← Все вакансии/Senior/jobgether
SeniorFlexibleUS

Security Architect

J
jobgether
Уровень
Senior
Формат
Flexible
О роли

Описание вакансии

About the company

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a M365 Security & Governance Architect based in the United States.

Responsibilities
  • Lead security assessments and readiness activities for Microsoft 365 Copilot deployments, evaluating data exposure, oversharing risks, permissions, and overall security posture.
  • Develop practical recommendations, remediation roadmaps, guardrails, and implementation strategies to support secure Copilot adoption.
  • Establish AI governance frameworks, usage policies, approval processes, risk management procedures, and responsible AI practices.
  • Define monitoring and reporting requirements for Copilot activity, security risks, and governance controls.
  • Review AI firewall capabilities and other security requirements associated with secure AI adoption.
  • Assess and optimize Microsoft Purview configurations, including sensitivity labels, Data Loss Prevention, retention, records management, auditing, and compliance controls.
  • Define data protection strategies for sensitive and regulated content and recommend improvements that reduce inappropriate data exposure.
  • Partner with stakeholders on information lifecycle, retention, content management, and governance policies.
  • Evaluate Microsoft Entra ID governance, Conditional Access, identity protection, and access-control strategies.
  • Review Intune device compliance and endpoint management controls, including BYOD and mobile-access considerations for Copilot.
  • Recommend improvements to identity, endpoint, and access security across the Microsoft security ecosystem.
  • Collaborate with Security Operations and Incident Management teams to operationalize new security controls and processes.
  • Advise on logging, auditing, monitoring, and the integration of Copilot-related security events into existing security monitoring platforms.
  • Conduct security workshops and communicate recommendations to technical teams, clients, and executive stakeholders.
  • Collaborate across multidisciplinary teams and mentor other technical professionals when appropriate.
  • Develop reusable security frameworks, accelerators, and components that can scale across multiple client engagements.
  • Stay current with Microsoft security, compliance, AI governance, and cloud technologies to ensure solutions remain aligned with evolving enterprise requirements.
Requirements
  • 7+ years of experience in Microsoft Security, Compliance, or Governance consulting, architecture, or a closely related field.
  • Deep expertise with Microsoft Purview, Microsoft Entra ID, Microsoft Intune, Microsoft Defender Suite, and Microsoft 365 Security & Compliance capabilities.
  • Strong knowledge of Microsoft 365 Copilot governance and secure AI adoption practices.
  • Comprehensive understanding of information protection, Data Loss Prevention, retention, records management, auditing, and AI governance.
  • Demonstrated experience conducting enterprise security assessments and developing practical remediation roadmaps.
  • Strong understanding of identity, endpoint, data, and cloud security principles within Microsoft environments.
  • Experience designing governance frameworks, security controls, usage standards, and risk-management processes for enterprise technology initiatives.
  • Strong ability to translate complex technical and security concepts into clear recommendations for both technical and non-technical stakeholders.
  • Excellent communication and client-facing skills, with the ability to collaborate effectively across security, compliance, infrastructure, and workplace teams.
  • Experience leading security workshops, executive discussions, and stakeholder presentations is highly desirable.
  • Consulting, agency, or multi-client delivery experience is a plus.
  • Microsoft Security certifications such as SC-100, SC-200, SC-300, or SC-400 are highly valued.
  • Experience with Microsoft SharePoint Advanced Management is beneficial.
  • Familiarity with enterprise security modernization programs and Microsoft E5/E7 value realization initiatives is a plus.
  • Experience working in regulated industries such as financial services, healthcare, or legal environments is advantageous.
  • Ability to develop reusable frameworks, accelerators, and technical components that improve delivery at scale.
  • Familiarity with Microsoft Defender, Purview, Azure, SharePoint, Entra, Security Copilot, Intune, Microsoft Sentinel, Microsoft Graph, Copilot Studio, Azure OpenAI, Azure AI Search, Azure Machine Learning, Azure DevOps, GitHub Actions, and GitHub Copilot is beneficial.
  • Ability to work independently, manage complex priorities, and maintain a high standard of technical quality and client service.
Conditions
  • Flexible paid time off and work schedules.
  • Hybrid or fully remote work options.
  • Comprehensive insurance coverage and flexible spending accounts.
  • 401(k) retirement plan.
Стек и навыки

С чем работаем