ai2io Logo

ai2io

Senior Cloud Security Architect

Posted Yesterday
Be an Early Applicant
Remote
Hiring Remotely in United States
Senior level
Remote
Hiring Remotely in United States
Senior level
The Senior Cloud Security Architect leads the security strategy for Microsoft environments, translating business risks into secure configurations while mentoring teams and ensuring compliance with security frameworks.
The summary above was generated by AI

AI2IO helps organizations navigate the complex landscape of technology solutions, from foundational IT services and system support to advanced software integration, automation, and cutting-edge AI implementations. Our expertise spans IT infrastructure management, custom software development, seamless system integrations, and optimization of low-code business automation, empowering clients to maximize their existing technology investments.


Join us and be part of a team where your voice matters, your work makes an impact, and your growth is a shared priority.

AI2IO is seeking a visionary Senior Cloud Security Architect to shape and secure our Microsoft-centric enterprise environment. As the lead architect and client-facing security authority, you’ll turn business risks into scalable, secure-by-design solutions across Azure, M365, and modern SaaS/PaaS platforms. This high-impact role blends technical strategy, governance, and mentorship—empowering teams while protecting mission-critical data.


Position Title: Senior Cloud Security Architect


Position Location: Remote – work virtually from anywhere in the United States


SALARY

AI2IO recognizes salary ranges from job boards do not necessarily reflect our pay ranges. In many instances we out-compete those ranges for well-qualified candidates.


JOB SUMMARY

The Senior Cloud Security Architect owns the strategy, design, and continuous improvement of AI2IO’s enterprise security posture across Microsoft 365, Azure, and related SaaS/PaaS services and serves as AI2IO’s primary client‑facing security authority. Acting as the principal security subject‑matter expert, this role:

  • Translates business risk into technical controls, defines secure configurations, and creates repeatable patterns that Operations Team & support technicians can follow.
  • Represents AI2IO in security audits, diligence questionnaires, and client requests as needed.
  • Collaborates with software developers, data teams, and business stakeholders to embed security‑by‑design into all technology initiatives.

The Architect receives high‑level objectives, operates with substantial autonomy, and mentors other IT personnel who handle day‑to‑day incident response and routine administration.

This person will communicate and operate in line with organizational goals and values, as well as departmental objectives.


ESSENTIAL FUNCTIONS

Security Architecture & Strategy

  • Develop and maintain reference architectures, baselines, and secure configuration standards across Microsoft cloud services.
  • Perform threat modeling and risk assessments aligned to NIST CSF and CIS Benchmarks.
  • Design identity and access management patterns (least privilege, Conditional Access, PIM, service‑principal governance) for Entra ID, Power Platform, Azure DevOps, and custom applications.
  • Evaluate and pilot emerging Microsoft security capabilities

Governance, Compliance & Data Protection

  • Configure and tune Microsoft Purview Information Protection, DLP, retention, and eDiscovery
  • Map controls to compliance frameworks (e.g., ISO 27001, SOC 2) and support audits
  • Establish metrics and KPIs to measure control effectiveness

Security Operations Enablement

  • Build and document runbooks, automated playbooks, and alert tuning for SOC/IT Ops teams using Defender XDR, Sentinel, and Azure Automation.
  • Provide Tier‑3 escalation support for complex security incidents and coordinate post‑incident review

Continuous Improvement & Training

  • Conduct periodic architecture reviews and penetration‑test remediation plans
  • Deliver knowledge‑transfer sessions and create micro‑learning content for support technicians and developers
  • Champion security best practices in Agile ceremonies and DevOps pipelines

Performs Other Related Duties as Assigned


POSITION REQUIREMENTS

  • Advanced mastery of Microsoft Defender suite (Endpoint, Identity, Office, Cloud Apps) and Purview Information Protection
  • Deep knowledge of Entra ID (Azure AD) identity governance, RBAC, Conditional Access, PIM, and B2B/B2C models
  • Proven experience securing Exchange Online, SharePoint, Teams, and Power Platform (Power Apps, Automate, BI)
  • Familiarity with Azure services (App Services, Key Vault, App Config, Storage, Virtual Network, Private Link) and Azure Policy, Blueprints, ARM/Bicep/Terraform
  • Strong grasp of Graph API, OAuth 2.0, OpenID Connect, and application consent governance
  • Working knowledge of SIEM/SOAR (Microsoft Sentinel preferred) and incident‑response workflows.
  • Ability to translate security risks into concise business language for non‑technical stakeholders
  • Ability to communicate effectively directly with clients and at times serve as primary point of client contact
  • Ability to work successfully as a member of a team and independently with minimal supervision
  • Ability to work under pressure and meet close deadlines
  • Demonstrated aptitude for learning new technology and adapting to evolving requirements.
  • Organizational skills, with the ability to manage multiple tasks simultaneously

TRAVEL / RELOCATION REQUIREMENTS

  • Up to 5%, this may include travel to any or all 50 US states
  • Travel is defined as physically leaving home on behalf of business activities including but not limited to client sites, meetings with other employees, meeting for business development purposes, running errands on behalf of the business, attending industry conferences, etc.


