Overview
As a senior security architect, you will define and govern secure enterprise architectures for Advania’s Managed Services clients, focusing on Microsoft technologies to enable secure, scalable solutions. You lead strategic security roadmaps, design governance artifacts, and ensure alignment with Zero Trust and secure-by-design principles. This role offers impact across identity, cloud, data protection, and operational security in a collaborative, client-facing environment. Your work shapes a mature security practice and drives adoption of Microsoft security technologies.
Pay / Benefits
- hybrid working
- competitive salary
- benefits package (details on request)
Responsibilities
- Lead security architecture authority across Managed Services clients
- Develop enterprise security strategies, roadmaps and target architectures
- Produce and govern High-Level Designs (HLDs), Low-Level Designs (LLDs) and reference architectures
- Ensure architectures follow Zero Trust, security by design and secure by default
- Conduct architecture reviews and design assurance activities
- Design and govern enterprise identity strategies across cloud, hybrid and on-premises environments
- Lead architecture for Microsoft Entra ID, Active Directory, Identity Governance, PIM, Conditional Access, Authentication Services, Federation, SSO, B2B/B2C models
- Provide architectural ownership across the Microsoft security ecosystem (Defender, Sentinel, Purview, Security Copilot, Intune, Entra ID, Azure Security, M365 Security & Compliance)
- Develop security patterns and reference architectures for Threat, Identity, Data protection, Insider risk, Monitoring, Compliance, AI security
- Design secure architectures spanning Azure, AWS, Google Cloud, on-premises, SaaS, Datacentre
- Lead secure integration of third-party security products, network infrastructure, business applications, identity providers, security ops tooling
- Onboard customers into managed services and ensure operational supportability
- Define service acceptance criteria and operational design requirements
- Collaborate with SOC, Managed Identity, Azure and Infrastructure teams for support models
- Advise CIO/CTO/CISO and leadership through architecture workshops and strategy sessions
- Support client security assessments, audits and transformation programmes
- Develop reusable patterns and technical frameworks; evaluate emerging technologies
Key requirements
- 3-5 years’ experience in enterprise security, cloud architecture or cyber security
- Experience as Security Architect, Enterprise Architect or Principal Consultant
- Strong understanding of Zero Trust, security governance, risk management, threat modelling, security engineering, data protection
- Advanced Microsoft expertise across Entra ID, Defender Suite, Sentinel, Purview, Intune, Azure Security, M365 Security & Compliance, IAM
- Deep expertise in authentication, federation, SSO, MFA, PIM, identity governance, hybrid identity
- Strong networking and hybrid infrastructure knowledge; Azure Landing Zones; cloud security; PKI; API security; security monitoring
- Extensive client-facing consultancy experience and executive stakeholder management
- Desirable: experience in managed services, security operations integration, vulnerability management, AI security, multi-cloud security, DevSecOps
- Regulatory familiarity including ISO 27001, NIST CSF, NIS2, GDPR, DORA, FCA/PRA
- Certifications: CISSP, CCSP, CISM, SABSA Practitioner, SC-100/SC-300/SC-200/AZ-500/AZ-305 as relevant
- Executive stakeholder management
- Client-facing consultancy
- Architecture workshop facilitation
- Microsoft Entra ID
- Microsoft Defender Suite
- Microsoft Sentinel
…
