Cloud Security Architect
- Location : Calgary in office 5 days a week
Raise is currently hiring a Cloud Security Architect team member on behalf of our client. They’re expanding their team to meet growing needs, making this a unique opportunity to work with an industry leader.
Description
Our client is undertaking a strategic initiative to strengthen and modernize its Azure cloud architecture, focusing on scalability, security, and governance. This role will play a key part in assessing, designing, and implementing cloud security solutions — with a primary emphasis on Microsoft Defender for Cloud and related Azure security services.
The successful candidate will define frameworks, develop security roadmaps, and provide actionable recommendations to enhance Azure’s overall security posture. Collaboration with enterprise architects, security operations, and IT stakeholders will be central to ensuring cohesive and sustainable security improvements.
Responsibilities
Lead the Cloud Security Assessment, focusing on Microsoft Defender for Cloud deployment and best practices.Define a consistent framework for Defender for Cloud to improve threat protection, compliance, and governance.Provide recommendations for enhancing Microsoft Sentinel integration and utilization.Support secure workload expansion and collaboration between operations and security teams.Assess and improve cloud networking security (DNS, NSGs, firewalls, ExpressRoute) and recommend private endpoint adoption.Contribute to Landing Zone assessments to enhance scalability, governance, and alignment with security best practices.Develop a strategic roadmap to strengthen Azure security configurations and maintain compliance with standards (ISO, NIST, CIS).Prepare architecture recommendations, documentation, and implementation guidelines for cloud security solutions.Collaborate with SOC and DevOps teams to integrate security into development and monitoring workflows.Primary Deliverables
Defender for Cloud guidelines and deployment criteria.Strategic security roadmap for Azure workloads.Architecture recommendations and documentation supporting improved governance and compliance.Collaboration across architecture, operations, and security teams is essential for success in this engagement.Qualifications
7–10+ years of experience in cloud security, identity management, and cloud infrastructure design.Proven expertise configuring, deploying, and managing Microsoft Defender for Cloud across hybrid environments.Strong understanding of Azure security controls, including RBAC, policies, secure workload design, and regulatory compliance alignment.Experience with security operations and monitoring, including incident response and SIEM integration (e.g., Sentinel).Ability to communicate technical concepts clearly to stakeholders and collaborate with cross-functional teams.Nice to have
Experience with DevSecOps practices, integrating security through CI / CD using Infrastructure as Code (IaC).Familiarity with Azure networking fundamentals, private endpoints, and zero-trust architectures.Experience with Landing Zone design, subscription strategy, and governance frameworks.Knowledge of automation tools such as Terraform, Bicep, or ARM templates for security deployment.Education and Skills
Bachelor’s degree in Computer Science, Information Security, or a related technical discipline.Deep knowledge of Azure Security Center, Microsoft Defender for Cloud, and Microsoft Sentinel.Understanding of compliance standards and audit readiness (ISO 27001, NIST, CIS benchmarks).Strong analytical, documentation, and communication skills.Seniority level
Mid-Senior levelEmployment type
ContractJob function
Engineering and Information TechnologyIndustries
Energy Technology, Oil and Gas, and Utilities#J-18808-Ljbffr