This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
As a Security Architect within Secure by Design, you will be accountable for embedding security into IT and Digital systems by design, ensuring that security is considered early, applied proportionately, and assured consistently across programmes and business as usual change. You will provide end to end security architecture leadership across VodafoneThree’s IT & Digital estate, partnering with delivery teams, architects, and senior stakeholders to ensure that solutions are secure, compliant, resilient, and aligned to regulatory and business obligations. This role plays a critical part in protecting VodafoneThree from persistent cyber threats while enabling safe digital transformation at pace.
Job Responsibility:
Embedding security into IT and Digital systems by design
Providing end to end security architecture leadership across VodafoneThree’s IT & Digital estate
Defining, documenting, and assuring end to end security architectures
Working closely with UK IT & Digital, Networks and Data & Analytics teams
Influencing senior technical stakeholders to ensure UK security requirements are understood, accepted, and embedded
Acting as a member of the Secure by Design Security Architecture team
Owning and delivering end to end security architecture for assigned initiatives
Defining and embedding technical and non-technical security controls into solution designs
Reviewing and assessing solution architectures against VodafoneThree security policies
Approving compliant designs and escalating deviations
Providing security input during RFx, supplier selection, contracting, and early design phases
Embedding Secure by Design principles into Agile, DevSecOps, CI/CD and product centric delivery models
Identifying, assessing, and managing cyber security risks
Specifying and scoping penetration testing and security assurance activities
Ensuring vulnerabilities and findings are tracked and remediated prior to go live
Engaging business and technology teams to understand roadmaps
Influencing internal teams, suppliers, and partners to adopt secure design practices
Providing technical leadership, mentoring, and design guidance
Leading or supporting regulatory, compliance, and audit activities
Requirements:
Experience in cyber security roles, with strong architecture focus
Proven experience delivering complex, cross domain IT & Digital security architectures
Strong understanding of security risks, threat modelling, and mitigating controls
Hands on experience securing public cloud platforms (AWS, Azure, GCP)
Deep knowledge of containerised, virtualised and hybrid infrastructure
Strong knowledge of security and compliance frameworks (ISO 27001, NIST, COBIT, SOC2, ITIL)
Understanding of regulatory and data protection requirements (PII, PCI DSS, privacy legislation)
Ability to influence senior technical and non-technical stakeholders
Excellent documentation, communication, and decision-making skills
SABSA and/or TOGAF architecture qualifications
CISSP, CCSP/CCSK, and cloud provider certifications
What we offer:
Excellent basic salary plus bonus and Vodafone benefits