Senior Security Architect
Listed on 2026-02-28
-
IT/Tech
Cybersecurity, Cloud Computing, Systems Engineer
This role is meant for someone who can own security remediation end-to-end across a complex Azure ecosystem. You’ll handle vulnerabilities across infrastructure, applications, AKS, containers, data platforms, and core Azure services. Expect to engage directly with senior client leaders, guide engineering teams, and shape the client’s overall security maturity.
Key ResponsibilitiesLead vulnerability remediation across a wide set of Azure and hybrid platforms including:
- Azure VMs (Windows/Linux)
- AKS clusters, node pools, and container registries
- App Services, Function Apps, Logic Apps
- Storage Accounts, Databases, Key Vaults, Networking
- Container images (ACR) and CI/CD pipelines.
Review and guide fixes code-related vulnerabilities (SAST/DAST results, secrets, insecure dependencies).
Build detailed hardening guides covering OS, Azure services, Kubernetes, networks, and identity layers.
Work closely with infra, Dev Ops, SRE, and app teams to implement hardening recommendations in a structured, repeatable way.
Drive large-scale backlog remediation—prioritize issues, define workflows, and ensure real progress week over week.
Provide industry-standard best practices to uplift the client’s overall security maturity, including cloud posture management, workload isolation, network security, identity hygiene, and governance.
Host daily client calls to walk through status, blockers, upcoming remediation tasks, and architectural considerations.
Document architecture gaps, remediation approaches, compliance alignment, and long-term improvement plans.
Act as senior advisor and escalation point for all security remediation streams.
Coach and mentor teams executing remediation to ensure consistency and quality.
Required Skills & Experience12–15+ years of combined experience in security architecture, cloud security, infrastructure security, or application security.
Deep hands-on experience with Azure security across:
- Compute (VMs, VMSS)
- Containers (AKS, ACR)
- PaaS services (App Services, Function Apps, API Management)
- Identity & Access (Azure AD/Entra , Managed Identities, RBAC)
- Networking security (NSGs, ASGs, WAF, Private Endpoints, Firewall)
- Data security (Key Vault, Storage, SQL, Cosmos
DB) - Defender for Cloud and Azure Policy
Strong exposure to Windows and Linux hardening.
Ability to drive remediation across infrastructure, application layers, and cloud-native services.
Strong architectural understanding of how vulnerabilities originate, how they propagate across cloud resources, and how to design long-term fixes.
Experience resolving complex remediation backlogs in enterprise-scale environments.
Excellent communication skills and confidence to lead daily discussions with senior client stakeholders.
Strong documentation skills—ability to create clear hardening guides, runbooks, architectural diagrams, and remediation plans.
Service Now (ticketing, workflows, reporting)
Linux (RHEL/Ubuntu) and Windows Server environments
Optionally:
Defender for Cloud, Git Hub Advanced Security, Qualys, Aqua/Prisma, or equivalent.
Certifications:
CISSP, CCSP, AZ-500, AZ-305, CKA/CKS.
Experience with IaC hardening (Terraform/Bicep) and Dev Sec Ops practices.
Background n threat modeling, architecture risk reviews, or cloud governance.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).