> Markdown version of [/jobs/ext/2005545-cloud-solution-architect-threat-protection](https://www.wearedevelopers.com/jobs/ext/2005545-cloud-solution-architect-threat-protection). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cloud Solution Architect - Threat Protection - **Company:** Invoke, LLC - **Location:** Houston, TX, United States (Remote available) - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Microsoft Access, Microsoft Windows, Adobe InDesign, Artificial Intelligence, Microsoft Azure, Cloud Computing, Cloud Computing Security, Cyber Security, Identity and Access Management, Intrusion Detection and Prevention, Machine Learning, Microsoft Data Access Components, Microsoft Security Essentials, Microsoft Office, Windows PowerShell, Role-Based Access Control, Azure Active Directory, Phishing, Zero Trust Network Access, Software Vulnerability Management, Scripting, Azure Security Center, Microsoft Sentinel - **Published:** August 9, 2026 - **Apply:** https://www.wayup.com/i-j-Cloud-Solution-Architect-Threat-Protection-Invoke-LLC-561389760937457/ ## About the Role Invoke-Microsoft Security Services Partner of the Year and Microsoft Partner of the Year for Identity-is seeking a hands-on consultant to lead enterprise threat mitigation implementations across cloud and hybrid environments. You'll work with business and IT stakeholders to assess current security posture, design target operating models, and deploy Microsoft Defender XDR (including for Identity, Endpoint, Cloud Apps, Office, and Cloud Infrastructure), Microsoft Sentinel, Security Copilot, and Vulnerability Management solutions. This role also involves establishing sustainable policies, processes, and metrics aligned with frameworks such as Zero Trust, NIST, and CIS. The ideal candidate combines deep technical expertise with practical governance design and change management skills., + A minimum of 5 years of experience in IT professional services delivery. + A minimum of 2 years of experience as an Architect or Consultant for Microsoft Purview. + Highly motivated individual who exercises diligence in their work and an attitude of willingness to be successful. + Relationship building abilities. + Demonstrate confident presentation, negotiation, and communication skills. + Strong organizational and time management skills with the ability to work autonomously or with a team. + Excellent written and verbal skills with proficiency in all relevant Microsoft Data Security & Governance solutions. + Team player willing to assist peers to increase collective agility and success. + Meticulously attentive to details. ** Role Specific Requirements:** + Proven design, planning and implementation experience with Microsoft Defender for Endpoint, Microsoft Defender for Office 365, Microsoft Defender for Identity, Microsoft Defender for Cloud Apps (CASB), Microsoft Defender for Cloud, Microsoft Sentinel, Microsoft Entra ID Protection, and Microsoft Security Copilot. + Experience in working with implementing the Microsoft Defender Suite, Entra ID, Sentinel, and Security Copilot. + Experience working with customer Security teams to help provide guidance in moving to cloud-based management. + Experience working with customers in adopting new technologies to include Organizational Change Management by developing end-user, help desk, and stakeholder communications. + Experience working with Microsoft's scripting (PowerShell) and low code with Power Platform to extend and customize capabilities. ** Role Specific Preferred Experience:** + Experience in design, implementation, and adoption of the Microsoft Defender Suite, including Defender for Cloud. + Experience in design, implementation, and adoption of Microsoft Entra ID. + Experience in design, implementation, and adoption of Microsoft Sentinel. + Experience in design, implementation, and adoption of Security Copilot. ## Description Working on some of the largest and leading-edge engagements; In the Cloud Solution Engineer - Threat Protection role, you will lead customer-facing engagements on some of the largest and most advanced security projects, guiding organizations through their journey to modernize and adopt Microsoft Threat Protection capabilities across cloud and hybrid environments. Key responsibilities include: + Advanced Threat Protection : Implement machine learning-driven anomaly detection, threat intelligence via Microsoft Security Graph, and Indicators of Compromise (IoC) analysis. + Prevention & Hardening: Deploy proactive malware blocking, Attack Surface Reduction (ASR), endpoint security, exploit protection, network protection, and Cloud Security Posture Management (CSPM) using Microsoft Defender for Cloud to secure Azure and hybrid infrastructure. + Identity & Access Management: Design RBAC/ABAC models, enable Just-In-Time (JIT) access, integrate Privileged Access Management (PAM), enforce Separation of Duties (SoD), and access review attestation. + Extended Detection & Response (XDR): Configure Microsoft Defender XDR for cross-domain correlation across endpoints, identities, email, and cloud apps; implement automated investigation and remediation with AI-driven playbooks. + Identity Protection : Enable risk-based Conditional Access with Microsoft Entra ID Protection , mitigate credential theft, and deploy phishing-resistant authentication methods. + Security Operations & Response: Utilize Microsoft Sentinel for log aggregation, advanced threat detection, automated response workflows, and proactive threat hunting. + Vulnerability & Exposure Management: Implement continuous scanning for CVEs and misconfigurations and provide actionable patch recommendations. + Integration & Automation: Deliver a unified security experience through the Microsoft Defender Portal and leverage Security Copilot for AI-assisted incident analysis, response guidance, and automation. You will be responsible for the full engagement lifecycle-discovery, analysis, design, and implementation-while confidently leading customer workshops and executive discussions. ** General Requirements:**, + Microsoft Certified: Security Operations Analyst Associate (SC-200) + Microsoft Certified: Azure Security Engineer Associate (AZ-500) ** Preferred Certifications:** + Microsoft Certified: Identity and Access Administrator Associate (SC-300) + Microsoft 365 Certified: Administrator Expert (MS-102) + Microsoft 365 Certified: Endpoint Administrator Associate (MD-102) ## Related Videos - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [Passkeys: Truly Phishing-Resistant? Implementation and Pitfalls](https://www.wearedevelopers.com/videos/100156-passkeys-truly-phishing-resistant-implementation-and-pitfalls) - [The Developer Workstation Blind Spot: Why Your Security Stack Can't See What Matters Most](https://www.wearedevelopers.com/videos/100254-the-developer-workstation-blind-spot-why-your-security-stack-can-t-see-what-matters-most) - [Intermediate Bitcoin Script](https://www.wearedevelopers.com/videos/25-intermediate-bitcoin-script) - [Skynet wants your Passwords! The Role of AI in Automating Social Engineering](https://www.wearedevelopers.com/videos/770-skynet-wants-your-passwords-the-role-of-ai-in-automating-social-engineering) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 164: AI Agents, AI Blindspots and MCP security problems](https://www.wearedevelopers.com/magazine/578-dev-digest-164-ai-agents-ai-blindspots-and-mcp-security-problems) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [7 Cloud Computing Trends Coming in 2025 for Developers](https://www.wearedevelopers.com/magazine/412-7-cloud-computing-trends-coming-in-2025-for-developers)