ai2io Logo

ai2io

Senior Cloud Security Architect

Posted 2 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in United States
Senior level
Remote
Hiring Remotely in United States
Senior level
The Senior Cloud Security Architect leads the security strategy for Microsoft environments, translating business risks into secure configurations while mentoring teams and ensuring compliance with security frameworks.
The summary above was generated by AI

AI2IO helps organizations navigate the complex landscape of technology solutions, from foundational IT services and system support to advanced software integration, automation, and cutting-edge AI implementations. Our expertise spans IT infrastructure management, custom software development, seamless system integrations, and optimization of low-code business automation, empowering clients to maximize their existing technology investments.


Join us and be part of a team where your voice matters, your work makes an impact, and your growth is a shared priority.

AI2IO is seeking a visionary Senior Cloud Security Architect to shape and secure our Microsoft-centric enterprise environment. As the lead architect and client-facing security authority, you’ll turn business risks into scalable, secure-by-design solutions across Azure, M365, and modern SaaS/PaaS platforms. This high-impact role blends technical strategy, governance, and mentorship—empowering teams while protecting mission-critical data.


Position Title: Senior Cloud Security Architect


Position Location: Remote – work virtually from anywhere in the United States


SALARY

AI2IO recognizes salary ranges from job boards do not necessarily reflect our pay ranges. In many instances we out-compete those ranges for well-qualified candidates.


JOB SUMMARY

The Senior Cloud Security Architect owns the strategy, design, and continuous improvement of AI2IO’s enterprise security posture across Microsoft 365, Azure, and related SaaS/PaaS services and serves as AI2IO’s primary client‑facing security authority. Acting as the principal security subject‑matter expert, this role:

  • Translates business risk into technical controls, defines secure configurations, and creates repeatable patterns that Operations Team & support technicians can follow.
  • Represents AI2IO in security audits, diligence questionnaires, and client requests as needed.
  • Collaborates with software developers, data teams, and business stakeholders to embed security‑by‑design into all technology initiatives.

The Architect receives high‑level objectives, operates with substantial autonomy, and mentors other IT personnel who handle day‑to‑day incident response and routine administration.

This person will communicate and operate in line with organizational goals and values, as well as departmental objectives.


ESSENTIAL FUNCTIONS

Security Architecture & Strategy

  • Develop and maintain reference architectures, baselines, and secure configuration standards across Microsoft cloud services.
  • Perform threat modeling and risk assessments aligned to NIST CSF and CIS Benchmarks.
  • Design identity and access management patterns (least privilege, Conditional Access, PIM, service‑principal governance) for Entra ID, Power Platform, Azure DevOps, and custom applications.
  • Evaluate and pilot emerging Microsoft security capabilities

Governance, Compliance & Data Protection

  • Configure and tune Microsoft Purview Information Protection, DLP, retention, and eDiscovery
  • Map controls to compliance frameworks (e.g., ISO 27001, SOC 2) and support audits
  • Establish metrics and KPIs to measure control effectiveness

Security Operations Enablement

  • Build and document runbooks, automated playbooks, and alert tuning for SOC/IT Ops teams using Defender XDR, Sentinel, and Azure Automation.
  • Provide Tier‑3 escalation support for complex security incidents and coordinate post‑incident review

Continuous Improvement & Training

  • Conduct periodic architecture reviews and penetration‑test remediation plans
  • Deliver knowledge‑transfer sessions and create micro‑learning content for support technicians and developers
  • Champion security best practices in Agile ceremonies and DevOps pipelines

Performs Other Related Duties as Assigned


POSITION REQUIREMENTS

  • Advanced mastery of Microsoft Defender suite (Endpoint, Identity, Office, Cloud Apps) and Purview Information Protection
  • Deep knowledge of Entra ID (Azure AD) identity governance, RBAC, Conditional Access, PIM, and B2B/B2C models
  • Proven experience securing Exchange Online, SharePoint, Teams, and Power Platform (Power Apps, Automate, BI)
  • Familiarity with Azure services (App Services, Key Vault, App Config, Storage, Virtual Network, Private Link) and Azure Policy, Blueprints, ARM/Bicep/Terraform
  • Strong grasp of Graph API, OAuth 2.0, OpenID Connect, and application consent governance
  • Working knowledge of SIEM/SOAR (Microsoft Sentinel preferred) and incident‑response workflows.
  • Ability to translate security risks into concise business language for non‑technical stakeholders
  • Ability to communicate effectively directly with clients and at times serve as primary point of client contact
  • Ability to work successfully as a member of a team and independently with minimal supervision
  • Ability to work under pressure and meet close deadlines
  • Demonstrated aptitude for learning new technology and adapting to evolving requirements.
  • Organizational skills, with the ability to manage multiple tasks simultaneously

