Information Security Architect

  • Full-time

Company Description

Meet Unit4. With over 40 years of heritage, we’re an agile, fast growing, Cloud company that is on a mission to redefine Enterprise Resource Planning (ERP) for mid-market people-centric organisations.  

With our innovative, self-driving, adaptive and intuitive software, our customers can spend more time on meaningful high-value work.  

At the heart of what we do lies a simple yet profound purpose: Improve how people work by focusing on what truly matters.  A powerful statement that enables different priorities for different people. 

We’re shaping how work should feel, and we empower our people by providing them with the right tools to achieve the autonomy they need - it's what makes us unique. 

Job Description

At Unit4, we’re in Business for People. The Global Security organisation protects our people, platforms, products, and customers by driving secure design, resilience, and maturity across the entire business. As we strengthen our architecture capability across CISO, IT, and CloudOps, we are seeking an experienced Security Architect to partner across the enterprise and help shape Unit4’s future‑state security landscape. 

This role sits within the CISO Security Team but works with Product/Engineering, Enterprise Architecture and CloudOps. You will play a pivotal role in designing, governing, and embedding secure architectural principles across Unit4’s technology estate. 

 

Job Description 

The Security Architect will develop, and mature Unit4’s enterprise security architecture across cloud, infrastructure, identity, SaaS, and endpoint domains. You will collaborate with senior stakeholders, guide teams, and translate business strategy and risk into secure, scalable, and pragmatic designs. 

This is a hands‑on architectural role for someone who thrives in complex environments, can operate strategically and tactically, and who brings expertise across security architecture, cloud, and modern enterprise platforms. 

 

Key Responsibilities 

Enterprise Security Architecture  

  • Lead the security target state architecture and multi-year roadmap, aligning risk reduction and business outcomes; socialize tradeoffs with leadership. 
  • Lead enterprise architecture assessments across multiple environments, including:  
    • Cloud (Azure) security and network infrastructure, including Kubernetes 
    • Identity & access management (zero trust, conditional access, PAM/PIM) 
    • CI/CD pipelines and secure software development 
    • AI / LLM 
  • Partner closely with Cloud Ops and Product Architecture to ensure security is designed into enterprise platforms and product roadmaps. 
  • Develop security reference architectures, and patterns aligned to Unit4’s security vision. 
  • Design and implementation of layered enterprise security architectures, ensuring defence-in-depth and resilience across digital estates. 
  • Act as a architectural authority in engagements interdepartmentally, providing well reasoned viewpoints on security principles, technologies, and patterns. 
  • Ensure architectural decisions incorporate regulatory, customer, and audit requirements and are evidenced through pattern adoption and architecture reviews. 
  • Partner closely with Product/Engineering, Enterprise Architecture and CloudOps to embed security controls, influence technology decisions, and ensure alignment to security strategy. 
  • Engage with senior stakeholders to shape cyber direction and ensure architectural consistency across teams. 

 

Cloud & Infrastructure Security 

  • Secure architecture for multi‑cloud environments (Azure primary; awareness of AWS/GCP) across networking, compute, data, containers, and serverless. 
  • Collaborate on the security design, engineering, and implementation of solutions within the Microsoft 365 (M365) and Entra ID ecosystems. 
  • Consult on Microsoft security tooling including Microsoft Defender XDR, Defender for Cloud, Azure Policy, Endpoint management, Azure Network Security, and Conditional Access. 
  • Evaluate new cloud services, ensuring risks are identified and mitigated before adoption. 

 

Cloud Operations and Product 

  • Collaborate on the security design for workloads deployed on cloud environments (Microsoft Azure preferred) (IaaS, PaaS, and Serverless), ensuring alignment with corporate security policy and regulatory requirements. 
  • Develop secure reference architectures for Azure cloud services, covering: 
  • Container platforms including AKS: cluster governance and baseline policies, workload identity,  secrets management, runtime threat detection, tenancy/isolation and scale/cost guardrails. 
  • Compute: VMs, scale sets, serverless workloads. 
  • Storage & Data Services: Storage Accounts, Azure SQL, managed databases, key management, data loss prevention. 
  • Mature security by design in Product, including compliance checks in pipeline, and architecture review and assurance for deviations from standards. 
  • Contribute security nonfunctional requirements, reference patterns, and threat models to Product roadmaps; review high‑impact designs; ensure product changes align with enterprise guardrails. (Scope is collaborative and advisory, not ownership of Product delivery backlogs.) 

