Rodeo
Get started

BDO

Specialist, Security Architect

United Kingdom
Posted about 16 hours ago
Sign up to applySee more jobs like this
Get notified of more jobs like this · No spam, ever

How your CV stacks up

1Upload CV
2Analyse CV
3Improve CV

Upload your CV to see how well it fits this job role

?%

We’re BDO, a global network connected to local markets. Our people work together to provide specialist expertise, helping businesses achieve their goals and grow.

We inspire others, to go further. We create together, to reach higher. We build trust, to lead purposefully.

Whether you're building your future or starting your career – with us, you won’t do it alone. From creating solutions for our clients to building careers for our people, we shape what matters, and that’s where you come in.

Role: Security Architect

The Security Architect is responsible for defining, governing and continuously improving BDO Global’s security architecture across both Global Corporate Network (GCN) and Global Hosting Services (GHS) environments. The role ensures that security is embedded secure‑by‑design and secure‑by‑default across platforms, services, applications and initiatives, with a strong emphasis on Microsoft technologies including Azure, Microsoft 365, Sentinel, Defender, Lighthouse and Intune. The architect provides authoritative technical leadership and acts as a security advisor to development and delivery initiatives, ensuring security requirements are embedded throughout the solution lifecycle. This includes advising on application and platform design, cloud‑native services, identity integration, data protection and secure development practices. The role translates security strategy, risk and regulatory requirements into pragmatic, scalable architectural patterns and standards, supporting global member firms, central platforms and shared services while ensuring alignment with BDO Global’s ISMS, Zero Trust principles and industry best practice (ISO 27001, NIST CSF 2.0, Microsoft security baselines).

Key Responsibilities

Security Architecture & Design Authority

  • Act as the design authority for security architecture across GCN and GHS platforms.
  • Define and maintain security reference architectures, patterns and standards, aligned to BDO Global’s Cyber Security Reference Architecture and Microsoft best practices.
  • Review and approve solution designs, ensuring consistent application of Zero Trust, least privilege, defence‑in‑depth and resilience principles.
  • Provide architectural assurance for new initiatives, major changes and technology onboarding.

Microsoft Security Platform Architecture

  • Design and govern security architecture across:
    • Azure (identity, networking, landing zones, PaaS/IaaS security)
    • Microsoft 365 (identity, collaboration, data protection, compliance)
    • Microsoft Defender (Endpoint, Identity, Cloud Apps, Office 365)
    • Microsoft Sentinel (SIEM/SOAR architecture, data onboarding, detection strategy)
    • Microsoft Lighthouse (multi‑tenant visibility and governance)
    • Intune (endpoint, mobile device and application management)
  • Ensure Microsoft Secure Score and Defender/Sentinel maturity improvements are architecturally driven and measurable.

Reasons to use Rodeo

I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?

Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.

Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.

Start with a chat, not a search bar

Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.

P

Graduate Consultant — 2026 Scheme

PwC·London, UK
£35,000/yr

Why you're a good match

Strong

Your economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.

See breakdown
Save jobNot relevant
View details

It searches the market for you

Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.

Why you're a good match

You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.

See breakdown
Strong

Experience fit

Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.

See breakdown
Strong

Only hits

No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.

Governance, Risk & Compliance Alignment

  • Ensure security architectures align with ISO 27001, NIST CSF 2.0, SOC 2, GDPR and internal ISMS controls.
  • Translate regulatory and audit requirements into technical security controls and design patterns.
  • Support internal and external audits by providing architectural artefacts, rationale and traceability.
  • Contribute to risk assessments, threat modelling and design‑time control validation.

Threat‑Led & Secure‑by‑Design Practices

  • Embed threat modelling, abuse‑case analysis and exposure‑aware design into solution architecture.
  • Ensure architectural alignment with vulnerability management, CTEM and threat intelligence outputs.
  • Promote secure development and platform engineering practices across global teams.

