AMBG - Cloud Security & Exposure Management Architect

AMBG - Cloud Security & Exposure Management Architect

Full-Time 70000 - 90000 £ / year (est.) No working from home possible
3004 Avanade UK Limited Company

At a Glance

  • Tasks: Lead cloud security projects, assess vulnerabilities, and implement Microsoft Security solutions.
  • Company: Join Avanade, a leader in innovative cloud security solutions.
  • Benefits: Competitive salary, flexible work options, and opportunities for professional growth.
  • Other info: Dynamic team environment with a focus on continuous learning and development.
  • Why this job: Make a real impact on clients' security while working with cutting-edge technologies.
  • Qualifications: Advanced Microsoft Security certifications and strong knowledge of cloud security tools required.

The predicted salary is between 70000 - 90000 £ per year.

Avanade is looking for an experienced Cloud Security & Vulnerability Management Architect to join our security practice.

This is a client-facing role where you will be engaged in exciting, complex, and leading-edge projects.

You will help clients improve their cloud security and exposure management maturity by identifying, prioritizing, and reducing exploitable risks across cloud, identity, endpoint, application, and data environments, using Microsoft Security technologies and modern threat-informed approaches.

You will also be part of the Avanade Security presales and Architecture function supporting the development of proposals, solution options, and architecture inputs for enterprise clients, with a focus on cloud security, exposure management, and Microsoft Security-led transformation.

This role will include partial delivery expectations for the year.

Responsibilities

  • Lead defined workstreams or small project teams within larger cloud security and exposure management engagements.
  • Manage assigned deliverables, including exposure assessments, remediation plans, security control improvements, and reporting outputs against agreed engagement milestones.
  • Contribute to solution architecture and pre-sales deal shaping for cloud security, Microsoft Defender, Sentinel, Entra, Defender for Cloud, and exposure management opportunities while building trusted relationships with client security, cloud, and operations stakeholders during delivery and pre-sales engagements.
  • Design, implement, and integrate cloud security, exposure management, threat detection, and security operations capabilities, including Microsoft Sentinel, Defender for Cloud, Defender XDR, and related Microsoft Security technologies.
  • Understand threat modelling, attack paths, cloud misconfigurations, identity risks, vulnerabilities, and how to prioritise remediation based on exploitability and business impact.
  • Understand incident response, cyber recovery, and how exposure management can reduce the likelihood and impact of security incidents.
  • Understand security operations centre functions and how exposure insights can support detection engineering, prioritised remediation, and operational risk management.
  • Have a good understanding of Microsoft platforms across Windows, Microsoft 365, Entra ID, Azure, and Defender, including how risks and exposures surface across these environments.
  • Understand how threat actors exploit misconfigurations, identity weaknesses, vulnerable assets, exposed services, and weak security controls.
  • Apply frameworks such as MITRE ATT&CK to help clients understand attack paths, prioritise exposures, and improve cyber defence maturity.
  • Understand the business, privacy, security, and compliance challenges surrounding client data, critical assets, and digital services, and articulate how exposures could increase risk to those assets.
  • Be aware of emerging technologies in cyber defence, cloud security, attack surface management, vulnerability management, and exposure management.
  • Develop strong working relationships with account teams, delivery teams, security architects, and client stakeholders.
  • Identify customer needs and business goals, then translate them into practical cloud security and exposure management solution options.
  • Support the development of security transformation and operations opportunities, using standardised tools, Microsoft Security capabilities, partner technologies, and exposure‑led assessment approaches.
  • Contribute to proposals, client presentations, solution discussions, and technical input throughout the sales process.
  • Conduct and follow through the sales process to accomplish deal closure.

Qualifications

  • Advanced Microsoft Security Certifications (SC-100, SC-200, SC-300, SC-400, SC-900).
  • Industry-recognised certifications such as CISSP, CCSP, CISM, and SANS.
  • Strong knowledge of Microsoft Security tools—including Defender for Cloud, Microsoft Sentinel, Defender XDR, Security Copilot, Entra ID, and Exposure Management capabilities—to help clients identify, prioritise, and reduce security risks across cloud and hybrid environments.
  • Experience in designing and implementing secure cloud architectures and exposure‑management approaches that align to industry standards.
  • Experience supporting RFP responses related to cloud security, exposure management, security operations, and Microsoft Security services.
  • Continuous improvement mindset: stay updated on cloud security, exposure management, threat intelligence, vulnerability trends, and Microsoft Security capabilities to improve client recommendations and delivery quality.
  • Knowledge of exposure‑management concepts including attack paths, vulnerabilities, misconfigurations, identity exposures, internet‑facing assets, control gaps, and remediation prioritisation.
  • Experience supporting cloud security assessments, posture reviews, exposure analysis, or remediation planning across Microsoft Azure and Microsoft Security environments.
  • Ability to translate technical exposure findings into business risk, prioritised actions, and clear client recommendations.
  • Knowledge of cloud platforms (AWS, Google Cloud) and their security tools.
  • Familiarity with regulatory compliance requirements such as GDPR and HIPAA.
  • Beneficial knowledge of the Defender suite—including Defender for Endpoint, Defender for Identity, Defender for Office 365, and Microsoft Cloud App Security.
  • Experience with Microsoft accreditation—CISSP, CCSP, or Azure Security Engineer certifications.
  • #J-18808-Ljbffr

AMBG - Cloud Security & Exposure Management Architect employer: 3004 Avanade UK Limited Company

Avanade is an exceptional employer, offering a dynamic work culture that prioritises collaboration and innovation within the Health & Public Sector. Employees benefit from extensive growth opportunities through strategic partnerships with Accenture, allowing for impactful contributions to digital transformation initiatives. With a strong commitment to diversity and inclusion, Avanade fosters a sense of belonging, making it an ideal workplace for those passionate about leveraging Microsoft technologies to drive meaningful change.

3004 Avanade UK Limited Company

Contact Details:

3004 Avanade UK Limited Company Recruitment Team

We think you need these skills to ace AMBG - Cloud Security & Exposure Management Architect

Cloud Security
Vulnerability Management
Microsoft Security Technologies
Threat Modelling
Incident Response
Cyber Recovery
Exposure Management