Senior Consultant - Cloud Security Architect
Recruit Finds
Dubai, United Arab Emirates
Job summary
Senior Consultant - Cloud Security Architect AT KPMG Middle East
About this role
Join Our Whatsapp Channel - CLICK HERE
Cloud Security Architect / Consultant
Responsibilities
Work with clients to understand their business needs, cloud objectives, regulatory obligations, and cybersecurity risks.
Advise organizations on secure cloud adoption, migration strategies, lift-and-shift projects, and landing zone security architecture.
Design and implement security controls across Azure landing zones, covering identity, networking, governance, logging, encryption, workload protection, and monitoring.
Provide security architecture guidance across Microsoft Azure, Microsoft 365, AWS, and OCI environments.
Help clients address cybersecurity regulations, industry frameworks, and cloud compliance requirements.
Advise on cloud security governance, operating models, control frameworks, and enterprise risk management.
Evaluate existing cloud environments against security standards and best practices, including CIS, NIST, ISO, CAF, and relevant cloud provider guidance.
Assess and improve security controls across different layers of cloud and technology architectures.
Contribute security architecture expertise to wider cybersecurity and digital transformation programs.
Support the automation of security controls, security posture monitoring, risk reporting, and dashboard development where appropriate.
Independently deliver small and medium-sized assignments while contributing effectively to larger transformation engagements.
Assist with presales activities, proposal preparation, and business development initiatives.
Develop trusted relationships with clients at both technical and senior leadership levels.
Serve as a trusted advisor while demonstrating strong standards of quality, integrity, and risk management.
Contribute to the ongoing development of cloud security services, methodologies, and professional networks.
Candidate Profile
The successful candidate should have strong experience in cloud security architecture and consulting, combining practical technical expertise with the ability to provide effective advice to clients and senior stakeholders.
Key Requirements
Demonstrated experience in cloud security architecture, preferably with significant hands-on exposure to Microsoft Azure and Microsoft 365.
Practical knowledge of secure cloud migrations, lift-and-shift implementations, and Azure landing zone architecture or deployment.
Strong understanding of Azure security controls, including management groups, subscriptions, RBAC, Azure Policy, Defender for Cloud, logging, network security, private endpoints, Key Vault, backup, and workload protection.
Experience evaluating, designing, or implementing security controls across multiple technology and IT architecture layers.
Strong knowledge of identity and access management, including Microsoft Entra ID, Conditional Access, Privileged Identity Management, workload identities, and identity governance.
Experience conducting cloud security assessments, configuration reviews, privacy and regulatory risk assessments, and security control framework mapping.
Knowledge of DevSecOps, infrastructure-as-code, policy-as-code, security automation, and continuous control monitoring is highly desirable.
Previous experience delivering cybersecurity services within a consulting or commercial environment.
Experience working with at least one major cloud platform, including Azure, AWS, OCI, or Google Cloud Platform.
Strong analytical and problem-solving abilities, with the capacity to identify key issues and recommend practical, proportionate solutions.
Excellent communication skills and the ability to engage effectively with both technical specialists and senior business stakeholders.
Ability to explain complex cybersecurity matters in terms of business risk, potential impact, and appropriate remediation.
Ability to operate effectively in demanding, fast-paced environments while maintaining professionalism, organization, and quality.
Previous Big Four consulting experience is required.
Qualifications and Certifications
Candidates should ideally possess a combination of relevant cloud, cybersecurity, and architecture certifications. Holding every certification listed below is not mandatory, but one or more would be highly advantageous.
Microsoft Certified: Cybersecurity Architect Expert (SC-100)
Microsoft Certified: Cloud and AI Security Engineer Associate (SC-500)
Microsoft Certified: Identity and Access Administrator Associate (SC-300)
Microsoft Certified: Information Security Administrator Associate (SC-401)
Microsoft Azure certifications such as AZ-104 or AZ-305
AWS Certified Security – Specialty
AWS Certified Solutions Architect – Professional
Google Cloud Professional Cloud Security Engineer
CISSP, CISM, CCSP, or an equivalent level of cybersecurity expertise
SABSA, TOGAF, or comparable enterprise architecture experience is preferred