Stakeholder Engagement & Advisory

  • Act as a trusted security advisor to Global IT, platform owners, engineering teams and member firms.
  • Support both GCN and GHS stakeholders with pragmatic, risk‑based architectural guidance.
  • Collaborate closely with Security Operations, GRC, Identity, Infrastructure, Cloud and Service Delivery teams.

Continuous Improvement & Innovation

  • Monitor emerging security technologies, Microsoft roadmap changes and industry trends.
  • Identify opportunities to simplify, standardise and automate security architecture controls.
  • Contribute to maturity roadmaps, KPIs and continuous improvement initiatives.

Qualifications and Experience

  • Bachelor’s degree in Cyber Security, Information Technology, Computer Science or equivalent experience.
  • 7+ years’ experience in information security, with significant experience in security architecture roles.
  • Demonstrated experience designing security architectures in cloud‑first, Microsoft‑centric environments.
  • Strong background in enterprise identity, cloud security, endpoint security and SIEM/SOAR architectures.
  • Experience operating in complex, global or multi‑tenant environments.
  • Security certifications are highly regarded (e.g. CISSP, CISM, CCSP, SABSA, AZ‑305 (Azure Solutions Architect Expert), AZ‑500 (Azure Security Engineer Associate), MS‑102 (Microsoft 365 Administrator Expert))

Knowledge

  • Deep knowledge of Microsoft Azure and Microsoft 365 security architectures.
  • Strong understanding of Zero Trust Architecture, identity‑centric security and modern endpoint management.
  • Working knowledge of SIEM/SOAR, detection engineering and security monitoring concepts.
  • Strong understanding of secure development and application security principles, including secure SDLC, DevSecOps, threat modelling, identity and secrets management, API security, and cloud‑native application design.
  • Solid understanding of ISO 27001, NIST CSF 2.0, SOC 2, GDPR, ITIL v4 and COBIT.
  • Awareness of current threat landscape, attack techniques and defensive strategies.

Get help with your application

Your very own career expert that helps elevate your application to the next level.

Get help applying for this job

Skills and capabilities

  • Strong architectural thinking with the ability to translate strategy and risk into practical designs.
  • Excellent communication skills, able to influence senior stakeholders and technical teams.
  • Ability to balance security, usability, cost and operational impact.
  • Comfortable operating across strategic, tactical and operational layers.
  • High attention to detail with strong documentation and assurance discipline.

Why BDO?

We inspire others, to go further

At BDO, your ideas matter. You’re encouraged to think beyond the expected, explore new possibilities, and shape your own path. Here, you can make a meaningful impact, on your career, on your community, and on the future we build together.

We create together, to reach higher

We’re a people‑powered organisation, united by our diverse strengths and shared ambition. You’ll join a collaborative global team that values your perspective, amplifies your ideas, and supports your growth. Through global connections, shared knowledge, and opportunities for mobility, you’ll be part of something bigger: creating solutions that matter.

We build trust, to lead purposefully

Your expertise drives real outcomes at BDO. You’ll be part of an organisation that is trusted, recognised, and respected worldwide. With a strong commitment to integrity, sustainability, and positive impact, you'll be empowered to lead with purpose, both in the work you deliver, and in the communities where you live and work.

Privacy statement

The BDO network is coordinated by Brussels Worldwide Services BV (BWS). By providing personal information during the application process, you consent to BWS processing your personal data for the purpose of treating your application, evaluating your candidacy, and contacting you about the position for which you have applied. We also may process your personal data to:

  • Evaluate you for any open positions throughout the BDO network.
  • Generate general statistics.
  • Inform you of any other job opportunities.

You also agree that we may share such data with BDO firms and service providers, if relevant to this job application.

BWS does not collect ‘sensitive’ personal information except when voluntarily provided by the candidate as part of the application.

Trusted by 25,000+ job seekers

“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”

Jessica, London

Get help applying for this job

Location

United Kingdom

Sign up to applySee more jobs like this