CV

Enterprise Security Architect/DevSecOps

CV-Library Cambridge Posted 02 Oct 2026 Closing: 01 Jan 0001
Permanent Hybrid Featured
£850/day Inside IR35

Role Description & Technical Scope

We’re hiring an Enterprise Security Architect to sit right between architecture and engineering on a major on‑prem Private Cloud build. This isn’t a public‑cloud security role — you’ll be shaping the security foundations of a brand‑new private cloud infrastructure, built using open‑source software stacks and modern platform‑engineering practices.

The RoleEmbedded full‑time within an engineering‑led programme, you’ll be the dedicated security partner — threat‑modelling the platform, defining secure designs, validating controls, and embedding DevSecOps across the stack. You’ll work directly with architects and engineers to turn threats into real mitigations, automated tests, hardened configurations and auditable evidence.

Key Responsibilities

Own and evolve threat modelling across the platform, infra, workloads and onboarding pathways.

Translate threat stories into engineering requirements, acceptance criteria and delivery priorities.

Drive secure‑by‑design through IaC, CI/CD, policy‑as‑code and hardened image pipelines.

Define reusable standards for identity, privileged access, secrets, PKI, segmentation, logging and recovery.

Translate NIST/STIG frameworks into pragmatic, testable controls.

Automate posture, evidence and continuous validation across the platform.

Act as the security conduit across engineering, programme leadership and enterprise security.What You’ll Bring

Proven experience building private cloud infrastructure — not just consuming public cloud.

Strong background with open‑source infrastructure stacks, containerisation and platform technologies.

Deep hands‑on security architecture + engineering experience across large-scale datacentre or hybrid environments.

Strong threat‑modelling and attack‑path analysis skills.

Practical knowledge of compute, virtualisation, containers, orchestration, storage, networking and platform management.

Experience with IaC, CI/CD, policy‑as‑code and hardened image pipelines.

Expertise in PKI, secrets, privileged access, segmentation, workload isolation and infra hardening.

Ability to define reusable patterns, measurable criteria and security standards.

Experience with automated testing, attack simulation and vulnerability management.

Credibility to influence multidisciplinary engineering teams and balance risk vs delivery

Ready to apply for this cyber security position?

This opportunity is hosted on CV-Library. Click below to view full details and submit your application.

Key Details
  • Date Posted: 02 Oct 2026
  • Location: Cambridge
  • Employment: Permanent
  • Workplace: Hybrid
  • Domain: IT
Employer Profile
CV
CV-Library
Verified Tech Employer

Enterprise technology firm or security consultancy operating across the UK digital defense ecosystem.

More Jobs at CV-Library
Related Cyber Opportunities
Cyber Security Trainee Placement Programme
CV-Library • CB1, Cambridge, Cambridgeshire
Information Security Manager
CV-Library • Cambridge, Cambridgeshire
DevSecOps Engineer
CV-Library • Cambridge