MENU
  • Remote Jobs
  • Companies
  • Go Premium
  • Job Alerts
  • Post a Job
  • Log in
  • Sign up
Working Nomads logo Working Nomads
  • Remote Jobs
  • Companies
  • Post Jobs
  • Go Premium
  • Get Free Job Alerts
  • Log in

Client Security Architect

BlueVoyant

Full-time
UK
security
python
sql
architecture
cyber security
Apply for this position

Client Security Architect (Microsoft Defender & Sentinel) Location: United Kingdom (Remote)  

We are looking a delivery-focused, client-facing Security Architect with expert-level knowledge of Microsoft Defender and Microsoft Sentinel. Reporting to the Senior Manager of Architecture, you will lead technical design and implementation, develop advanced detections and use cases, and provide ongoing architecture guidance for enterprise clients across UK and EMEA. This role ensures secure configuration, governance, and effective adoption of Microsoft security technologies. Primarily delivery-focused, with occasional pre-sales support.

Key Responsibilities

  • Act as technical lead architect for assigned clients, owning design, deployment, feature enhancements, and overall technical direction.

  • Perform hands-on deployment, configuration, administration, and management of Microsoft Sentinel and the Microsoft Defender suite.

  • Develop SOC/XDR use cases, detections, playbooks, and dashboards (operational and executive).

  • Conduct advanced event analysis leveraging SIEM/XDR; provide tuning recommendations and best practices to internal teams and clients.

  • Maintain and troubleshoot solutions across complex on-premises and cloud environments; assist customers in improving security posture.

  • Collaborate with Customer Success Managers, Deployment Engineering, and Architecture teams for seamless service delivery.

  • Provide occasional support for demos, RFP responses, and proof-of-concept evaluations.

  • Work effectively across UK and EMEA time zones; maintain deep technical expertise through continuous learning.

Deep Microsoft Defender Expertise

Lead architecture and optimization across the Defender portfolio:

  • Defender for Endpoint: onboarding at scale, ASR rules, EDR configurations, TVM, device control, web filtering, Live Response, advanced hunting.

  • Defender for Office 365: anti-phishing, Safe Links/Safe Attachments, mailbox intelligence, attack simulation, reporting/tuning.

  • Defender for Identity: sensor deployment, detections, SIEM/XDR integration, identity threat investigations.

  • Defender for Cloud Apps: policy design (session controls, app governance, OAuth risk), data protection, cloud discovery.

  • Defender for Cloud: CSPM/CWPP for Azure and hybrid workloads; Azure Security Benchmark alignment.

  • Integrate Defender signals with Sentinel (data connectors, analytics rules, incidents, playbooks); drive end-to-end incident response workflows.

  • Advise on Microsoft security licensing, feature enablement (E5/Defender plan mappings), and cost optimization.

Qualifications & Experience:

  • 7+ years technical experience in cybersecurity.

  • Extensive hands-on experience deploying and operating Microsoft Sentinel and Microsoft Defender suite (Endpoint, Identity, Office 365, Cloud Apps, Defender for Cloud).

  • Practical experience with Microsoft Entra ID (Azure AD), Microsoft 365, Azure Log Analytics, Logic Apps, and related services.

  • Familiarity with broader security technologies: EDR (CrowdStrike, Carbon Black), SOAR, Splunk, NGAV, firewalls.

  • Strong knowledge of Windows/macOS, virtualization, networking protocols, certificates, SQL Server, and hybrid environments.

  • Experience in complex IT environments (on-premises and cloud).

  • Excellent customer-facing skills; strong written and verbal communication.

  • Ability to provide tuning recommendations and handle high-pressure situations professionally.

  • Ability to work independently and collaboratively across diverse teams.

Advanced Competencies:

  • Advanced event analysis with SIEM/XDR.

  • Advanced experience with Microsoft Defender tools.

  • Advanced scripting: KQL for Sentinel/Defender hunting; PowerShell or Python a plus.

  • Understanding of Microsoft security licensing and cost optimization.

  • Knowledge of Microsoft Copilot for Security and integration with Sentinel/Defender workflows is a plus.

Certifications (Preferred):

  • Microsoft: AZ-500, SC-200, SC-300, MS-500.

  • Industry: CISSP, CISM, CEH, or SANS.