EDUCATION / EXPERIENCE REQUIREMENTS

  • Bachelor’s degree in IT, Information Systems, Computer Science, or related discipline

PLUS

  • 8+ years of progressive IT or security experience, with 3+ years in a dedicated security‑architecture or cloud‑security engineering role

Benefits

AI2IO offers a very competitive benefits package; highlights include

  • Choice of comprehensive medical plans (including two PPO-style plans and a HDHP w/ HSA option)
  • Flex spending accounts (FSA)
  • Dental and vision plans
  • Comprehensive medical, dental and vision benefits extended to spouse / domestic partner and dependent children up to age 26
  • 401k with company match and self-directed brokerage account option
  • PTO including additional paid time off during the last week of the year
  • Company paid life insurance coverage for employees and their eligible dependents
  • Short and long-term disability, AD&D coverage
  • Professional development opportunities, tuition reimbursement and professional licensing assistance
  • Paid parental leave after one year of employment


AI2IO is an EEO/Affirmative Action Employer and participates in the E-Verify program with the Department of Homeland Security. We encourage diversity in our workforce.


Are you ready to challenge yourself and redefine standards in the AEC industry? Apply now and join our award-winning team!​


​NOTICE TO THIRD PARTY AGENCIES:

AI2IO does not accept unsolicited resumes from recruiters, employment agencies, or other staffing services. Unsolicited resumes include any resume or hiring document sent to AI2IO in the absence of a signed Service Agreement where AI2IO has expressly requested recruitment/staffing services specific to the position at hand. Any unsolicited resumes, including those submitted to hiring managers or other business leaders, will become the property of AI2IO and AI2IO will have the right to hire that candidate without reservation – no fee or other compensation will be owed or paid to the recruiter, employment agency, or other staffing service.

Top Skills

Azure
Azure Ad
Azure Automation
Defender Xdr
Entra Id
Graph Api
Microsoft 365
Microsoft Defender
Microsoft Purview
Oauth 2.0
Paas
SaaS
Sentinel
SIEM
Soar
Terraform

Similar Jobs

7 Days Ago
Remote or Hybrid
CA, USA
235K-350K Annually
Senior level
235K-350K Annually
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
The Senior DevOps Architect will design and implement scalable, secure cloud-native infrastructure, optimize CI/CD pipelines, and mentor engineering staff in a cybersecurity firm.
Top Skills: AWSCi/CdCloudFormationEksGitopsGkeKubernetesTerraform
6 Days Ago
In-Office or Remote
Atlanta, GA, USA
165K-220K Annually
Senior level
165K-220K Annually
Senior level
Big Data • Cloud
The Senior Security Solutions Architect leads cloud security solutions, conducts assessments, and collaborates with sales to enhance client success in pre-sales efforts.
Top Skills: AWSAzureCis BenchmarksCloudFormationCsa CcmGCPMicrosoft Defender For CloudNist 800-190OpaOpenshiftOpenstackOrcaOwasp SammPrisma CloudPulumiSIEMTerraformVMwareWizXdr
40 Minutes Ago
Remote
US
112K-174K Annually
Senior level
112K-174K Annually
Senior level
Fintech • HR Tech • Payments • Social Impact • Financial Services
The Strategic Client Success Manager will oversee customer account management, drive growth through value delivery, and maintain strong relationships with clients. Responsibilities include defining account plans, collaborating with teams, and identifying business opportunities for existing customers.
Top Skills: Crm SoftwareHubspotMS OfficeSalesforce

What you need to know about the Charlotte Tech Scene

Ranked among the hottest tech cities in 2024 by CompTIA, Charlotte is quickly cementing its place as a major U.S. tech hub. Home to more than 90,000 tech workers, the city’s ecosystem is primed for continued growth, fueled by billions in annual funding from heavyweights like Microsoft and RevTech Labs, which has created thousands of fintech jobs and made the city a go-to for tech pros looking for their next big opportunity.

Key Facts About Charlotte Tech

  • Number of Tech Workers: 90,859; 6.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lowe’s, Bank of America, TIAA, Microsoft, Honeywell
  • Key Industries: Fintech, artificial intelligence, cybersecurity, cloud computing, e-commerce
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (CED)
  • Notable Investors: Microsoft, Google, Falfurrias Management Partners, RevTech Labs Foundation
  • Research Centers and Universities: University of North Carolina at Charlotte, Northeastern University, North Carolina Research Campus

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account