 

Thought Leadership & Capability Building 

  • Contribute to enterprise blueprints, playbooks, and whitepapers to mature the architectural practice. 
  • Support the ongoing development of Unit4’s secure culture and help uplift security knowledge across technical teams. 
  • Serve as a trusted advisor, articulating complex security concepts and risks to both technical and non‑technical audiences. 

 

Qualifications

Essential Experience

  • 7–10+ years’ experience in IT or cybersecurity, with at least 3 years in a dedicated security architecture role.
  • Relevant industry certifications (e.g., CISSP, Microsoft Certified: Cyber security Architect Expert (SC-100), Azure Security Engineer (AZ-500)).
  • Proven experience designing large‑scale, secure enterprise solutions in complex organisations.
  • Deep technical expertise across cloud (Azure required), identity, network, endpoint, SaaS, and modern enterprise architectures.
  • Strong hands‑on knowledge of Microsoft security technologies (Defender XDR, Defender for Cloud, Conditional Access, Entra ID governance, PIM, etc.).
  • Demonstrated experience delivering Zero Trust concepts in production environments.
  • Strong understanding of DevSecOps principles and automation tooling.
  • Ability to clearly articulate security risks and solutions to both engineering teams and executive stakeholders.

 

Desirable Experience

  • Knowledge of major frameworks (NIST, ISO27001, SOC reporting, CIS, MITRE ATT&CK, CSA CCM).
  • Experience with IaC tools (Terraform, Bicep) and scripting languages (PowerShell, Python).
  • Experience designing scalable architectures for hybrid or multi‑cloud environments.
  • Prior experience in large enterprises, SaaS providers, or regulated sectors.

 

Soft Skills

  • Strong consulting-style capability: facilitation, stakeholder engagement, and outcome‑based delivery.
  • Comfortable operating in ambiguous environments and simplifying complexity.
  • Ability to operate independently, managing multiple projects and driving technical decisions.
  • Strategic thinker able to connect long‑term goals with short‑term action.
  • Collaborative and credible across cross‑functional teams.
  • Passionate about security, innovation, and helping the organisation grow securely.

 

Why This Role Matters

Security architecture underpins Unit4’s resilience, customer trust, and long‑term success. As Senior Security Architect, you will shape the future of how Unit4 protects and empowers its people, products, and global customer base. You will influence decisions across CISO, IT, and CloudOps and ensure that security is embedded at the heart of Unit4’s technology strategy.

Additional Information

Who we are

We are a people-first community that nurtures all the areas that surround your working experience. With us, you’ll be surrounded by a high-performance team that supports your authentic self and celebrates your uniqueness.
We believe that ‘How work should feel’ is an evolving statement. Work goes beyond tasks and everyday responsibilities it’s about feeling valued, empowered, promoted, impactful, seen, and appreciated.
We are reimagining how work makes people feel.

What we offer

• a culture built on trust and accountability - giving you the freedom and autonomy to be successful and make an impact
• balance - with our Flexible Leave Paid Time Off policy, remote working opportunities, Global Wellbeing Days, and other great benefits
• growth opportunities - we provide the tools and guidance required so that you can focus on what really matters to you and so, ultimately, you can achieve your best work
• talented colleagues, role models and mentors - work, learn and be inspired by some of the best talent in the software industry
• a commitment to sustainability - with initiatives such as our Environmental, Social, and Governance strategy and Act4Good programme
• a safe and inclusive working environment – supported by our Employee Resource Groups, which are open to all.

Our commitment to equity

Unit4 is committed to ensuring equal opportunity for everyone. We make our hiring decisions solely based on skills, qualifications, and our current business needs. We know that diversity brings fresh perspectives, ideas, and solutions to our company. This is the essence of our culture. We also welcome and encourage people who are pregnant and/or parents-to-be to apply. If you would like to know more about our commitment to diversity, visit our blogs:
• Our focus to DEI remains central to who we are
• Inclusive hiring at Unit4: Building equal opportunities for all

Background check

This role may require security clearance required for customer projects and access to sensitive (customer) data. That means that after you have accepted our offer, we could ask for background checks. Subject to applicable local laws, such security checks may require disclosure of personal information including criminal record declaration, right to work, personal identification and work history. No worries – we'll handle it according to local privacy laws and keep your information safe. Questions? Feel free to reach out!

By clicking the link above or any third-party link within this posting, you are leaving this site and going to a third-party website where the third-party website's terms and privacy policy apply

Privacy Notice