecurity into the digital transformation journey.
What you’ll be doing as the Senior Security Architect:- Security Architecture Strategy:
Assist in the development and maintenance of the company‑wide security architecture strategy and roadmap. - Secure Solution Design:
Lead and review security designs to ensure end‑to‑end solutions meet security requirements across projects and programmes. - Security Architecture Artefacts:
Create and manage security patterns, reference architectures, and technical standards for secure design and implementation. - Threat & Risk Assessment:
Conduct threat modelling and risk assessments to identify security gaps and recommend proportionate controls. - Security Control Assurance:
Validate implementation of agreed security designs through testing, reviews, and go‑live assessments. - Collaboration Across Teams:
Work closely with enterprise and domain architects, cyber security, project managers, and business stakeholders to embed security into design and delivery. - Security Governance & Compliance:
Ensure adherence to internal and regulatory security standards by providing oversight throughout project and solution life cycles. - Vendor & Product Evaluation:
Provide security input into technology procurement and vendor selection to ensure alignment with security architecture requirements. - Security Awareness & Best Practice:
Champion secure‑by‑design principles and contribute to developing Thames Water’s security architecture capabilities and culture.
Base location – Hybrid – Clearwater Court, Reading
Full Time – 36 hours per week
What you should bring to the role:
Essential
Experience:
- Security Architecture Frameworks:
Experience with frameworks such as SABSA, TOGAF, or Zachman. - Technical Knowledge:
Proficient in designing secure solutions across cloud, on‑prem, and hybrid environments, including IT and OT domains. - Security Infrastructure:
In‑depth knowledge of technologies such as firewalls, WAFs, IPS, SIEM, endpoint protection, and IAM. - Secure Systems Design:
Proven experience in embedding security controls in system architecture across various platforms and environments. - IAM Design:
Direct experience designing identity and access management solutions, including Active Directory, Azure IAM, and RBAC. - Business Engagement:
Ability to translate technical security requirements into business‑focused language and work effectively with stakeholders at all levels.
Essential Skills &
Qualifications:
- Education:
Educated to degree level or equivalent experience. - Certifications:
Security certifications such as CISSP, CISM, or equivalent. - Communication:
Strong written and verbal communication skills, capable of articulating complex issues clearly. - Analytical Thinking:
Excellent problem‑solving and critical thinking skills, with the ability to balance business needs with security. - Self‑Starter:
Proactive, highly motivated, and able to work independently in a fast‑paced, changing environment.
Desirable
Experience:
- Security Architecture Delivery:
Experience working within a security architecture or similar function. - Modelling Tools:
Experience using architecture modelling software (e.g., BiZZdesign, Archi Mate, BPM tools). - Compliance Standards:
Familiarity with compliance frameworks and standards in system design (e.g., ISO 27001, NIST, and CIS). - Architecture Artefacts:
Experience in creating reusable security architecture models and patterns.
Desirable Technical Skills &
Qualifications:
- Ad…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).