Security Solution Architect at Morson Edge, Multiple Locations, £Contract Rate

Contract Description

Job Title: Senior Security Solutions Architect

£750 - £800 p/d - Outside IR35

2-3 Days on-site - London

6 Months initial duration

Role Overview

The Senior Security Solutions Architect is a tactical, results-driven role responsible for addressing specific business challenges by designing, implementing, and maintaining robust security solutions across the technology ecosystem. You will serve as a critical bridge, interpreting the strategic directives of Enterprise Architecture to create project-specific architectures that are secure by design. Your work will ensure that solutions are delivered within budget and on time while remaining functionally suitable and resilient against evolving threats.

Core Responsibilities

Architectural Design & Solutioning: Lead the development of High-Level Designs (HLDs) and Low-Level Designs (LLDs), ensuring all technical solutions align with security principles such as Zero Trust and "defence in depth".

Security Risk Management: Lead comprehensive security risk assessments for critical systems, developing mitigation strategies that balance security requirements with operational needs and business agility.

Cloud & Infrastructure Security: Design and validate secure architectures for multi-cloud and hybrid environments (AWS, Azure, GCP), focusing on platform protection, network resilience, and digital sovereignty.

Threat Modelling & Analysis: Establish and implement a tactical threat modelling methodology (e.g., STRIDE, PASTA) to identify design flaws early in the development lifecycle, ensuring security is "built-in" rather than "bolted on".

Identity & Access Management (IAM): Establish robust IAM and Identity Relationship Management (IRM) policies, ensuring least privilege principles are enforced across both human and non-person entities.

DevSecOps Integration: Collaborate with software development teams to "shift left," integrating security automated checks and "policy as code" directly into CI/CD pipelines.

Technical Governance & Compliance: Act as a Technical Design Authority (TDA), reviewing artifacts for accuracy and maintaining the programme's technical standards against frameworks like NIST SP 800-207 and ISO 27001.

Future-Focused Technical Scope

AI Governance: Guide the responsible implementation of AI and Machine Learning, ensuring models are transparent, ethically anchored, and secure against AI-driven attacks.

Post-Quantum Cryptography (PQC): Validate cryptographic inventories and drive crypto-agility to prepare the organisation for the transition to quantum-safe encryption.

Required Experience and Qualifications

Years of Experience: 7+ years in IT security, with at least 3 years specifically in security architecture.

Technical Expertise: Deep understanding of system design, software engineering, and infrastructure automation.

Framework Proficiency: Hands-on experience with SABSA, TOGAF, and the ISO 27002 framework.

Behavioural Competencies

Strategic Thinking: Ability to develop long-term solutions that anticipate future challenges while remaining flexible.

Communication & Influence: Exceptional skills in translating complex security concepts for non-technical stakeholders and influencing teams without direct authority.

Analytical Problem Solving: Proficiency in troubleshooting and technical analysis to resolve cross-stream architectural conflicts.

Mentorship: Dedication to coaching junior team members and security champions within development squads