Security Architect

  • PVH (Tommy Hilfiger/Calvin Klein)
  • 20/07/2026
Full time Information Technology Telecommunications

Job Description

Overview

ABOUT THE ROLE

Salary: £62,900.00 - £100,000.00

Contract type: Permanent

Working pattern: The Partnership has adopted a hybrid working approach, balancing time between the London head office and home based on personal needs and business requirements.

The John Lewis Partnership (JLP) continually invests in its security capabilities, recognizing the trust our customers place in our brand and the information they provide to us. This role designs security solutions, patterns, and blueprints across data, platforms, cloud, and network capabilities to support our strategic aims within an evolving threat landscape.

Key Responsibilities
  • Design End-to-End Security Solutions: Create effective, repeatable, and sustainable security solutions and patterns across cloud platforms (AWS, GCP) and traditional hosting environments to strengthen business security.
  • Embed Best Practice & Reduce Risk: Ensure security architecture best practices are applied during solution design activities by delivery teams and third parties to reduce delivery cost, operational risk, and technical debt.
  • Democratize Secure Delivery: Enable architects and engineers through clear design principles, patterns, blueprints, and guardrails to scale secure delivery.
  • Provide Commercial & Contractual Counsel: Advise on the commercial and contractual implications of existing or new obligations; review contractual terms of technologies and services within your domain.
  • Drive Cross-Functional Collaboration: Partner with the CISO function, architecture, and engineering teams to ensure security capabilities deliver value; actively promote solution evangelism.
  • Monitor & Advise on Industry Trends: Stay up-to-date with shifts in technology, retail, and socio-economic trends to influence internal technology and business decisions.
Essential skills/experience
  • Modern Security Architecture Expertise: Experience turning roadmap intent into clear, outcome-focused solutions with strong stakeholder engagement.
  • Agile & Technical Architecture Delivery: Adaptable, engineering-focused mindset with experience across multiple service and domain teams using Agile delivery models.
  • Core Security Frameworks & Methodologies: Experience with threat modeling; DevSecOps/SecOps; Zero Trust; and NIST Cybersecurity Framework.
  • Hybrid-Cloud & Infrastructure Knowledge: Knowledge of securing data/workloads across Google Cloud/Workspace, AWS, Zscaler, and commodity SaaS.
  • Critical Influence & Leadership: Ability to empower and influence others to align with business strategy and deliver outcomes.
  • Emerging Tech & Threat Awareness: Understanding attacker tools/techniques and securing AI/LLM deployments.
Desirable skills/experience
  • Advanced Architecture Frameworks: Experience designing SOC architectures (SIEM, SOAR, vulnerability management) and secure SDLC.
  • Regulated Environments & Evaluation: Experience in regulated environments (e.g., PCI-DSS) and leading tool evaluation and selection.
  • Professional Certifications: TOGAF, SABSA, CISSP, CCSP, ISSAP, CEH, or platform-specific certs (GCP, Zscaler, CSA).
  • Retail Business Domain Knowledge: Understanding of retail capabilities and processes; benchmarking to drive competitive advantage.
Role Details
  • Closing Date: July 20, 2026
  • Pay: £62,900.00 - £115,000.00 Annual
  • Contract Type: Permanent
  • Hours of Work: N/A
  • Job Level: Partnership Level 6
  • Where You'll Be Working: London Central Office, 1 Drummond Gate, London, SW1V 2QQ
About the Partnership

We're the largest employee-owned business in the UK and home of John Lewis and Waitrose. We're not just employees; we're Partners, driven by our purpose to build a happier world. This is an exciting time to join us.