1 day ago
London, United KingdomSenior
Responsibilities
- Develop enterprise security architecture strategies aligned with business and regulatory requirements.
- Design secure systems, networks, and applications across on-premise, cloud, and hybrid environments.
- Conduct threat modelling and risk assessments and define remediation strategies.
- Guide DevSecOps adoption by embedding security controls, guardrails, audit trails, and escalation pathways within the SDLC.
- Use approved AI-enabled tools and automation where appropriate while maintaining human review and responsible AI safeguards.
- Champion security awareness and mentor engineering, architecture, and delivery teams.
- Design security approaches for IAM, endpoint protection, application security, network security, and Zero Trust environments.
Requirements
- Extensive experience designing and implementing secure architectures across cloud and hybrid environments.
- Experience designing solutions using Palo Alto, Microsoft, or similar security ecosystems.
- Deep knowledge of NIST, ISO 27001, CAF, and TOGAF security frameworks and standards.
- Experience designing Zero Trust Architecture solutions.
- Expertise in IAM, endpoint protection, application security, and network security.
- Ability to communicate complex security concepts to technical and non-technical audiences.
- Relevant certifications such as CISSP, CISM, TOGAF, or cloud security certifications are advantageous.
- Experience with AI security architecture, responsible AI standards, guardrails, or governance in regulated environments is advantageous.
- Hands-on experience with SIEM, firewalls, and IAM solutions is advantageous.
- Experience with GDPR or PCI-DSS compliance, or familiarity with Python, Java, or C++, is advantageous.
Benefits
- Permanent London role with a hybrid work arrangement.
- Discretionary bonus, competitive pension, health insurance, life insurance, and critical illness cover.
- Mental-health and healthcare support including CareFirst, Unmind, Aviva consultations, first aiders, and online GP services.
- Maternity, adoption, shared parental, sickness, pregnancy loss, fertility treatment, menopause, and bereavement leave, plus eight complimentary backup-care sessions.
- Five weeks of annual leave with the option to buy or sell holiday days.
- At least 40 hours of annual training, access to certifications and e-learning, and a Business Coach from Day One.
- Additional benefits including Gympass (Wellhub), travel insurance, Tastecard, season-ticket loans, Cycle to Work, and dental insurance.
About Capco
Capco is a global technology and management consultancy focused on financial services, helping banks, capital markets, insurance, and wealth firms with digital transformation, risk and compliance, and data/AI-enabled modernization. Founded in 1998 and headquartered in London, it operates as a Wipro company. Its business model centers on project-based consulting, managed services, and solution delivery across strategy, engineering, and platforms for regulated institutions.
