Security Architect - Entra ID/MS/Azure at Methods Business and Digital Technology | GB | Rezi

Security Architect - Entra ID/MS/Azure at Methods Business and Digital Technology

Security Architect - Entra ID/MS/Azure

Methods Business and Digital Technology · GB

3 weeks ago

Security Architect - Entra ID/MS/Azure

Methods Business and Digital Technology · GB

21 days ago
Resume preview

Impress employers and recruiters.
Choose from hundreds of resume examples.

Target Resume Now
Resume preview

Tailor your resume to this Security Architect - Entra ID/MS/Azure role.

Rezi rewrites your resume against Methods Business and Digital Technology's job description. Free.

Resume score gauge reading 58 out of 100

Don't guess if your resume is good enough.

See how it scores against the Security Architect - Entra ID/MS/Azure posting at Methods Business and Digital Technology — free, in seconds.

About the Role

We are looking for an experienced Security Architect to join a major technology transformation programme and provide security architecture leadership across the full transformation lifecycle. This is a key role responsible for defining and assuring the security architecture across identity, endpoints, Microsoft 365, applications, infrastructure, networks and migration activities. You will work at the intersection of security, architecture and delivery, ensuring that appropriate security controls are embedded into both coexistence and target-state designs without creating unnecessary barriers to practical delivery.

Responsibilities

  • Provide security architecture leadership and assurance across the transformation programme.
  • Establish and maintain the programme's security architecture principles, patterns, standards and control requirements.
  • Define clear security design-assurance criteria and ensure that technical designs are assessed consistently against agreed requirements.
  • Assess threats, risks, vulnerabilities and control gaps across the current, coexistence, transition and target states.
  • Develop proportionate security controls that support secure coexistence between existing environments and new target services.
  • Define and assure Zero Trust principles across identity, devices, applications, data and network access.
  • Establish security patterns for identity protection, privileged access, least privilege, Conditional Access and administrative boundaries.
  • Work closely with the identity and directory architecture function to ensure that authentication, access and administrative controls are appropriately designed and secured.
  • Define security requirements for endpoint, email, Microsoft 365, data, application and network architectures.
  • Establish appropriate requirements for security logging, monitoring, alerting, threat detection and incident response.
  • Review technical architecture and solution designs, identifying security weaknesses, control gaps, dependencies and areas requiring further assurance.
  • Assess migration strategies and cutover approaches from a security perspective, ensuring that risks associated with transition between environments are understood and controlled.
  • Review proposed security exceptions and deviations from established standards, documenting the rationale, residual risk, compensating controls and required treatments.
  • Maintain visibility of significant security risks and ensure that appropriate owners and mitigation plans are established.
  • Work with technical teams to develop practical remediation and risk-treatment approaches rather than simply identifying problems.
  • Ensure security requirements are incorporated into programme plans, technical designs, migration patterns, testing strategies and operational handover.
  • Support security testing and assurance activities, including validation of security controls before major migrations or go-live decisions.
  • Provide security input into operational readiness, ensuring that monitoring, alerting, incident response and support arrangements are in place before services transition into production.
  • Align programme designs with organisational security policies, information-security standards, data-protection obligations and relevant regulatory or assurance requirements.
  • Maintain appropriate security architecture documentation, including HLDs, security principles, control matrices, threat models, risk assessments, exception records and architecture decision records.
  • Provide clear security recommendations and risk-based advice to programme leadership and senior stakeholders.
  • Support continuous improvement of security controls as the transformation progresses and new risks, technologies and requirements emerge.

