Security Architect - Microsoft Security Platform

Colt Technology Services
Barcelona, Spain
7 days ago
Apply on www.buscojobs.com.es
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience required
5 years minimum
Working hours
Regular working hours
Languages
English

Tech stack

Microsoft Windows Active Directory Artificial Intelligence Microsoft Azure Software as a Service Cloud Computing Cloud Computing Security Cyber Security Data Centers Data Governance Information Leak Prevention Data Security
+16 more
Linux Infrastructure as a Service (IaaS) Identity and Access Management Microsoft Security Essentials Microsoft Office Platform as a Service (PAAS) Azure Active Directory Zero Trust Network Access Security Information and Event Management Enterprise Data Management Microsoft Power Automate Large Language Models Cyber Threat Analysis Information Technology Microsoft Sentinel Security Orchestration, Automation & Response

Job description

Colt provides network, voice and data centre services to thousands of businesses around the world, allowing them to focus on delivering their business goals instead of the underlying infrastructure.Why we need this role We are looking for a Security Architect specialising in the Microsoft Security platform (M365 E5) to join the Security and Resilience - Security Architecture team.This role acts as the design authority and subject matter expert for Microsoft security technologies, including Defender, Entra ID and Purview, and will play a key role in modernising Colt’s security posture.The successful candidate will work closely with Security Engineering, SOC, Threat Intelligence and Risk functions, as well as wider technology teams (DIO, Network Engineering, Service Delivery), to design and implement integrated, Zero Trust-aligned security architectures across the Colt estate.The Role Combines Deep technical ownership of the Microsoft Security stack (E5) Security design, architecture and assurance Strategic transformation across Colt technology domains You Will Play a Critical Role In Driving Identity-driven and endpoint-focused security architecture for user-facing environments Data protection and compliance capabilities through Microsoft Purview Modern SOC enablement leveraging Defender and Sentinel telemetry alongside broader tooling The secure adoption of Microsoft Copilot and AI/LLM-driven capabilities, ensuring appropriate governance, data protection and access controls What You Will Do Act as the design authority for Microsoft Security architecture, covering Defender, Entra ID and Purview capabilities Define and maintain the target architecture for the Microsoft security platform, aligned to Colt’s Zero Trust strategy Lead the design and implementation of Microsoft Defender capabilities across endpoints, identities and user-facing services, ensuring integration with wider security tooling where required Define appropriate integration patterns between Microsoft Defender and non-Microsoft security tooling, particularly across server and infrastructure environments Design and deliver Microsoft Purview solutions, including Data Loss Prevention (DLP), Information Protection, Insider Risk and data governance Define and implement identity-first security controls using Entra ID (P2), including Conditional Access, MFA and Privileged Identity Management (PIM) Support the modernisation of Colt’s SOC operating model, leveraging Defender and Sentinel for user and endpoint telemetry, alongside integration of broader infrastructure data sources Conduct security architecture reviews and provide assurance for solutions leveraging Microsoft security technologies, including defining requirements and supporting formal sign-off or risk acceptance Ensure consistent deployment and operationalisation of Microsoft security capabilities at scale, across a complex, hybrid estate Ensure alignment with regulatory requirements such as TSA, DORA and ISO*** Drive adoption of Secure by Design principles across Microsoft-based platforms and solutions Define and implement security and governance controls for Microsoft Copilot and AI/LLM services, ensuring enterprise data is appropriately protected Assess and mitigate risks associated with AI/LLM usage, including prompt injection, data leakage, over-permissioned access and unintended data exposure Ensure AI-enabled services follow Zero Trust principles, enforcing least-privilege access to enterprise data accessed by Copilot and related tools