Principal Microsoft Cloud & AI Security Architect
Willis Towers Watson
Job Description
The Role
• Architect and implement next generation Microsoft cloud security across Azure and multi cloud environments.
• Drive adoption of Agentic AI for Security to enable autonomous detection, adaptive response, and continuous security posture improvement.
• Enhance Microsoft Sentinel with MCP (Model Context Protocol), Sentinel Data Lake, and Sentinel Graph capabilities for advanced analytics, threat correlation, and automated workflows.
• Optimise and operationalise Defender XDR, Defender for Cloud, and Wiz to enhance cloud posture, workload protection, and risk visibility.
• Strengthen identity protection through Entra ID, Conditional Access, MFA, PIM/JIT, and Defender for Identity.
• Lead the automation of security operations using Sentinel Playbooks, Logic Apps, Power Automate, and advanced SOAR workflows.
• Drive proactive threat detection, email threat defence, and automated containment using MDO and Darktrace Email.
• Partner closely with GSOC, Incident Response, Threat Hunting, TI and Cloud Engineering teams to deliver unified detection, response, and governance.
• Manage, mentor and strengthen a team of Cyber Defence Security Engineers.
Key Skill Areas (Skill‑Based Requirements)
1. Microsoft Sentinel & Advanced Analytics
- Deep expertise in Microsoft Sentinel architecture, tuning, SIEM/UEBA, KQL, custom detections and threat hunting.
- Strong hands-on experience with:
- Agentic AI for Security
- Sentinel Data Lake (pipelines, analytics, cost optimisation, AI enablement)
- Microsoft Sentinel MCP for enriched context-aware analytics
- Microsoft Sentinel Graph for automated incident correlation and graph-driven workflows
2. Cloud Security Architecture (Microsoft + Multi-Cloud)
- Expertise designing security architectures across Azure, with additional exposure to AWS, GCP, OCI or hybrid environments.
- Strong experience with Defender XDR, Defender for Cloud, CSPM, CWPP, and multi-cloud security controls.
3. Cloud Posture & Risk Management (Wiz)
- Hands-on experience with: Wiz Cloud, Wiz Defend, Wiz Runtime Sensor, Wiz Code
- Strong ability to operationalise CSPM/CWP findings into actionable remediation.
4. Identity Security & Access Management
- Deep understanding of Entra ID security, Conditional Access, MFA, Identity Protection, PIM/JIT.
- Ability to define identity strategies and detect/mitigate identity‑led attacks.
5. Email Security & Threat Containment
- Expertise with Microsoft Defender for Office 365, phishing protection, Safe Links/Attachments, automated email response, and Darktrace Email.
6. Security Automation & Engineering
- Strong experience developing SOAR workflows and automation pipelines using: Sentinel Playbooks, Azure Logic Apps, Power Automate, Graph Security API, KQL-based automation
- Ability to document architectures, runbooks, and processes clearly and accurately.
7. Governance, Standards & Compliance
- Working knowledge of NIST CSF, ISO 27001, CIS Benchmarks, GDPR and SOC2.
- Ability to embed governance in cloud and SOC engineering processes.
8. Leadership & Cross‑Functional Collaboration
- Experience guiding and developing engineering teams.
- Strong communication, stakeholder management, and ability to influence global cyber defence functions.
Qualifications
The Requirements
- Deep hands‑on expertise in Microsoft Sentinel, including architecture, SIEM/UEBA, KQL, custom detections, automation, Sentinel Data Lake, MCP, Sentinel Graph, and Agentic AI–driven security.
- Strong experience with Wiz (Wiz Defend, Runtime Sensor, Wiz Code) and solid understanding of CSPM/CWPP for cloud posture and workload protection.
- Proven ability to integrate and automate security workflows using Sentinel Graph, Microsoft Graph Security API, Playbooks, Logic Apps, Power Automate, and KQL‑based automation.
- Advanced identity security skills across Entra ID, Conditional Access, MFA, Identity Protection, Privileged Identity Management (PIM), Just‑in‑Time (JIT) access, and Zero Trust identity models.
- Strong background in email security, including Microsoft Defender for Office 365, Darktrace Email, anti‑phishing controls, Safe Links/Safe Attachments, phishing simulations, and email threat intelligence.
- Ability to produce clear, well‑structured security architecture documentation, runbooks, and incident response procedures.
Note: Employment-based non-immigrant visa sponsorship and/or assistance is not offered for this specific job opportunity.
Company Benefits
WTW provides a competitive benefit package which includes the following (eligibility requirements apply):
- Health and Welfare: Mental health/emotional wellbeing (including Employee Assistance Program), medical (including prescription drug coverage and fertility benefits), dental, vision, Health Savings Account, Commuter Accounts, Health Care and Dependent Care Flexible Spending Accounts, company-paid life insurance, supplemental life insurance, AD&D, group accident, group critical illness, group legal, identity theft protection, wellbeing program, adoption assistance, surrogacy assistance, auto/home insurance, pet insurance, and other work/life resources.
- Leave Benefits: Paid Holidays, Annual Paid Time Off (includes state/local paid leave where required), Short-Term Disability, Long-Term Disability, Other Leaves (e.g., Bereavement, FMLA, ADA, Jury Duty, Military Leave, and Parental and Adoption Leave), Paid Time Off (only included for Washington roles)
- Retirement Benefits: Qualified contributory pension plan (if eligible) and 401(k) plan with annual nonelective company contribution. Non-qualified retirement plans available to senior level colleagues who satisfy the plans' eligibility requirements.
