Share this job
Cyber Security Architect
London, England, United Kingdom
Apply for this job

Cyber Security Architect

Moore Kingston Smith helps people realise their ambitions through audit, tax and advisory work that depends on trust. As Cyber Security Architect you will turn that trust into working controls—designing, prototyping and proving security across identity, cloud, data and AI so the firm can adopt Microsoft 365 Copilot and new platforms without compromising client confidentiality.

Performance Objectives

  • Define and maintain a Zero Trust security architecture covering identity, endpoints, networks, Azure, SaaS, data and applications, with reference designs teams can implement within 12 months.
  • Lead architecture reviews and threat models for major projects, high-risk integrations and AI (Copilot, agents, custom apps), so residual risk is explicit and accepted before go-live.
  • Design, configure and validate modern controls in Microsoft 365, Entra ID, Defender XDR, Sentinel and Purview; measure effectiveness through detection coverage and reduced exposure.
  • Raise detection, response and recovery capability with our SOC and partners, owning playbooks and post-incident improvements for high-severity events.
  • Prioritise vulnerability and attack-path remediation using exploitability and business impact so critical exposures close on agreed SLAs.
  • Produce technical evidence that supports ISO 27001, Cyber Essentials Plus and client assurance without slowing delivery.
  • Coach technology owners in secure-by-design and automation (PowerShell, Python, Logic Apps, IaC) so security scales beyond the core team.

Environment & Resources

You sit in Information Security, report to the Head of Information Security, and work hands-on with IT Infrastructure, delivery teams and specialist partners. Microsoft-centric stack, external SOC, and a mandate to be practical and commercially aware—not a paper architecture role.

Essential Qualifications

  • Proven security architecture or senior security engineering in a Microsoft estate (M365, Entra ID, Defender, Sentinel, Azure, Purview).
  • Delivered Zero Trust, identity, cloud, data, endpoint, network and application/API controls that were implemented and tested, not only documented.
  • Threat modelling, technical standards and control design for complex or regulated environments.
  • Practical incident response, detection engineering, exposure management and security automation.
  • Clear, risk-based advice to senior stakeholders and influence without formal authority.
  • Working knowledge of ISO 27001, Cyber Essentials Plus and NIST CSF; AI security experience strongly preferred.

Role Selling Points

  • Shape the firm’s security architecture as we scale AI and digital services across commercial and nonprofit clients.
  • Hands-on technical leadership: design, configure, validate—not advisory-only.
  • Direct impact on client trust in a Moore Global professional services firm.
  • Scope to modernise controls and retire outdated practice with senior sponsorship.

If you build security that works in production and can prove it, apply now and help us protect the ambitions we exist to serve.

Apply for this job
Powered by