Technology Manager - Security Architecture

Morrisons
Bradford
2 days ago
Create job alert

We are looking for a skilled Security Architect to join our Technology Architecture team. In this role, you will lead IT Security planning, design, governance, and assurance initiatives, ensuring alignment with the Security Reference Architecture. You will develop security product and application roadmaps, define long-term strategies, and design and govern Security Architecture for key programmes with a high strategic impact. As a Security Architect, you will collaborate with stakeholders across the organisation, attend Architecture and Technical Review boards, and provide expert guidance to ensure robust security solutions are in place.


Responsibilities

Planning and Design Activities

• Define and maintain security architecture processes aligned with business, technology, and threat drivers.

• Develop security strategy plans, roadmaps, and architecture artefacts, including models, templates, and standards.

• Establish baseline security standards for operating systems, network segmentation, and identity and access management.

• Contribute to standards for data encryption and tokenization based on data classification criteria.

• Draft security procedures and standards for executive review and approval.

• Establish a taxonomy of indicators of compromise (IOCs) and share insights with security teams.

• Continuously monitor developments in digital business and threat environments to refine security strategies and artefacts.


Assurance

• Validate IT infrastructure and reference architectures for security best practices and recommend improvements.

• Ensure proper security configurations for infrastructure tools such as firewalls, IPSs, WAFs, and endpoint protection systems.

• Facilitate threat modelling for services and applications tied to organisational risks.

• Maintain accurate inventories of systems and applications logged in the SIEM.

• Collaborate with DevOps to ensure secure coding practices and escalate risks as necessary.

• Document sensitive data flows and recommend security controls, including encryption and tokenization.

• Review network segmentation and ensure least privilege for network access (Zero Trust).

• Support testing and validation of internal security controls and assess emerging security technologies.


Collaboration

• Partner with vendor management to conduct security assessments of vendors, including SaaS, IaaS, MSPs, and payroll providers, ensuring adequate protections in contracts and SOWs.

• Coordinate with operational and facility management teams to assess the security of operational technology (OT) and IoT systems.

• Liaise with architects and practitioners to share best practices and insights.

• Work with the business continuity management (BCM) team to validate security practices during failover operations.

• Participate in application and infrastructure projects to provide security-planning guidance.

• Collaborate with the internal audit team to evaluate the design and effectiveness of security-related controls.


Role-specific knowledge, skills & experience:

  • Educated to degree level or equivalent
  • Five to ten years experience in IT Security roles
  • Experience of working in similar enterprises to Morrisons with large technological footprints
  • Proven experience working and defining Security Reference Architectures and within large programmes
  • Experience driving Security Strategies and Initiatives in large enterprise
  • Experience working with cloud vendors (AWS, GCP, Azure) and driving security policies and guide rails
  • Experience working within a structured governance framework
  • IT Security Qualification such as CISA/CISSP or BCS and PCI/ISA qualification


Industry and Regulatory Experience

The security architect is expected to have documented experience with the following:

Regulations, Standards and Frameworks

  • Payment Card Industry Data Security Standard (PCI-DSS)
  • General Data Protection Regulation (GDPR) and Privacy Practices
  • ISO 27001/2
  • Knowledge of OWASP 10
  • NIST Cybersecurity Framework (CSF)
  • CIS and Benchmarking


By joining Morrisons, you not only become an essential asset to our success but also open doors to a future where your professional journey aligns with the scale and diversity of our thriving business. It's not just a job; it's a pathway to a fulfilling and progressive career within one of the UK's leading retailers.


We want all colleagues to be able to bring their best selves to work, you can expect to enjoy (Just to name a few):

  • 4 and half day work week
  • Flexible remote working options
  • 15% colleague discount in stores and online, plus an additional 10% card for a friend or family member
  • Annual bonus scheme
  • Generous holiday entitlement
  • Company pension contributions
  • Private healthcare
  • Perks with over 850 retailers
  • Free onsite parking


If you're interested, please apply with your CV or alternatively contact me directly on

Related Jobs

View all jobs

OT Manager, Cybersecurity Global

IT Manager

Software Engineering Manager

Account Manager - B2B Tech PR

Account Manager -Client Services

IT Manager

Get the latest insights and jobs direct. Sign up for our newsletter.

By subscribing you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Quantum-Enhanced AI in Cyber Security: Guarding the Digital Frontier

The cyber security landscape has evolved dramatically over the past decade. Long gone are the days when businesses primarily worried about simplistic phishing or basic website defacements. Today’s threats include nation-state attacks, sophisticated ransomware, AI-generated phishing campaigns, and a wide array of stealthy intrusion methods. Organisations must defend vast digital ecosystems that include cloud infrastructure, IoT devices, and critical operational technology—any of which can become high-value targets for malicious actors. Amid these escalating challenges, a new technological wave is emerging: quantum computing. Although still in its infancy, quantum computing promises capabilities that could surpass even the most advanced classical supercomputers for specific tasks. Simultaneously, in the world of Artificial Intelligence (AI)—where data volumes and model complexity are exploding—quantum’s parallelism could significantly boost analysis, training, and decision-making. What unfolds when quantum computing and AI converge in the realm of cyber security? On one hand, quantum technologies could introduce stronger encryption and faster threat detection. On the other, adversaries armed with quantum power might break today’s cryptographic protocols or develop more potent attacks at unimaginable speeds. This article explores the phenomenon of quantum-enhanced AI for cyber security: the possibilities it unlocks, the challenges it poses, and the reasons it could reshape both defensive and offensive operations in the digital world.

Cyber Security Jobs at Newly Funded UK Start-ups: Q3 2025 Investment Tracker

Cyber security is no longer just a topic for tech-savvy professionals—it’s an essential pillar of every modern organisation. From protecting sensitive customer data to thwarting state-sponsored attacks, cyber security teams play a crucial role in safeguarding digital infrastructures across all sectors. In the UK, cyber security innovation is thriving, fuelled by a fertile mix of venture capital, government backing, and an ever-growing pool of talented specialists. Now, in the third quarter of 2025, we’ve seen a fresh influx of funding for cyber security start-ups that are poised to shape the industry’s future. This Q3 2025 Investment Tracker highlights newly funded UK-based cyber security start-ups, their core offerings, and—most importantly—the wide range of job opportunities they’re creating. Whether you’re a veteran security analyst, a pen tester, or a newcomer eager to explore the defensive side of tech, these start-ups are actively seeking professionals to help drive their next phase of growth. We’ll also guide you through the essential skills in demand, strategies to secure a role, and how to leverage CyberSecurityJobs.tech to fast-track your job search.

Portfolio Projects That Get You Hired for Cyber Security Jobs (With Real GitHub Examples)

With rising cyber threats and increasingly sophisticated attacks, cyber security has become a critical priority for organisations worldwide. From penetration testers (pentesters) and SOC analysts to cloud security engineers and threat intelligence specialists, the demand for skilled cyber security professionals continues to surge. But how do you stand out in a growing field? Alongside your CV, an impressive cyber security portfolio can be the distinguishing factor that convinces employers you’re the right fit. In this comprehensive guide, you’ll discover: Why a cyber security portfolio is essential for job seekers in this domain. How to align portfolio projects with different cyber security career paths. Real GitHub examples that demonstrate best practices in security-focused projects. Actionable project ideas you can start today, from penetration testing labs to blue-team detection pipelines. Best practices for organising your repos and presenting your work so hiring managers can instantly see your impact. When you’re ready to pursue your next opportunity, remember to upload your CV on CyberSecurityJobs.tech. Our specialised platform connects talented security professionals with employers who need your expertise—exactly what your portfolio will showcase.