About the position
Senior Microsoft Cloud & Platform Security Lead (Short-term contract)
If you're a senior Microsoft security specialist who enjoys working across cloud, M365, security operations and architecture, this is an opportunity to take a leading technical role within a large enterprise environment.
You'll be responsible for shaping and strengthening the organisation's Microsoft security posture across Azure, Microsoft 365 and hybrid platforms. The role combines security architecture, engineering oversight, governance and senior-level incident support.
This is a senior technical position for someone who can operate beyond individual security technologies and help shape how Microsoft security is designed, governed and continuously improved across an enterprise environment.
Your focus will include:
- Designing and improving security controls across Microsoft 365 and Azure, including Microsoft Defender, Sentinel, Entra ID and Azure security policies
- Establishing technical security standards, secure configurations and baseline controls aligned with recognised security frameworks such as CIS, NIST and ISO 27001
- Monitoring security posture and driving improvements across Microsoft security scoring, vulnerabilities and other key security measures
- Providing senior escalation support for complex or major security incidents across Microsoft 365, Azure and platform environments, working closely with security operations teams on containment, investigation and recovery
- Reviewing security designs for initiatives involving Microsoft and cloud platforms, ensuring appropriate controls and technical decisions are documented
- Providing technical oversight across PKI, Azure Key Vault, DevSecOps security controls, GitHub Advanced Security and security considerations around AI and Copilot technologies
- Supporting and mentoring security engineers while helping strengthen capability across Microsoft security technologies
- Working with infrastructure, cloud, architecture, risk, audit and delivery teams to ensure security is incorporated into technology initiatives
The role does not involve day-to-day endpoint or identity administration. Instead, you'll provide security standards, technical challenge, governance and escalation support while operational teams retain responsibility for their respective platforms.
You'll also have the opportunity to influence security patterns, control configurations, technology decisions and improvements to the organisation's overall cyber resilience.
Required experience:
- You'll ideally have 7-10+ years of experience in Cyber Security or Information Security, with at least 5 years focused on Microsoft security within a hybrid enterprise environment.
- Experience should include security architecture, control design, Microsoft security posture improvement, complex incident escalation and supporting regulatory or security audits.
- Experience within a regulated environment such as financial services, healthcare or a similarly controlled industry would be highly beneficial. Familiarity with POPIA would be advantageous.
- You should be comfortable communicating technical security risks to senior management, governance, audit and other non-technical stakeholders, while still being technically strong enough to provide direction on complex security matters.
Required qualifications and certifications:
- Relevant degree or diploma in Information Technology, Computer Science, Information Security or a related discipline
- Microsoft AZ-500 certification
- Microsoft SC-200 certification
- SC-100 would be advantageous
- CISSP or CISM would be advantageous
- Ongoing professional development in Microsoft security, cloud security and cyber resilience
Exposure to these below Key Microsoft technologies is preferred and would be an advantage:
- Microsoft Defender for Endpoint
- Defender for Office 365
- Defender for Identity
- Defender for Cloud Apps
- Microsoft Sentinel
- Azure Security
- Entra ID
- Conditional Access
- Identity Protection
- PIM
- Microsoft Purview
- DLP
- Azure Key Vault
- PKI and GitHub Advanced Security
Desired Skills:
- Microsoft Security
- Azure Security
- Cyber Security
- Microsoft Sentinel
- Defender
- Cloud Security
- Information Security
Desired Work Experience:
Desired Qualification Level: