Security Architect – SAP, ServiceNow, SalesForce, Azure – Global

  • Full Time
  • Anywhere

Website Smart Sourcer

Security Architect – SAP, ServiceNow, SalesForce, Azure – Global

We’re looking for an experienced Security Solutions Architect to lead security architecture across a major enterprise transformation programme. If you thrive in complex environments, enjoy shaping secure design across multiple platforms, and can influence senior stakeholders, this is a standout opportunity.

Required Experience:
• 7–10 years in security architecture or security‑focused solution architecture.
• Strong experience securing enterprise platforms (SAP, ServiceNow, Salesforce, cloud, integration, data).
• Deep knowledge of IAM, SSO, MFA, SAML, OAuth2, encryption, key management, zero‑trust, network segmentation and secure API/event‑driven design.
• Proven ability to work with ISO 27001, NIST, CIS, GDPR and audit frameworks.
• Excellent documentation, diagramming and threat‑modelling skills.
• Confident influencing architects, engineers and senior leaders.
• SAP (ECC/S4): authorisation models, SoD, secure interfaces (IDoc/BAPI/OData/RFC), hybrid data flow protection.
• ServiceNow: ACLs, roles, IntegrationHub, MID Server, CMDB protection, secure monitoring.
• Salesforce: sharing model, permission sets, API security, OAuth2/OIDC, PII protection, encrypted fields.
• Cloud & Integration: secure API design, zero‑trust networking, Azure security (Managed Identity, Key Vault, Conditional Access, PIM/PAM), NSGs, firewalls, private endpoints, secure logging pipelines.
• A willingness to work on client site (North London) 1-2 days per week

What You’ll Do:
• Own the end‑to‑end security architecture for all solutions in the transformation programme.
• Embed zero‑trust, secure‑by‑design principles across SAP, ServiceNow, Salesforce, cloud, integration and data platforms.
• Produce high‑quality security artefacts: HLDs, threat models, design patterns, data flows, control mappings and impact assessments.
• Lead security reviews at TDA/PDA, providing authoritative sign‑off.
• Ensure RBAC, SAML/OAuth2/OIDC, secure API patterns, encryption, PAM/PIM, logging and SIEM integration are consistently applied.
• Drive compliance with ISO 27001, NCSC Cloud Security Principles, GDPR, CIS benchmarks and other frameworks.
• Conduct risk assessments, maintain ADRs and support audit readiness.

£95k-£100k, 12-month Fixed Term Contract. London & remote

To apply for this job please visit uk.linkedin.com.