TRAVEL / RELOCATION REQUIREMENTS

  • Up to 5%, this may include travel to any or all 50 US states
  • Travel is defined as physically leaving home on behalf of business activities including but not limited to client sites, meetings with other employees, meeting for business development purposes, running errands on behalf of the business, attending industry conferences, etc.


EDUCATION / EXPERIENCE REQUIREMENTS

  • Bachelor’s degree in IT, Information Systems, Computer Science, or related discipline

PLUS

  • 8+ years of progressive IT or security experience, with 3+ years in a dedicated security‑architecture or cloud‑security engineering role

Benefits

AI2IO offers a very competitive benefits package; highlights include

  • Choice of comprehensive medical plans (including two PPO-style plans and a HDHP w/ HSA option)
  • Flex spending accounts (FSA)
  • Dental and vision plans
  • Comprehensive medical, dental and vision benefits extended to spouse / domestic partner and dependent children up to age 26
  • 401k with company match and self-directed brokerage account option
  • PTO including additional paid time off during the last week of the year
  • Company paid life insurance coverage for employees and their eligible dependents
  • Short and long-term disability, AD&D coverage
  • Professional development opportunities, tuition reimbursement and professional licensing assistance
  • Paid parental leave after one year of employment


AI2IO is an EEO/Affirmative Action Employer and participates in the E-Verify program with the Department of Homeland Security. We encourage diversity in our workforce.


Are you ready to challenge yourself and redefine standards in the AEC industry? Apply now and join our award-winning team!​


​NOTICE TO THIRD PARTY AGENCIES:

AI2IO does not accept unsolicited resumes from recruiters, employment agencies, or other staffing services. Unsolicited resumes include any resume or hiring document sent to AI2IO in the absence of a signed Service Agreement where AI2IO has expressly requested recruitment/staffing services specific to the position at hand. Any unsolicited resumes, including those submitted to hiring managers or other business leaders, will become the property of AI2IO and AI2IO will have the right to hire that candidate without reservation – no fee or other compensation will be owed or paid to the recruiter, employment agency, or other staffing service.

Top Skills

Azure
Azure Ad
Azure Automation
Defender Xdr
Entra Id
Graph Api
Microsoft 365
Microsoft Defender
Microsoft Purview
Oauth 2.0
Paas
SaaS
Sentinel
SIEM
Soar
Terraform

Similar Jobs

8 Days Ago
Remote or Hybrid
CA, USA
235K-350K Annually
Senior level
235K-350K Annually
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
The Senior DevOps Architect will design and implement scalable, secure cloud-native infrastructure, optimize CI/CD pipelines, and mentor engineering staff in a cybersecurity firm.
Top Skills: AWSCi/CdCloudFormationEksGitopsGkeKubernetesTerraform
7 Days Ago
In-Office or Remote
Atlanta, GA, USA
165K-220K Annually
Senior level
165K-220K Annually
Senior level
Big Data • Cloud
The Senior Security Solutions Architect leads cloud security solutions, conducts assessments, and collaborates with sales to enhance client success in pre-sales efforts.
Top Skills: AWSAzureCis BenchmarksCloudFormationCsa CcmGCPMicrosoft Defender For CloudNist 800-190OpaOpenshiftOpenstackOrcaOwasp SammPrisma CloudPulumiSIEMTerraformVMwareWizXdr
A Minute Ago
In-Office or Remote
Austin, TX, USA
169K-266K Annually
Senior level
169K-266K Annually
Senior level
Cloud • Information Technology • Productivity • Security • Software • App development • Automation
Lead complex technical projects, mentor engineers, build strategies, and ensure compliance in a collaborative environment with cross-functional teams.
Top Skills: Data EngineeringDodFedramp

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account