Security Architect - Entra ID, MS, Azure
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+1 more
Job description
a security perspectiveReview security exceptions and deviations, documenting residual risk, compensating controls and treatmentsMaintain visibility of significant security risks, owners and mitigation plansDevelop practical remediation and risk-treatment approaches with technical teamsIncorporate security requirements into programme plans, designs, migration patterns, testing and operational handoverSupport security testing and assurance before migrations and go-live decisionsProvide security input into operational readiness and production transitionAlign designs with security policies, information-security standards, data-protection obligations and regulatory requirementsMaintain HLDs, security principles, control matrices, threat models, risk assessments, exception records and architecture decision recordsProvide risk-based security recommendations to programme leadership and senior stakeholdersSupport continuous improvement of security controls throughout the
Requirements
transformationRequirementsExtensive experience working as a Security Architect across complex enterprise technology environmentsStrong technical knowledge of Microsoft Entra ID, Microsoft 365, Azure, endpoint security, networks and application securityStrong understanding of hybrid and cloud security architectures and legacy-environment transitionsProven experience applying Zero Trust, least privilege, privileged access and defence-in-depth principlesStrong knowledge of identity and access security, including authentication, Conditional Access, identity protection and administrative controlsExperience designing security controls across endpoints, email, data, applications, infrastructure and networksStrong understanding of security logging, monitoring, threat detection and incident-response requirementsExperience in threat modelling, security risk assessment, control mapping and architecture assuranceExperience assessing security risks associated with migration, coexistence, cutover and transition activitiesUnderstanding of data protection, information governance and relevant regulatory or assurance requirementsExperience reviewing security exceptions and developing risk-treatment or compensating-control strategiesStrong technical writing skills and experience producing security architecture documentation, risk assessments, threat models, control matrices and design-assurance outputsExperience working within formal architecture and security-governance frameworksAbility to translate technical security risks into clear business impacts, choices and recommendationsCore CompetenciesDemonstrates extensive experience as a Security Architect with a strong focus on Microsoft Entra ID, Microsoft 365, Azure, and hybrid cloud security architectures. Proficient in applying Zero Trust principles, developing security controls, and conducting risk assessments within complex enterprise environments.Highest-signal resume keywordsSecurity Architecture PrinciplesZero Trust ImplementationMicrosoft Entra IDThreat ModellingSecurity Risk AssessmentATS Optimization KeywordsHard SkillsSecurity Design AssuranceEndpoint SecurityApplication SecurityIdentity ProtectionConditional AccessThreat DetectionIncident ResponseControl MappingRisk TreatmentSecurity DocumentationSoft SkillsTechnical WritingCommunicationIndustry KeywordsData ProtectionInformation GovernanceRegulatory RequirementsHybrid Security ArchitecturesLegacy Environment TransitionsTools & TechnologiesMicrosoft 365AzureSecurity Governance Frameworks #J-18808-Ljbffr
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
The 12 Best Jobs for Software Engineers
Understanding and Mitigating Common Web Vulnerabilities
Why Upskilling And Reskilling is Important For Developers