About the Role
Moore Kingston Smith is seeking a senior, hands-on Cyber Security Architect & Engineering Lead to shape and strengthen the firm's future security architecture. This technical leadership role involves translating security strategy into secure designs and practical controls, with a focus on designing, prototyping, configuring, and validating security controls across various domains. A key aspect will be ensuring the secure adoption of AI and emerging technologies.
Responsibilities
- Define and maintain security architecture across identity, endpoints, networks, cloud, SaaS, data, applications, and integration platforms.
- Design and implement modern security controls, focusing on Zero Trust, secure-by-design principles, and automation.
- Lead security architecture reviews and threat modeling for major projects, new products, high-risk integrations, and emerging technologies.
- Act as the technical lead for AI security, establishing practical controls for Microsoft 365 Copilot, AI agents, custom AI applications, and related technologies.
- Provide senior technical oversight for security monitoring, detection engineering, incident response, and recovery capabilities.
- Lead or support responses to complex or high-severity security incidents.
- Improve vulnerability and exposure management by prioritizing remediation based on business risk, exploitability, attack-path context, and threat intelligence.
- Support technical implementation and evidence for ISO 27001, Cyber Essentials Plus, client assurance, and other regulatory or contractual obligations.
- Provide clear, risk-based technical advice to senior leaders, project teams, and technology owners.
- Coach technology teams in secure design and engineering practices to build security capability.
Requirements
- Demonstrable experience in cyber security architecture, security engineering, or a closely related senior technical security role.
- Strong experience designing and implementing security controls in a Microsoft-centric environment (Microsoft 365, Entra ID, Defender XDR, Sentinel, Azure, Microsoft Purview).
- Strong knowledge of identity security, Zero Trust, cloud security, data security, endpoint security, network security, application security, API security, and secure software development.
- Experience with security architecture review, threat modeling, technical standards, reference architecture, and control design.
- Practical experience in incident response, detection engineering, threat hunting, vulnerability or exposure management, and security automation.
- Ability to automate security and assurance processes using tools such as Python, PowerShell, Logic Apps, Azure Functions, APIs, infrastructure as code, or equivalent platforms.
- Working knowledge of ISO 27001, Cyber Essentials Plus, NIST CSF, and recognized AI security or governance frameworks.
- Ability to explain complex technical risk clearly to senior stakeholders and influence delivery teams without formal authority.
- A practical, outcome-focused approach with a track record of taking ownership, improving controls, and validating their effectiveness.
- Experience in a regulated, client-confidential, or professional services environment is advantageous.
- Comfortable moving between architecture, configuration, testing, and stakeholder engagement.
- Confident challenging outdated controls and practices while remaining pragmatic, commercially aware, and focused on business outcomes.
- Calm under pressure, collaborative, and able to build trust with technical and non-technical teams.
Skills
- Microsoft 365
- Entra ID
- Defender XDR
- Sentinel
- Azure
- Microsoft Purview
- Identity Security
- Zero Trust
- Cloud Security
- Data Security
- Endpoint Security
- Network Security
- Application Security
- API Security
- Secure Software Development
- Security Architecture Review
- Threat Modeling
- Technical Standards
- Reference Architecture
- Control Design
- Incident Response
- Detection Engineering
- Threat Hunting
- Vulnerability Management
- Exposure Management
- Security Automation
- Python
- PowerShell
- Logic Apps
- Azure Functions
- APIs
- Infrastructure as Code
- ISO 27001
- Cyber Essentials Plus
- NIST CSF
- AI Security Frameworks
- AI Governance Frameworks
Location
- City, London
Work Type
- Permanent
- Full Time
Experience Level
- Senior
Education Level
- Microsoft Certified: Cybersecurity Architect Expert, SC-100
- CISSP
- CCSP
- Microsoft security certifications (AZ-500 or SC-200)
- GIAC certifications (incident response, cloud, detection or forensics)
- ISO 27001 Lead Implementer or Lead Auditor
- Architecture or threat-modelling accreditation (SABSA, TOGAF or equivalent practical experience)
Salary/Compensations
- £75,000 / year
About the Company
- Moore Kingston Smith is a firm that is looking to strengthen its future security architecture.
