What you’ll do
As a Security Architect within Secure by Design, you will be accountable for embedding security into IT and Digital systems by design, ensuring that security is considered early, applied proportionately, and assured consistently across programmes and business as usual change.
You will provide end to end security architecture leadership across VodafoneThree’s IT & Digital estate, partnering with delivery teams, architects, and senior stakeholders to ensure that solutions are secure, compliant, resilient, and aligned to regulatory and business obligations.
This role plays a critical part in protecting VodafoneThree from persistent cyber threats while enabling safe digital transformation at pace.
As a Security Architect in Secure by Design, you will define, document, and assure end to end security architectures that protect the confidentiality, integrity, and availability of VodafoneThree’s IT & Digital systems.
You will work closely with:
- UK IT & Digital, Networks and Data & Analytics teams
- UK & Group architecture functions
- Secure by Design Managers, Consultants, and Cyber Security Champions
You will influence senior technical stakeholders to ensure UK security requirements are understood, accepted, and embedded, supporting compliance with TSA, data protection, and other regulatory frameworks.
- Act as a member of the Secure by Design Security Architecture team, representing IT & Digital domains
- Own and deliver end to end security architecture for assigned initiatives
- Define and embed technical and non-technical security controls into solution designs
- Review and assess solution architectures against VodafoneThree security policies, standards, and patterns
- Approve compliant designs and escalate deviations and exceptions in line with SbD governance
- Provide security input during RFx, supplier selection, contracting, and early design phases
- Embed Secure by Design principles into Agile, DevSecOps, CI/CD and product centric delivery models
- Identify, assess, and manage cyber security risks—ensuring risks are recorded, owned, and mitigated
- Specify and scope penetration testing and security assurance activities for complex solutions
- Ensure vulnerabilities and findings are tracked and remediated prior to go live
- Engage business and technology teams to understand roadmaps and future plans, ensuring timely security engagement
- Influence internal teams, suppliers, and partners to adopt secure design practices
- Provide technical leadership, mentoring, and design guidance to SbD Managers, Consultants, and Cyber Security Champions
- Lead or support regulatory, compliance, and audit activities relevant to IT & Digital systems