Job Description
Overview
- We are looking for a Cloud Architect - Security to design and implement enterprise-grade cloud security architectures for Azure environments. As part of the Microsoft Cloud Center of Excellence (CoE), you will lead security strategy, governance, automation, and compliance to protect mission-critical workloads in Azure and hybrid cloud ecosystems.
- The ideal candidate has expertise in Zero Trust Architecture, Identity & Access Management (IAM), Threat Protection, Security Automation, and Compliance in Azure.
- At TeKnowledge, your work makes an impact from day one. We partner with organizations to deliver AI-First Expert Technology Services that drive meaningful impact in AI, Customer Experience, and Cybersecurity. We turn complexity into clarity and potential into progress—in a place where people lead and tech empowers.
- You’ll be part of a diverse and inclusive team where trust, teamwork, and shared success fuel everything we do. We push boundaries, using advanced technologies to solve complex challenges for clients around the world.
- Here, your work drives real change, and your ideas help shape the future of technology. We invest in you with top-tier training, mentorship, and career development—ensuring you stay ahead in an ever-evolving world.
Why You’ll Enjoy It Here
- Be Part of Something Big - A growing company where your contributions matter.
- Make an Immediate Impact - Support groundbreaking technologies with real-world results.
- Work on Cutting-Edge Tech - AI, cybersecurity, and next-gen digital solutions.
- Thrive in an Inclusive Team - A culture built on trust, collaboration, and respect.
- We Care - Integrity, empathy, and purpose guide every decision.
We’re looking for innovators, problem-solvers, and experts ready to drive change and grow with us.
We Are TeKnowledge. Where People Lead and Tech Empowers.
Responsibilities
- Design and implement Zero Trust security frameworks for Azure environments.
- Architect and optimize Azure security solutions, including Defender for Cloud, Microsoft Sentinel, and Privileged Identity Management (PIM).
- Develop secure access controls using Azure AD, Conditional Access, MFA, and Just-in-Time (JIT) access.
- Ensure network security best practices using Azure Firewall, WAF, NSGs, Private Link, and DDoS Protection.
- Implement encryption strategies for data at rest and in transit using Azure Key Vault, Azure Disk Encryption, and TLS configurations.
- Deploy Microsoft Sentinel (SIEM) and Defender XDR for real-time threat detection, response, and forensics.
- Set up automated security alerting and remediation workflows using Azure Monitor, Logic Apps, and Playbooks.
- Implement security analytics and behavioral monitoring using KQL, AI-driven anomaly detection, and SOAR automation.
- Conduct security incident response and lead post-incident forensic analysis.
- Ensure compliance with SOC2, HIPAA, NIST, ISO 27001, GDPR, and CIS benchmarks.
- Develop and enforce Azure Policy, Blueprints, RBAC models, and regulatory controls.
- Conduct security assessments, gap analysis, and risk mitigation strategies.
- Design security frameworks for DevSecOps to integrate security into CI/CD pipelines.
- Automate security policies and configurations using Terraform, Bicep, and ARM Templates.
- Implement automated identity lifecycle management for user roles, groups, and permissions.
- Develop self-healing security architectures using Azure Automation, PowerShell, and Azure Functions.
- Design hybrid security models integrating on-premises, multi-cloud (OCI), and SaaS applications.
- Implement cross-cloud security controls for identity federation, workload protection, and unified security monitoring.
Qualifications
- 3+ years of experience in Cloud Security Architecture, with at least 2 years in Azure.
- Expertise in Zero Trust, IAM, RBAC, Conditional Access, and Identity Protection.
- Hands-on experience with Microsoft Sentinel, Defender for Cloud, and Defender XDR.
- Proficiency in SIEM, SOAR, and automated threat response solutions.
- Strong knowledge of compliance frameworks (NIST, ISO 27001, CIS, SOC2, GDPR, HIPAA).
- Experience with Infrastructure as Code (Terraform, Bicep, ARM Templates) for security automation.
- Strong written and verbal English skills for effective communication and collaboration.
- Strong problem-solving and analytical thinking for cybersecurity challenges.
- Excellent communication and leadership skills for engaging with stakeholders.
- Ability to mentor and train engineers on security best practices.
Preferred Skills
- Experience with multi-cloud security (OCI) and hybrid security models.
- Familiarity with AI-driven security analytics and predictive threat intelligence.
- Certifications such as Microsoft Certified: Cybersecurity Architect Expert, Azure Security Engineer Associate, CISSP, CISM, or CEH.
- Strong background in DevSecOps and integrating security into CI/CD pipelines.