Security Architect – Entra ID, MS, Azure

Jobtailor

Greater London

On-site

GBP 90,000 - 130,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Jobtailor is seeking an experienced Security Architect to lead security architecture design across hybrid cloud environments in the UK. You will define patterns, assess risks, and embed Zero Trust across identity, devices, data and networks.

The role requires deep knowledge of Microsoft Entra ID, Microsoft 365 and Azure, with proven ability to map controls to regulatory requirements and produce design-assurance outputs.

Qualifications

  • Extensive experience as a Security Architect across complex enterprise technology environments.

Responsibilities

  • Develop security principles and patterns for Microsoft Entra ID, Microsoft 365, Azure in hybrid environments.
  • Define and assure Zero Trust design across identity, devices, apps, data and network.
  • Review architectures for security weaknesses and dependencies.
  • Support migration strategies and secure cutover approaches.
  • Provide risk-based security recommendations to leadership and senior stakeholders.
  • Incorporate security requirements into programme plans, designs, migration patterns, testing and operational handover.
  • Assist security testing and assurance before migrations and go-live decisions.
  • Maintain security documentation including threat models, risk assessments and control matrices.

Skills

Security Architecture
Zero Trust
Microsoft Entra ID
Threat Modelling
Security Risk Assessment
Identity Protection
Conditional Access
Defense-in-Depth
Security Logging
Incident Response
Security Documentation
Architecture Governance
Hybrid Cloud Security

Tools

Microsoft 365
Azure
Security Governance Frameworks

Job description

  • Establish and maintain security architecture principles, patterns, standards and control requirements
  • Define security design-assurance criteria and assess technical designs against agreed requirements
  • Assess threats, risks, vulnerabilities and control gaps across current, coexistence, transition and target states
  • Develop security controls for coexistence between existing environments and new target services
  • Define and assure Zero Trust principles across identity, devices, applications, data and network access
  • Establish security patterns for identity protection, privileged access, least privilege, Conditional Access and administrative boundaries
  • Define security requirements for endpoint, email, Microsoft 365, data, application and network architectures
  • Establish requirements for logging, monitoring, alerting, threat detection and incident response
  • Review technical architectures and solution designs for security weaknesses, gaps and dependencies
  • Assess migration strategies and cutover approaches from a security perspective
  • Review security exceptions and deviations, documenting residual risk, compensating controls and treatments
  • Maintain visibility of significant security risks, owners and mitigation plans
  • Develop practical remediation and risk-treatment approaches with technical teams
  • Incorporate security requirements into programme plans, designs, migration patterns, testing and operational handover
  • Support security testing and assurance before migrations and go-live decisions
  • Provide security input into operational readiness and production transition
  • Align designs with security policies, information-security standards, data-protection obligations and regulatory requirements
  • Maintain HLDs, security principles, control matrices, threat models, risk assessments, exception records and architecture decision records
  • Provide risk-based security recommendations to programme leadership and senior stakeholders
  • Support continuous improvement of security controls throughout the transformation
Requirements
  • Extensive experience working as a Security Architect across complex enterprise technology environments
  • Strong technical knowledge of Microsoft Entra ID, Microsoft 365, Azure, endpoint security, networks and application security
  • Strong understanding of hybrid and cloud security architectures and legacy-environment transitions
  • Proven experience applying Zero Trust, least privilege, privileged access and defence-in-depth principles
  • Strong knowledge of identity and access security, including authentication, Conditional Access, identity protection and administrative controls
  • Experience designing security controls across endpoints, email, data, applications, infrastructure and networks
  • Strong understanding of security logging, monitoring, threat detection and incident-response requirements
  • Experience in threat modelling, security risk assessment, control mapping and architecture assurance
  • Experience assessing security risks associated with migration, coexistence, cutover and transition activities
  • Understanding of data protection, information governance and relevant regulatory or assurance requirements
  • Experience reviewing security exceptions and developing risk-treatment or compensating-control strategies
  • Strong technical writing skills and experience producing security architecture documentation, risk assessments, threat models, control matrices and design-assurance outputs
  • Experience working within formal architecture and security-governance frameworks
  • Ability to translate technical security risks into clear business impacts, choices and recommendations
Core Competencies

Demonstrates extensive experience as a Security Architect with a strong focus on Microsoft Entra ID, Microsoft 365, Azure, and hybrid cloud security architectures. Proficient in applying Zero Trust principles, developing security controls, and conducting risk assessments within complex enterprise environments.

Highest-signal resume keywords
  • Security Architecture Principles
  • Zero Trust Implementation
  • Microsoft Entra ID
  • Threat Modelling
  • Security Risk Assessment
ATS Optimization Keywords
Hard Skills
  • Security Design Assurance
  • Endpoint Security
  • Application Security
  • Identity Protection
  • Conditional Access
  • Threat Detection
  • Incident Response
  • Control Mapping
  • Risk Treatment
  • Security Documentation
Soft Skills
  • Technical Writing
  • Communication
Industry Keywords
  • Data Protection
  • Information Governance
  • Regulatory Requirements
  • Hybrid Security Architectures
  • Legacy Environment Transitions
Tools & Technologies
  • Microsoft 365
  • Azure
  • Security Governance Frameworks
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Architect – Grade E
Security Architect – Grade E

Jobtailor • Greater London

On-site
GBP 90,000 - 120,000
Security Architect
Security Architect

Advania UK • Manchester

On-site
GBP 90,000 - 120,000
Security Architect (Entra ID/Microsoft Azure)
Security Architect (Entra ID/Microsoft Azure)

Methods • Greater London

Hybrid
GBP 90,000 - 120,000
Autonomy to grow skills
LinkedIn Learning access
Pension salary exchange
+2
Cyber Security Engineer
Cyber Security Engineer

Jobtailor • Greater London

Hybrid
GBP 70,000 - 110,000
Power Platform Architect
Power Platform Architect

Jobtailor • Greater London

On-site
GBP 90,000 - 135,000
Information Security Manager
Information Security Manager

Jobtailor • Greater London

On-site
GBP 100,000 - 150,000
Senior Solutions Architect
Senior Solutions Architect

Jobtailor • Greater London

On-site
GBP 90,000 - 120,000
Lead Engineer, Identity
Lead Engineer, Identity

Jobtailor • West of England

On-site
GBP 90,000 - 130,000
Remote work? (not stated)
Identity Architect
Identity Architect

Jobtailor • Greater London

On-site
GBP 110,000 - 140,000
Security Engineer – Identity and Access Management, IAM
Security Engineer – Identity and Access Management, IAM

Jobtailor • Milton Keynes

On-site
GBP 60,000 - 90,000