Requirements

  • Extensive experience working as a Security Architect across complex enterprise technology environments.
  • Strong technical knowledge of Microsoft Entra ID, Microsoft 365, Azure, endpoint security, networks and application security.
  • Strong understanding of hybrid and cloud security architectures and the challenges associated with transitioning from legacy environments.
  • Proven experience applying Zero Trust, least privilege, privileged access and defence-in-depth principles.
  • Strong knowledge of identity and access security, including authentication, Conditional Access, identity protection and administrative controls.
  • Experience designing security controls across endpoints, email, data, applications, infrastructure and networks.
  • Strong understanding of security logging, monitoring, threat detection and incident-response requirements.
  • Demonstrable experience in threat modelling, security risk assessment, control mapping and architecture assurance.
  • Experience assessing security risks associated with migration, coexistence, cutover and transition activities.
  • Understanding of data protection, information governance and relevant regulatory or assurance requirements.
  • Experience reviewing security exceptions and developing pragmatic risk-treatment or compensating-control strategies.
  • Strong technical writing skills, with experience producing security architecture documentation, risk assessments, threat models, control matrices and design-assurance outputs.
  • Experience working within formal architecture and security-governance frameworks.
  • Ability to translate technical security risks into clear business impacts, choices and recommendations.
  • Pragmatic security professional who understands that effective security is about managing risk, not eliminating change.
  • Technical depth to challenge architects and engineers, with the judgement to understand delivery constraints and work collaboratively towards solutions.
  • Confident operating in an environment where information is incomplete and decisions need to be made based on a combination of evidence, risk and professional judgement.
  • Comfortable engaging with senior stakeholders and explaining complex security matters in straightforward language.
  • Ability to distinguish between genuine security risks and theoretical concerns that do not warrant disproportionate controls.
  • Ability to embed security by design while maintaining the momentum of a major transformation programme.

Skills

  • Microsoft cloud
  • Hybrid enterprise environments
  • Microsoft Entra ID
  • Microsoft 365
  • Azure
  • Endpoint security
  • Network security
  • Application security
  • Hybrid security architectures
  • Cloud security architectures
  • Zero Trust
  • Least privilege
  • Privileged access
  • Defence-in-depth
  • Identity and access security
  • Authentication
  • Conditional Access
  • Identity protection
  • Administrative controls
  • Security logging
  • Security monitoring
  • Threat detection
  • Incident response
  • Threat modelling
  • Security risk assessment
  • Control mapping
  • Architecture assurance
  • Migration security
  • Coexistence security
  • Cutover security
  • Transition security
  • Data protection
  • Information governance
  • Regulatory requirements
  • Assurance requirements
  • Security exceptions
  • Risk-treatment strategies
  • Compensating controls
  • Technical writing
  • Security architecture documentation
  • Risk assessments
  • Threat models
  • Control matrices
  • Design-assurance outputs
  • Architecture frameworks
  • Security governance frameworks
  • Business impact translation
  • Risk-based advice

Location

  • London
  • Hybrid

Work Type

  • Onsite
  • Hybrid

Experience Level

  • Experienced

Benefits

  • Autonomy to develop and grow skills and experience
  • Part of exciting project work making a difference in society
  • Strong, inspiring, and thought-provoking leadership
  • Supportive and collaborative environment
  • Access to LinkedIn Learning
  • Management development programme
  • Training
  • 24/7 confidential employee assistance programme
  • Flexible working including home working and part time
  • Office parties
  • Breakfast Tuesdays
  • Monthly pizza Thursdays
  • Thirsty Thursdays
  • Commitment to charitable causes
  • 25 days of annual leave a year, plus bank holidays
  • Option to buy 5 extra days each year
  • 2 paid days per year to volunteer
  • Salary Exchange Scheme with 4% employer contribution and 5% employee contribution
  • Life Assurance of 4 times base salary
  • Private Medical Insurance (spouse and dependants included)
  • Worldwide Travel Insurance (spouse and dependants included)
  • Enhanced Maternity and Paternity Pay
  • Season ticket loan
  • Cycle to work scheme

About the Company

  • Methods is a £100M+ IT Services Consultancy who has partnered with a range of central government departments and agencies to transform the way the public sector operates in the UK.
  • Established over 30 years ago and UK-based, we apply our skills in transformation, delivery, and collaboration from across the Methods Group, to create end-to-end business and technical solutions that are people-centred, safe, and designed for the future.
  • Our human touch sets us apart from other consultancies, system integrators and software houses - with people, technology, and data at the heart of who we are, we believe in creating value and sustainability through everything we do for our clients, staff, communities, and the planet.
  • We support our clients in the success of their projects while working collaboratively to share skill sets and solve problems.
  • At Methods we have fun while working hard; we are not afraid of making mistakes and learning from them.
  • Predominantly focused on the public-sector, Methods is now building a significant private sector client portfolio.
  • Methods was acquired by the Alten Group in early 2022.