Atos is looking for an experienced Azure Security Architect to design and architect secure, resilient and scalable Microsoft Azure environments. The role focuses on Microsoft Security, Azure security architecture, identity, cloud security, SIEM/SOAR, endpoint security, data security and AI security.
The candidate will work with enterprise customers to assess security requirements, define security architecture, develop HLD/LLD, recommend Microsoft security solutions and provide technical leadership through implementation and operational transition. The role also requires hands-on experience applying AI and GenAI technologies to automate and optimize enterprise processes, including secure Azure AI workloads using Microsoft Foundry and Azure OpenAI, RAG solutions, AI agents, intelligent automation, data protection, responsible AI and operational controls.
Key Responsibilities
- Design end-to-end security architecture for Microsoft Azure and hybrid cloud environments.
- Develop security HLD/LLD, architecture diagrams, security controls and technical design documentation.
- Conduct security assessments and identify architectural gaps, risks and improvement opportunities.
- Define defense-in-depth, Zero Trust and security-by-design architecture.
- Design security controls across identity, endpoint, network, application, data and cloud layers.
- Provide technical leadership during implementation, migration and transformation programmes.
- Architect and integrate Microsoft Defender, Microsoft Sentinel, Microsoft Entra, Microsoft Purview and related security capabilities.
- Design SIEM/SOAR architecture, data connectors, detection engineering, Logic Apps playbooks, incident workflows and Sentinel modernization.
- Design secure Azure landing zones, cloud security guardrails, workload protection, network segmentation and Zero Trust connectivity.
- Architect Microsoft Defender for Endpoint deployments, endpoint security baselines, EDR/XDR capabilities and vulnerability management.
- Identify and prioritize business processes suitable for AI-led automation.
- Design intelligent automation solutions using Microsoft Foundry, Azure OpenAI, Foundry Agent Service, Azure AI services and Azure Machine Learning.
- Build AI agents and governed workflows integrating Azure Logic Apps, Azure Functions, API Management, Event Grid, Service Bus and enterprise APIs.
- Develop RAG and knowledge-grounded automation using Azure AI Search, vector stores and approved enterprise data sources.
- Define monitoring and evaluation for AI automations, including accuracy, groundedness, latency, throughput, cost, security events and business outcomes.
- Design security architecture for Azure AI, Microsoft Foundry and Azure OpenAI workloads, including controls for RAG, vector stores, identity, RBAC, network isolation and private connectivity.
- Assess AI-specific threats including prompt injection, data leakage, excessive permissions and insecure AI agents.
- Define security governance, Azure Policy standards, compliance controls, reference architectures and reusable security patterns.
Required Technical Skills
- Strong experience in Azure Security Architecture and the Microsoft security ecosystem.
- Hands-on architecture experience with Microsoft Defender, Sentinel, Entra ID and Purview.
- Strong knowledge of Zero Trust architecture, Azure networking, cloud security, CSPM/CNAPP and workload protection.
- Experience with SIEM/SOAR, SOC integration, enterprise-scale security solutions and security architecture documentation.
- Strong stakeholder and customer-facing communication skills.
AI Automation Technical Skills
- Production-grade AI-powered process automation experience with measurable business outcomes.
- Architecture and development experience with Microsoft Foundry, Azure OpenAI, Foundry Agent Service and Azure AI services.
- Experience developing AI agents, multi-agent workflows, tool integrations and RAG solutions.
- Proficiency in Python or C#, REST APIs, JSON, event-driven integration and Azure SDK-based development.
- Experience with Azure Logic Apps, Azure Functions, API Management, Service Bus, Event Grid and enterprise applications.
- Knowledge of Copilot Studio, Power Automate, Power Apps, AI Builder, prompt engineering, structured outputs, function calling, evaluation, guardrails and human-in-the-loop design.
- Experience with Azure AI Search, vector databases, document processing, content extraction, LLMOps/MLOps, CI/CD, observability and AI cost management.
Certifications
Preferred certifications include SC-100, AZ-305, AZ-500, SC-300, SC-200, SC-400 and relevant Azure AI, AI Engineer or AI Apps and Agents Developer certifications.
Experience
- 8+ years of experience in cybersecurity, cloud security or security architecture.
- 5+ years of experience designing Microsoft/Azure security solutions.
- Experience leading security architecture for large-scale cloud transformation programmes.
- Experience working with SOC, infrastructure, application, identity and compliance teams.
- Experience conducting customer-facing architecture workshops and technical solution presentations.
- 3+ years of hands-on experience designing and implementing AI, GenAI or intelligent automation solutions with successful production deployments.
- Experience with AI/GenAI security architecture is highly desirable.
- Demonstrated experience automating document-intensive, knowledge-intensive or decision-support processes and quantifying improvements.
Atos is committed to diversity and inclusion and to a fair work environment.