SoCode Limited
Enterprise Security Architect/DevSecOps
Job Description
Salary: £? - ? per year
Requirements:- Proven experience building private cloud infrastructure, not just consuming public cloud
- Strong background with open-source infrastructure stacks, containerisation and platform technologies
- Deep hands-on security architecture and engineering experience across large-scale datacentre or hybrid environments
- Strong threat-modelling and attack-path analysis skills
- Practical knowledge of compute, virtualisation, containers, orchestration, storage, networking and platform management
- Experience with IaC, CI/CD, policy-as-code and hardened image pipelines
- Expertise in PKI, secrets, privileged access, segmentation, workload isolation and infrastructure hardening
- Ability to define reusable patterns, measurable criteria and security standards
- Experience with automated testing, attack simulation and vulnerability management
- Credibility to influence multidisciplinary engineering teams and balance risk against delivery
- Own and evolve threat modelling across the platform, infrastructure, workloads and onboarding pathways
- Translate threat stories into engineering requirements, acceptance criteria and delivery priorities
- Drive secure-by-design practices through IaC, CI/CD, policy-as-code and hardened image pipelines
- Define reusable standards for identity, privileged access, secrets, PKI, segmentation, logging and recovery
- Translate NIST/STIG frameworks into pragmatic, testable controls
- Automate posture, evidence and continuous validation across the platform
- Act as the security conduit across engineering, programme leadership and enterprise security
- Architect
- CI/CD
- Cloud
- Embedded
- Security
- DevSecOps
More:
Were hiring an Enterprise Security Architect to work between architecture and engineering on a major on-premises private cloud build. This is not a public-cloud security role: were shaping the security foundations of brand-new private cloud infrastructure using open-source software stacks and modern platform-engineering practices. The role is embedded full-time within an engineering-led programme as a dedicated security partner, working directly with architects and engineers to turn threats into mitigations, automated tests, hardened configurations and auditable evidence.
last updated 40 week of 2026
Interested in this role?
Submit your application now
How to Apply
About SoCode Limited
SoCode Limited
Cambridge
IT
Skills & Technologies
Inferred from job description