Back to jobs

Security Architect

Rothesay is the UK’s largest pensions insurance specialist, purpose-built to protect pension schemes and their members’ pensions. With over £60 billion of assets under management, we secure the pensions of more than 930,000 people and pay out, on average, approximately £200 million in pension payments each month.

Rothesay is dedicated to providing excellence in customer service alongside prudent underwriting, a conservative investment strategy and the careful management of risk. We are trusted by the pension schemes of some of the UK’s best known companies to provide pension solutions, including Asda, British Airways, Cadbury, the Civil Aviation Authority, the Co-operative Bank, National Grid, Morrisons, the Post Office and telent.

At Rothesay, we are striving to transform our industry. We believe deeply in creating real security for the future and our leadership in finding new and better ways to do that is the key to our success. To do that, we need the very brightest original thinkers to bring creativity as well as rigour. Rothesay is a rewarding place to work, where quality people can thrive and prosper. We pride ourselves on the connections our people build, many of whom have been with us for over ten years.

Job title:         Security Architect
Contract:        Permanent


With significant executive support and sponsorship, Rothesay has launched a multi-year project to redevelop and modernize the full technology and security stack. To support this and maintain our risk exposure, we are making a significant investment in our Information Security team, processes, and technology.  This is a chance to join a small tight-knit Security Engineering team at an exciting time where we are designing and building the core services which will allow Rothesay to continue operating securely as we scale and enhance.

If you like working on designs for high scale, leading-edge, and operating in a truly cloud-native fashion, then we want to hear from you!

Responsibilities: 

  • You will be part of the Security Engineering team helping design, implement and support key services
  • We don’t sit on the sideline and advise; we get stuck in and help our stakeholders develop intuitive and meaningful secure solutions
  • Strong hands-on experience working with major cloud solutions (IaaS, PaaS, Event-driven / Serverless, SaaS) AWS and/or Azure
  • Collaborating with engineering teams on delivering secure products and services, to understand design proposals, and evaluate architectures
  • Designing robust secure patterns and produce guidance to reduce risks through opinionated architecture
  • Perform security architecture views of key processes and systems. Working alongside teams during the development phase
  • Adept at threat modelling as a medium to demonstrate the impact and purpose of security
  • Develop policy as code, templates, and modules to implement and enforce secure patterns and guidance
  • Working with Infrastructure as Code, Containers, CI/CD concepts
  • Clearly articulate and communicate the value of a security control vs the friction it may introduce
  • Comfortable working with developers and secure development tooling

Skills & Experience 

Required: 

  • 5+ years of relevant technical experience  
  • Experience as a Security Engineer or Software Engineer
  • Strong cloud and cloud native experience
  • Strong communication skills. Ability to communicate at all levels with both technical and executive stakeholders
  • A high-level understanding of security principles, control frameworks (NIST), and security risks as they apply to cloud solutions
  • A good understanding of the latest security threats, threat actors, and the tactics and techniques adopted

 

Desirable

  • Possess a degree from a leading university in a relevant subject and/or have relevant industry qualifications such as CISSP/CISM  
  • Experience in financial services, risk management, pensions, or insurance 

 

Rothesay competencies

  • Dedication to role – Motivated to provide an effective support service across all facets of role
  • Team Player – Demonstrates evidence of being a strong team player, collaborates well with others and encourages other team members
  • Communication – Ability to communicate what is relevant and important in a clear, constructive and concise manner
  • Organised - Ability to work under pressure and prioritise workload in a fast paced environment. Ability to work autonomously with limited supervision
  • Creative and innovative – Looks for ways to improve current processes and help develop creative solutions that have practical value for the team
  • Judgement and Problem Solving – Proactive, sees the big picture and willing to be flexible to solve issues as they arise

 

Disclaimer This position description is intended to describe the duties most frequently performed by an individual in this position. It is not intended to be a complete list of assigned duties, but to describe a position level.  The role shall be performed within a professional office environment. Rothesay Life has health and safety polices that are available for all workers upon request.  There are no specific health risks associated with the role.

Inclusion Rothesay actively promotes diversity and inclusivity. We know that our success depends on our people and that by nurturing a culture that values difference, we create a stronger, more dynamic business. We welcome applications from all qualified candidates, regardless of race, colour, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability or age.

Apply for this job

*

indicates a required field

Resume/CV

Accepted file types: pdf, doc, docx, txt, rtf

Cover Letter

Accepted file types: pdf, doc, docx, txt, rtf