- Company Name
- Pauwels Consulting
- Job Title
- Senior Microsoft 365 Identity & Security Architect
- Job Description
-
Job title: Senior Microsoft 365 Identity & Security Architect
Role Summary: Lead architect for identity, security, and collaboration within a large, regulated enterprise. Design and govern hybrid AD+Entra ID, Zero‑Trust, PKI, Microsoft 365 Defender, Teams/Teams Phone, and automation to ensure resilience, compliance, and operational excellence.
Expectations:
- Deliver secure, high‑availability solutions that meet regulatory requirements.
- Coordinate across cloud, on‑prem, and SOC teams to continuously improve detections and response.
- Lead the design, implementation, and lifecycle of Teams collaboration and voice services.
- Build and maintain automation, reporting, and advanced threat hunting workflows.
Key Responsibilities:
- Design & maintain hybrid identity architecture (AD + Entra ID, Conditional Access, MFA, PIM, RBAC, identity governance).
- Operate PKI stack (ADCS, HSM, certificate templates), ensuring auditability and HA.
- Deploy and manage Microsoft Defender XDR components (Endpoint, Identity, Office 365, Cloud Apps).
- Collaborate with SOC teams to refine alerts, playbooks, and vulnerability management.
- Architect and roll out Teams collaboration, Teams Phone (PSTN, Direct Routing, SBCs, Auto‑Attendants, Call Queues), and Microsoft Teams Rooms.
- Develop PowerShell, Graph API, Logic Apps, and Automation Accounts pipelines for automation and reporting.
- Conduct KQL threat hunting, telemetry analysis, and investigations in Sentinel and Defender.
- Design HA, security, and DR patterns across on‑prem and cloud environments.
Required Skills:
- Senior expertise in hybrid AD + Entra ID architecture, Zero‑Trust, RBAC, PIM, SSO, SCIM.
- Strong PKI knowledge (ADCS, HSM, certificate lifecycle).
- Deep understanding of Microsoft Defender XDR suite and endpoint/email security.
- Proven Teams and Teams Phone architecture experience.
- Advanced scripting: PowerShell, Microsoft Graph API.
- KQL proficiency with Sentinel or equivalent SIEM.
- Experience designing HA, security, and disaster recovery patterns.
Required Education & Certifications:
- SC‑100: Cybersecurity Architect Expert (preferred)
- SC‑300: Identity & Access Administrator Associate (preferred)
- MS‑700: Teams Administrator Associate (preferred)
- MS‑721: Collaboration Communications Systems Engineer Associate (preferred)
- Valid NATO/BEL/EU Secret clearance.