Security Architect — Microsoft Security Platform

9033 AVANADE INDIA PVT LIMITED Company

Bengaluru

Hybrid

INR 6,000,000 - 9,000,000

Full time

10 days ago
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Avanade India is seeking a senior Security Architect with deep hands-on expertise across the Microsoft security platform, including Sentinel, Defender XDR, Purview, Entra ID, and Intune. The role involves leading security architecture on client engagements, shaping security roadmaps, and building the practice's IP and skills.

This senior, client-facing position requires 14–18 years of cybersecurity experience, strong architectural design decisions, and the ability to converse with CISOs while

Qualifications

  • 15–20 years in cyber security across architecture, engineering, consulting or security operations.

Responsibilities

  • Own end-to-end security architecture for client engagements and multi-year roadmaps.
  • Architect and lead Microsoft Sentinel implementations with design and cost optimisation.
  • Lead migrations from legacy SIEM to Microsoft Sentinel with content and use‑case migration.
  • Design Defender for Cloud posture and policy across CSPM and CWPP.
  • Architect Purview data security, DLP, and eDiscovery capabilities.
  • Define Entra ID conditional access, IAM governance, and passwordless flows.
  • Design Intune security baselines and integration with Defender for Endpoint.
  • Conduct security assessments against frameworks (NIST CSF, ISO 27001, CIS).
  • Lead SOC target operating models, detection strategy, and incident response runbooks.
  • Mentor security architects and drive certification and skilling across the practice.
  • Support AI adoption security considerations and governance for safe Copilot use.

Skills

Microsoft security platform
Microsoft Sentinel
Defender XDR
Purview
Entra ID
Intune
KQL
Zero Trust
NIST CSF
ISO 27001

Tools

SIEM
Azure security
Log ingestion
Cost optimisation

Job description

Avanade India Security Architect — Microsoft Security Platform Practice: Cyber Security, Avanade India Location: Bengaluru / Delhi NCR / Mumbai, India (Hybrid) Experience: 14–18 years in the cyber security domain, with deep, current, hands‑on architecture experience across the Microsoft security platform — Microsoft Sentinel, Defender, Purview, Entra ID and Intune

Role Summary

Avanade India’s Cyber Security practice is looking for a Security Architect with genuine depth across the full Microsoft security estate. This is a senior, client-facing role for someone who can hold a security conversation with a CISO in the morning, defend a Sentinel data architecture with a SOC team in the afternoon, and be equally credible in both rooms. The emphasis is on breadth across the Microsoft security platform combined with real depth in each pillar — threat protection, cloud security, identity, data security and compliance — and the ability to design them as one integrated architecture rather than a set of separately deployed products. You will lead security architecture on client engagements, shape pursuits as the security SME, and build the standards, IP and skilling that the practice runs on.

Key Responsibilities
  • Own end-to-end security architecture for client engagements — target-state security architecture, Zero Trust design, control mapping and multi-year security roadmaps grounded in the client’s risk profile and regulatory context.
  • Architect and lead Microsoft Sentinel implementations: workspace and tenant design, ingestion strategy, log tiering and cost optimisation, detection engineering in KQL, UEBA, SOAR playbooks and threat intelligence integration.
  • Lead migrations from legacy SIEM platforms (Splunk, QRadar, ArcSight and similar) to Microsoft Sentinel — content and use‑case migration, parallel running, validation and decommissioning.
  • Design across Microsoft Defender XDR — Defender for Endpoint, Defender for Identity, Defender for Office 365 and Defender for Cloud Apps — covering deployment architecture, policy design, tuning, incident correlation and cross‑product investigation.
  • Architect cloud workload and posture security with Defender for Cloud — CSPM and CWPP, secure score improvement, regulatory compliance dashboards, and container, server and database protection.
  • Design Microsoft Purview solutions across data security and compliance: information protection and sensitivity labelling, DLP, insider risk management, data lifecycle and records, eDiscovery and Compliance Manager.
  • Architect identity security on Entra ID: conditional access design, Privileged Identity Management, identity governance and entitlement management, passwordless and phishing‑resistant authentication, and identity threat detection and response.
  • Design endpoint security through Intune — security baselines, attack surface reduction and compliance policies — integrated with Defender for Endpoint.
  • Lead security assessments and maturity reviews — gap analysis against NIST CSF, ISO 27001, CIS and Microsoft Zero Trust maturity, with prioritised, costed remediation roadmaps.
  • Design SOC target operating models and detection strategy: use‑case catalogues, detection engineering lifecycle, incident response runbooks, threat hunting, automation and MDR/managed service interlock.
  • Advise on securing AI adoption — Copilot readiness and oversharing remediation, data security posture for AI, agent governance, and the controls that make AI deployment defensible.
  • Align security architecture to regulatory and data protection requirements — India’s DPDP Act, GDPR, and sector guidance such as RBI, SEBI or IRDAI where applicable.
  • Act as security design authority across delivery: design reviews, architecture governance, escalation support and assurance of security deliverable quality.
  • Lead security solutioning on pursuits — workshops, solution architecture, estimation, proposals and RFP responses — presenting credibly to CISO‑level stakeholders.
  • Build practice IP: reference architectures, deployment accelerators, detection content libraries, assessment frameworks and delivery playbooks.
  • Mentor security architects, consultants and analysts; drive certification and skilling across the security capability.
Required Skills & Experience

