Security Architect - Anti-Piracy
On-siteOsterley, England, United Kingdom
Job Summary
Security Architect to design and improve security across Sky’s Anti-Piracy technology estate. Responsible for developing and maintaining a security architecture baseline across on-premises and cloud platforms, owning vulnerability management across infrastructure and applications, conducting security assessments across IPTV ecosystems, set-top boxes (STBs), Android devices, and cloud backends, and partnering with engineering, platform, data, and SRE teams to improve visibility and reduce risk. Define and promote security standards, patterns, and documentation; support threat modelling and secure-by-design practices; lead software R&D for Anti-Piracy tooling and takedown capabilities; and design proofs-of-concept for detection, disruption, and regulatory support. Essential criteria include hands-on experience in security engineering, strong understanding of security architecture principles, vulnerability management, security operations (including SIEM/MDR), cloud/hybrid environments (preferably GCP), and strong communication and cross-team collaboration skills. The role involves occasional hybrid work with an office base in Sky’s UK HQ and collaboration across engineering, platform, data, and business teams to build and maintain secure architectures and documentation.
Required Qualifications
- Experience in security engineering, infrastructure, network security, systems administration, or a related technical discipline, with a strong interest in developing security architecture expertise
- Good understanding of security architecture principles and frameworks, including defence-in-depth, zero trust, least privilege, and risk-based security approaches, with awareness of standards such as ISO 27001 and NIST CSF
- Experience of, or exposure to, vulnerability management processes, including vulnerability assessment, remediation tracking, risk prioritisation, and security testing activities
- Understanding of security operations concepts, including security monitoring, incident response, SIEM platforms, managed detection and response (MDR), and threat investigation practices
- Knowledge of cloud and hybrid environments (preferably GCP), alongside a solid understanding of Linux, Windows, networking fundamentals, and infrastructure security controls
- Ability to identify, assess, and communicate technical risks, security weaknesses, and remediation recommendations to both technical and non-technical stakeholders
- Strong collaboration and stakeholder engagement skills, with the ability to work effectively across engineering, platform, data, SRE, and business teams, and to create and maintain high-quality architecture, security, and technical documentation
- A proactive and curious mindset, demonstrating a willingness to learn, challenge assumptions, and develop towards a Security Architecture role through mentoring, training, and hands-on experience
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.