About BlueVoyant  At BlueVoyant, we recognize that effective cyber security requires active prevention and defense across both your organization and supply chain. Our proprietary data, analytics, and technology, coupled with deep expertise, works as a force multiplier to secure your full ecosystem. Accuracy! Actionability! Timeliness! Scalability!    Led by CEO, Jim Rosenthal, BlueVoyant’s highly skilled team includes former government cyber officials with extensive frontline experience in responding to advanced cyber threats on behalf of the National Security Agency, Federal Bureau of Investigation, Unit 8200, and GCHQ, together with private sector experts. BlueVoyant services utilize large real-time datasets with industry leading analytics and technologies.    Founded in 2017 by Fortune 500 executives, including Executive Chairman, Tom Glocer, and former Government cyber officials, BlueVoyant is headquartered in New York City and has offices in Maryland, Tel Aviv, San Francisco, London, Budapest, and Latin America.    BlueVoyant uses AI-assisted tools within our applicant tracking system to help identify candidates whose experience and skills best match the requirements of a role. This technology provides hiring teams with additional insights to support fair and efficient hiring decisions. Please note that all applications are reviewed by a member of our hiring team, and final hiring decisions are made by humans, not AI. By submitting your application, you acknowledge that AI tools may assist in the evaluation of your resume as part of the recruitment process. For more information on how we process your personal data, please review our Candidate Privacy Notice available at https://www.bluevoyant.com/candidate-privacy-notice.    All employees must be authorized to work in the United Kingdom. BlueVoyant provides equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability or genetics. In addition to federal law requirements, BlueVoyant complies with applicable state and local laws governing non-discrimination in employment in every location in which the company has facilities. 

BlueVoyant Candidate Privacy Notice

To understand how we secure and manage your personal data upon submitting a job application, please see our Candidate Privacy Notice, which can be found here - Candidate Privacy Notice

Apply for this position
Bookmark Report

About the job

Full-time
UK
Senior Level
Posted 2 hours ago
security
python
sql
architecture
cyber security

Apply for this position

Bookmark
Report
Enhancv advertisement
+ 1,284 new jobs added today
30,000+
Remote Jobs

Don't miss out — new listings every hour

Join Premium

Client Security Architect

BlueVoyant

Client Security Architect (Microsoft Defender & Sentinel) Location: United Kingdom (Remote)  

We are looking a delivery-focused, client-facing Security Architect with expert-level knowledge of Microsoft Defender and Microsoft Sentinel. Reporting to the Senior Manager of Architecture, you will lead technical design and implementation, develop advanced detections and use cases, and provide ongoing architecture guidance for enterprise clients across UK and EMEA. This role ensures secure configuration, governance, and effective adoption of Microsoft security technologies. Primarily delivery-focused, with occasional pre-sales support.

Key Responsibilities

  • Act as technical lead architect for assigned clients, owning design, deployment, feature enhancements, and overall technical direction.

  • Perform hands-on deployment, configuration, administration, and management of Microsoft Sentinel and the Microsoft Defender suite.

  • Develop SOC/XDR use cases, detections, playbooks, and dashboards (operational and executive).

  • Conduct advanced event analysis leveraging SIEM/XDR; provide tuning recommendations and best practices to internal teams and clients.

  • Maintain and troubleshoot solutions across complex on-premises and cloud environments; assist customers in improving security posture.

  • Collaborate with Customer Success Managers, Deployment Engineering, and Architecture teams for seamless service delivery.

  • Provide occasional support for demos, RFP responses, and proof-of-concept evaluations.

  • Work effectively across UK and EMEA time zones; maintain deep technical expertise through continuous learning.

Deep Microsoft Defender Expertise

Lead architecture and optimization across the Defender portfolio:

  • Defender for Endpoint: onboarding at scale, ASR rules, EDR configurations, TVM, device control, web filtering, Live Response, advanced hunting.

  • Defender for Office 365: anti-phishing, Safe Links/Safe Attachments, mailbox intelligence, attack simulation, reporting/tuning.

  • Defender for Identity: sensor deployment, detections, SIEM/XDR integration, identity threat investigations.

  • Defender for Cloud Apps: policy design (session controls, app governance, OAuth risk), data protection, cloud discovery.

  • Defender for Cloud: CSPM/CWPP for Azure and hybrid workloads; Azure Security Benchmark alignment.

  • Integrate Defender signals with Sentinel (data connectors, analytics rules, incidents, playbooks); drive end-to-end incident response workflows.

  • Advise on Microsoft security licensing, feature enablement (E5/Defender plan mappings), and cost optimization.

Qualifications & Experience:

  • 7+ years technical experience in cybersecurity.

  • Extensive hands-on experience deploying and operating Microsoft Sentinel and Microsoft Defender suite (Endpoint, Identity, Office 365, Cloud Apps, Defender for Cloud).

  • Practical experience with Microsoft Entra ID (Azure AD), Microsoft 365, Azure Log Analytics, Logic Apps, and related services.

  • Familiarity with broader security technologies: EDR (CrowdStrike, Carbon Black), SOAR, Splunk, NGAV, firewalls.