15–20 years in cyber security across architecture, engineering, consulting or security operations, with a substantial recent focus on the Microsoft security platform. Deep, hands‑on architecture experience across Microsoft Sentinel, Defender XDR, Defender for Cloud, Purview, Entra ID and Intune — beyond product positioning, into design decisions, trade‑offs and known pitfalls. Strong Microsoft Sentinel depth: ingestion and cost architecture, KQL proficiency, detection engineering, automation with Logic Apps, and experience running or migrating a SIEM at enterprise scale. Proven design experience across the Defender suite, including deployment at scale, policy and exclusion strategy, alert tuning and reduction of analyst noise. Solid Purview experience across information protection, DLP and at least one of insider risk, data lifecycle or eDiscovery — including classification and labelling strategy. Strong identity security background: Entra ID architecture, conditional access, privileged access, identity governance, and hybrid identity in complex estates. Working knowledge of Azure platform security — network security, Key Vault, encryption, and how platform design affects security posture. Practical command of security frameworks and standards: NIST CSF, ISO 27001, CIS Controls, MITRE ATT&CK, and Zero Trust reference models. Experience with data protection and regulatory requirements applicable to Indian and global clients, and the ability to translate them into technical controls. Demonstrated experience leading security assessments and producing prioritised, executive‑ready roadmaps and business cases. Incident response and threat landscape awareness — able to reason about attacker behaviour, not only about product configuration. Strong client‑facing consulting skills, including CISO and executive stakeholder engagement and pre‑sales solutioning, estimation and proposal work. Track record of mentoring and technically leading security teams on medium‑to‑large engagements. Clear technical writing — architecture documents, assessment reports, standards and runbooks at client‑ready quality. NA.

Preferred / Good to Have
  • Microsoft certifications: SC-100, SC-200, SC-300, SC-400 or AZ-500; industry certifications such as CISSP, CISM, CCSP or ISO 27001 Lead Auditor.
  • Experience supporting Microsoft security specializations and partner programmes — capability alignment, audit and evidence preparation.
  • Experience designing or running MDR / managed security services — shift models, SLAs and service transition.
  • Automation and IaC for security deployment — PowerShell, Logic Apps, Bicep or Terraform for repeatable security configuration.
  • Exposure to OT/IoT security (Defender for IoT) or to securing manufacturing and critical infrastructure environments.
  • Multi‑cloud security experience (AWS, GCP) and integration of third‑party tooling into Sentinel.
  • Experience in regulated industries — BFSI, healthcare, energy or public sector — including regulator‑facing work.
  • Experience in a global delivery / SI or Microsoft partner environment with distributed teams.
  • Thought leadership — speaking, publishing or detection content shared with the security community.
Company culture

At Avanade, we advance the world through the power of people and Microsoft. Join us to shape your skills and the future with bold ideas and innovative solutions. Our partnership with Microsoft and Accenture empowers you to unlock your full potential. Working at Avanade offers the chance to build a career path that suits your skills and interests and the freedom to be your authentic self. We are committed to your growth, well‑being, and success. This is where passion meets opportunity, technology meets humanity, and every challenge is a chance to make a genuine impact on colleagues, clients, and communities. Together, we do what matters.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Architect — Microsoft Security Platform
Security Architect — Microsoft Security Platform

Avanade • Bengaluru

Hybrid
INR 4,200,000 - 6,000,000
Microsoft Security Architect-Freelancing
Microsoft Security Architect-Freelancing

InOpTra Digital • India

On-site
INR 2,500,000 - 3,500,000
Manager- Presales / Technical Sales
Manager- Presales / Technical Sales

9033 AVANADE INDIA PVT LIMITED Company • Gurugram District

Hybrid
INR 3,000,000 - 6,000,000
Security Architect
Security Architect

JUARA IT SOLUTIONS • Chennai District

On-site
INR 3,500,000 - 5,500,000
Security Engineer, Data
Security Engineer, Data

Applied Systems India • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Microsoft Security Consultant
Microsoft Security Consultant

SoftwareONE Deutschland GmbH • Chennai District

On-site
INR 1,200,000 - 1,800,000
Technical Lead Engineer – Security Delivery
Technical Lead Engineer – Security Delivery

Whitefield Careers • Bengaluru

On-site
INR 1,800,000 - 3,200,000
Senior Security Engineer
Senior Security Engineer

IDP International Education Specialists • Chennai District

On-site
INR 900,000 - 1,300,000
Architect - MWP
Architect - MWP

ValuePoint • Mumbai

On-site
INR 4,000,000 - 7,000,000
Principal Cybersecurity Architect & Security Engineering Leader
Principal Cybersecurity Architect & Security Engineering Leader

Sutherland • India

Hybrid
INR 2,500,000 - 3,500,000