Engage with Microsoft and other vendors to stay aligned with emerging capabilities and roadmap developments, particularly across XDR, data protection and AI Produce high-quality architecture artefacts, standards and guidance documentation What We’re Looking For Must haves: 5+ years of experience in information security within large-scale enterprise or telecommunications environments Deep expertise in Microsoft 365 E5 security capabilities, including: Microsoft Defender (Endpoint, Identity, Office 365, Cloud Apps) Microsoft Entra ID (P2), Conditional Access and identity protection Microsoft Sentinel (SIEM integration) Microsoft Purview Strong experience designing and implementing Microsoft Purview capabilities, including DLP, Information Protection, Insider Risk and eDiscovery Strong understanding of Zero Trust architecture principles, particularly identity-driven security models Experience deploying and operating Defender and SIEM capabilities, integrated within a wider security ecosystem Experience conducting security design reviews and translating policy into practical controls Experience performing risk assessments aligned to recognised methodologies Strong understanding of cloud security concepts across IaaS, PaaS and SaaS, particularly within Azure environments Ability to translate complex technical security concepts into clear business-aligned outcomes Good understanding of networking and enterprise platforms (Windows/Active Directory, Linux/Unix environments) Engineering/Computer Science degree or equivalent practical experience Strong team player with the ability to lead initiatives across multiple stakeholders Excellent communication and stakeholder management skills Understanding of security risks associated with AI/LLM technologies, including prompt injection, data leakage and over-permissioning risks (e.G. Microsoft Copilot) Fluent in English (technical and non-technical communication) Might Haves Experience designing and implementing security and governance controls for AI/LLM platforms, including Microsoft Copilot integrated with Microsoft Purview Experience consolidating endpoint and SaaS security capabilities into the Microsoft Defender ecosystem Experience with Security Copilot and security automation Understanding of Telecoms Security Act (TSA) requirements and implementation approaches Experience working in regulated environments (telecommunications, financial services, critical infrastructure) What We Offer You Looking to make a mark?At Colt, you’ll make a difference.Because around here, we empower people.We don’t tell you what to do.Instead, we employ people we trust, who come together across the globe to create intelligent solutions.Our global teams are full of ambitious, driven people, all working together towards one shared purpose: to put the power of the digital universe in the hands of our customers wherever, whenever and however they want.We give our people the opportunity to inspire and lead teams, and work on projects that connect people, cities, businesses, and ideas.We want you to help us change the world, for the better.Diversity and inclusion Inclusion and valuing diversity of thought and experience are at the heart of our culture here at Colt.From day one, you’ll be encouraged to be yourself because we believe that’s what helps our people to thrive.We welcome people with diverse backgrounds and experiences, regardless of their gender identity or expression, sexual orientation, race, religion, disability, neurodiversity, age, marital status, pregnancy status, or place of birth.Most Recently We Have Signed the UN Women Empowerment Principles which guide our Gender Action Plan Trained 60 (and growing) Colties to be Mental Health First Aiders Please speak with a member of our recruitment team if you require adjustments to our recruitment process to support you.For more information about our Inclusion and Diversity agenda, visit our DEI pages.Benefits Flexible working hours and the option to work from home.Extensive induction program with experienced mentors and buddies.Opportunities for further development and educational opportunities.Global Family Leave Policy.Employee Assistance Program.Internal inclusion & diversity employee networks.A global network When you join Colt you become part of our global network.We are proud of our colleagues and the stories and experience they bring - take a look at ‘Our People’ site including our Empowered Women in Tech.#J-***-Ljbffr

Requirements

complex, hybrid estate Ensure alignment with regulatory requirements such as TSA, DORA and ISO***** Drive adoption of Secure by Design principles across Microsoft-based platforms and solutions Define and implement security and governance controls for Microsoft Copilot and AI/LLM services, ensuring enterprise data is appropriately protected Assess and mitigate risks associated with AI/LLM usage, including prompt injection, data leakage, over-permissioned access and unintended data exposure Ensure AI-enabled services follow Zero Trust principles, enforcing least-privilege access to enterprise data accessed by Copilot and related tools Engage with Microsoft and other vendors to stay aligned with emerging capabilities and roadmap developments, particularly across XDR, data protection and AI Produce high-quality architecture artefacts, standards and guidance documentation What We’re Looking For Must haves: 5+ years of experience in information security within large-scale enterprise or telecommunications environments Deep expertise in Microsoft 365 E5 security capabilities, including: Microsoft Defender (Endpoint, Identity, Office 365, Cloud Apps) Microsoft Entra ID (P2), Conditional Access and identity protection Microsoft Sentinel (SIEM integration) Microsoft Purview Strong experience designing and implementing Microsoft Purview capabilities, including DLP, Information Protection, Insider Risk and eDiscovery Strong understanding of Zero Trust architecture principles, particularly identity-driven security models Experience deploying and operating Defender and SIEM capabilities, integrated within a wider security ecosystem Experience conducting security design reviews and translating policy into practical controls Experience performing risk assessments aligned to recognised methodologies Strong understanding of cloud security concepts across IaaS, PaaS and SaaS, particularly within Azure environments Ability to translate complex technical security concepts into clear business-aligned outcomes Good understanding of networking and enterprise platforms (Windows/Active Directory, Linux/Unix environments) Engineering/Computer Science degree or equivalent practical experience Strong team player with the ability to lead initiatives across multiple stakeholders Excellent communication and stakeholder management skills Understanding of security risks associated with AI/LLM technologies, including prompt injection, data leakage and over-permissioning risks (e.G. Microsoft Copilot) Fluent in English (technical and non-technical communication) Might Haves Experience designing and implementing security and governance controls for AI/LLM platforms, including Microsoft Copilot integrated with Microsoft Purview Experience consolidating endpoint and SaaS security capabilities into the Microsoft Defender ecosystem Experience with Security Copilot and security automation Understanding of Telecoms Security Act (TSA) requirements and implementation approaches Experience working in regulated environments (telecommunications, financial services, critical infrastructure) What We Offer You Looking to make a mark?

About the company

Colt provides network, voice and data centre services to thousands of businesses around the world, allowing them to focus on delivering their business goals instead of the underlying infrastructure., At Colt, you’ll make a difference. Because around here, we empower people. We don’t tell you what to do. Instead, we employ people we trust, who come together across the globe to create intelligent solutions. Our global teams are full of ambitious, driven people, all working together towards one shared purpose: to put the power of the digital universe in the hands of our customers wherever, whenever and however they want. We give our people the opportunity to inspire and lead teams, and work on projects that connect people, cities, businesses, and ideas. We want you to help us change the world, for the better. Diversity and inclusion Inclusion and valuing diversity of thought and experience are at the heart of our culture here at Colt. From day one, you’ll be encouraged to be yourself because we believe that’s what helps our people to thrive. We welcome people with diverse backgrounds and experiences, regardless of their gender identity or expression, sexual orientation, race, religion, disability, neurodiversity, age, marital status, pregnancy status, or place of birth. Most Recently We Have Signed the UN Women Empowerment Principles which guide our Gender Action Plan Trained 60 (and growing) Colties to be Mental Health First Aiders Please speak with a member of our recruitment team if you require adjustments to our recruitment process to support you. For more information about our Inclusion and Diversity agenda, visit our DEI pages. Benefits Flexible working hours and the option to work from home. Extensive induction program with experienced mentors and buddies. Opportunities for further development and educational opportunities. Global Family Leave Policy. Employee Assistance Program. Internal inclusion & diversity employee networks. A global network When you join Colt you become part of our global network. We are proud of our colleagues and the stories and experience they bring - take a look at ‘Our People’ site including our Empowered Women in Tech. #J-*****-Ljbffr

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.buscojobs.com.es
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

51 sec

Repurposing hardware and operating underwater data centers

Chris Heilmann Chris Heilmann +1 · LIVE

4:04 min

Embedding data security and applied ethics into developer education

Daniel Tao +3 · World Congress 2024

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all