  • Strong knowledge of Windows/macOS, virtualization, networking protocols, certificates, SQL Server, and hybrid environments.

  • Experience in complex IT environments (on-premises and cloud).

  • Excellent customer-facing skills; strong written and verbal communication.

  • Ability to provide tuning recommendations and handle high-pressure situations professionally.

  • Ability to work independently and collaboratively across diverse teams.

Advanced Competencies:

  • Advanced event analysis with SIEM/XDR.

  • Advanced experience with Microsoft Defender tools.

  • Advanced scripting: KQL for Sentinel/Defender hunting; PowerShell or Python a plus.

  • Understanding of Microsoft security licensing and cost optimization.

  • Knowledge of Microsoft Copilot for Security and integration with Sentinel/Defender workflows is a plus.

Certifications (Preferred):

  • Microsoft: AZ-500, SC-200, SC-300, MS-500.

  • Industry: CISSP, CISM, CEH, or SANS.

About BlueVoyant  At BlueVoyant, we recognize that effective cyber security requires active prevention and defense across both your organization and supply chain. Our proprietary data, analytics, and technology, coupled with deep expertise, works as a force multiplier to secure your full ecosystem. Accuracy! Actionability! Timeliness! Scalability!    Led by CEO, Jim Rosenthal, BlueVoyant’s highly skilled team includes former government cyber officials with extensive frontline experience in responding to advanced cyber threats on behalf of the National Security Agency, Federal Bureau of Investigation, Unit 8200, and GCHQ, together with private sector experts. BlueVoyant services utilize large real-time datasets with industry leading analytics and technologies.    Founded in 2017 by Fortune 500 executives, including Executive Chairman, Tom Glocer, and former Government cyber officials, BlueVoyant is headquartered in New York City and has offices in Maryland, Tel Aviv, San Francisco, London, Budapest, and Latin America.    BlueVoyant uses AI-assisted tools within our applicant tracking system to help identify candidates whose experience and skills best match the requirements of a role. This technology provides hiring teams with additional insights to support fair and efficient hiring decisions. Please note that all applications are reviewed by a member of our hiring team, and final hiring decisions are made by humans, not AI. By submitting your application, you acknowledge that AI tools may assist in the evaluation of your resume as part of the recruitment process. For more information on how we process your personal data, please review our Candidate Privacy Notice available at https://www.bluevoyant.com/candidate-privacy-notice.    All employees must be authorized to work in the United Kingdom. BlueVoyant provides equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability or genetics. In addition to federal law requirements, BlueVoyant complies with applicable state and local laws governing non-discrimination in employment in every location in which the company has facilities. 

BlueVoyant Candidate Privacy Notice

To understand how we secure and manage your personal data upon submitting a job application, please see our Candidate Privacy Notice, which can be found here - Candidate Privacy Notice

Working Nomads

Post Jobs
Premium Subscription
Sponsorship
Reviews
Job Alerts

Job Skills
Jobs by Location
API
FAQ
Privacy policy
Terms and conditions
Contact us
About us

Jobs by Category

Remote Administration jobs
Remote Consulting jobs
Remote Customer Success jobs
Remote Development jobs
Remote Design jobs
Remote Education jobs
Remote Finance jobs
Remote Legal jobs
Remote Healthcare jobs
Remote Human Resources jobs
Remote Management jobs
Remote Marketing jobs
Remote Sales jobs
Remote System Administration jobs
Remote Writing jobs

Jobs by Position Type

Remote Full-time jobs
Remote Part-time jobs
Remote Contract jobs

Jobs by Region

Remote jobs Anywhere
Remote jobs North America
Remote jobs Latin America
Remote jobs Europe
Remote jobs Middle East
Remote jobs Africa
Remote jobs APAC

Jobs by Skill

Remote Accounting jobs
Remote Assistant jobs
Remote Copywriting jobs
Remote Cyber Security jobs
Remote Data Analyst jobs
Remote Data Entry jobs
Remote English jobs
Remote Spanish jobs
Remote Project Management jobs
Remote QA jobs
Remote SEO jobs

Jobs by Country

Remote jobs Australia
Remote jobs Argentina
Remote jobs Brazil
Remote jobs Canada
Remote jobs Colombia
Remote jobs France
Remote jobs Germany
Remote jobs Ireland
Remote jobs India
Remote jobs Japan
Remote jobs Mexico
Remote jobs Netherlands
Remote jobs New Zealand
Remote jobs Philippines
Remote jobs Poland
Remote jobs Portugal
Remote jobs Singapore
Remote jobs Spain
Remote jobs UK
Remote jobs USA


Working Nomads curates remote digital jobs from around the web.

© 2026 Working Nomads.