Leave us your email address and we'll send you all the new jobs according to your preferences.

Senior Product Security Architect

Posted 2 hours 28 minutes ago by Lloyds Bank plc

Permanent
Full Time
Other
Yorkshire, Leeds, United Kingdom, LS1 8
Job Description
Overview

Senior Product Security Architect to join the Enterprise Security Architecture team. This role combines application security engineering, vulnerability management and developer engagement into a unified product security capability. You will work with engineering, platform teams and product owners to ensure security is built in from the start and to lead remediation of risk across the application estate. The security architecture function provides thought leadership and cross cutting influence to align the Group's security posture with its ambitions.

Responsibilities
  • Define and own the target states for application security and vulnerability management, solving sophisticated architectural problems.
  • Act as a trusted security partner to engineering, communicating in their language and focusing on enabling progress rather than gatekeeping.
  • Conduct research and development with other security teams to keep the security architecture ahead of challenges and the technology transformation agenda.
  • Describe and help lead the complexity of the Group's Enterprise Security Architecture and interlocks.
  • Support strategic change within the Group, taking a leading architectural role in shaping and supervising security initiatives.
  • Stay ahead of emerging product security challenges, including AI integrated application risk, software supply chain security and cloud native attack surfaces.
  • Represent the security architecture function in senior stakeholder forums with confidence.
  • Produce artefacts and manage delivery dates, ensuring alignment with the wider reference architecture and Group Security Architecture.
What we're looking for / Qualifications
  • Deep hands on experience with application security capabilities and tooling, and the ability to integrate them within modern CI/CD pipelines.
  • Solid understanding of secure software development practices across the full SDLC, including agile and DevSecOps.
  • Experience owning or significantly contributing to a vulnerability management programme at scale, including prioritisation methodology, metrics design and executive reporting.
  • Proven ability to build trusted relationships with engineering and product teams.
  • Experience with cloud native application architectures (containers, microservices, serverless) and the security considerations for these environments.
  • Familiarity with AI integrated application risk, including LLM integration, RAG architectures and AI assisted development tooling.
  • Strong written and verbal communication skills, able to translate technical risk into business language and vice versa.
Benefits
  • A generous pension contribution of up to 15%
  • An annual performance related bonus
  • Share schemes including free shares
  • Benefits you can adapt to your lifestyle, such as discounted shopping
  • 30 days' holiday, with bank holidays on top
  • A range of wellbeing initiatives and generous parental leave policies
Email this Job