Pursuant to the San Francisco Fair Chance Ordinance and Los Angeles County Fair Chance Ordinance for Employers, we will consider for employment qualified applicants with arrest and conviction records.
This position will remain posted for a minimum of three business days from the date posted or until sufficient/appropriate candidate slate has been identified.
EOE, including disability/vets
Job Info
- Job Identification 202602641
- Job Category IS Security
- Locations Watson House, Reigate, RH2 9PQ, GB
- Job Schedule Full time
- ...Description The Role • Architect and implement next generation Microsoft cloud security across Azure and multi cloud environments. • Drive adoption of Agentic AI for Security to enable autonomous detection, adaptive response, and continuous security posture improvement...PrincipalCloudMicrosoftTemporary workWork at officeLocal areaVisa sponsorshipWork visaFlexible hours
- ...Overview The Information Security Architect is responsible for designing secure... ...organization to safely adopt Microsoft 365 Copilot, large language models (LLMs), AI agents, and intelligent automation... ...in Microsoft Purview, cloud security, responsible AI, and enterprise...CloudMicrosoftWork at office
$201k - $272k
...Description Are you passionate about the impact of cloud computing and AI on Financial Services, with a special focus on security? Do you have a unique combination of broad... ...is seeking a specialized Security Solutions Architect to work with our largest Financial Services...PrincipalCloudFlexible hours$107.5k - $188.4k
...Information Security Architect - AI Risk Management Job Overview We are seeking an Information... ...and implement controls for IT and cloud environments. Familiarity with AI threat... ...within enterprise contexts. Microsoft Copilot - integration patterns and associated...CloudMicrosoftWork at office- ...Principal Technical Program Manager Do you enjoy meeting with customers... ...to jointly develop code for cloud-based solutions that can... ...We work in collaboration with Microsoft product teams, partners, and open... ...transforming their missions using AI and other cloud-based...PrincipalCloudMicrosoftVisa sponsorshipWork visa
- ...and experienced Senior Data & Security Architect leader to join our team. This... ...strong data security across cloud, SaaS, and on-premises platforms... ...to support analytics, AI, and business intelligence... ...using the AI Assistants (like Microsoft copilot cowork, Anthropic claude...CloudMicrosoft
$142.8k - $274.8k
...engineers to jointly develop code for cloud-based solutions that can... ...We work in collaboration with Microsoft product teams, partners, and... ...platform. We are hiring a Principal Data Scientist to help drive... ...their missions using AI and other cloud-based solutions...PrincipalCloudMicrosoftOngoing contractLocal areaVisa sponsorshipWork visaFlexible hours- ...capabilities, deep industry knowledge, AI and technology expertise to deliver... ...employer awards page: As a Cloud Security Architect within Credera's Security and Privacy... ...with a strong preference for AWS and/or Microsoft Azure You understand cloud security...CloudMicrosoftH1bRemote workWorldwideFlexible hours2 days per week
$130k - $140k
...Texas (US-TX) Principal Software Engineer... ...deliver scalable, secure middle-office and... ...best practices. Cloud development experience (preferably Microsoft Azure) and DevOps... ...with Angular. ~ AI/ML experience is a... ...Certified Solutions Architect Certified...PrincipalCloudMicrosoftFull timeWork at office- ...Principal IT Programmer Analyst Date: May... ...business — capable of architecting scalable .NET/SQL... ...and champion AI-assisted development... ...Core, Web API) and Microsoft SQL Server, ensuring... ...teams ~ Cloud platform exposure... ...reliability, performance, security, and continuity of...PrincipalCloudMicrosoftFull timeFor contractorsLocal areaRelocation
$150k - $160k
...Title: Senior Security Architect Location: Houston, Texas Type: Direct Hire Salary: $150,000 -... ...leverages deep experience and is able to use AI-driven research to solve complex problems across diverse domains-from cloud-native environments to legacy on-prem systems...Cloud- ...complexity. Participate in secure design reviews and help... ...integrity. Leverage AI-assisted tools (e.g., Microsoft Copilot) to enhance testing... ...required. Experience with cloud platforms (e.g., AWS),... ...including Senior Software QA and Principal Software QA. World...PrincipalCloudMicrosoftFull timePart timeSecond jobWork from home
- ...Microsoft Azure Security certifications (AZ-500) - Preferred Minimum of 4-year degree in Computer Information systems or management.... ...services and functionalities. strong understanding of cloud security principles, best practices, and compliance frameworks...CloudMicrosoft
- ...seeking a hands-on Enterprise Data Architect to lead a data modernization... ..., and future automation/AI capabilities. Strong experience... ...modern data platforms such as Microsoft Fabric, Snowflake, or Databricks... ...~ Experience with modern cloud data platforms (Fabric, Snowflake...CloudMicrosoft
- ...Principal Architect – CX (Customer Experience) and Oracle CPQ Location:... ...experience with Oracle CPQ Cloud implementation in a global,... ...Oracle Sales Cloud, PRM, and Microsoft D365 with ERP systems like Oracle... ...(ERP, Data, Integration, Security) to ensure a cohesive architecture...PrincipalCloudMicrosoftLong term contractFull time
- ...Summary CenterPoint Energy is seeking a Senior Data & AI Cybersecurity Architect to help secure and govern enterprise data platforms and AI enabled... ...and compensating controls for complex, integrated multi-cloud environments Act as a subject matter expert for data...CloudFull timeFor contractorsFor subcontractorFlexible hours
- ...Job Title : Senior AI Engineer Location : Houston, TX (Hybrid -... ...automation • Design and implement cloud native AI architectures using Microsoft Azure services and established AI design... ...reliability, performance, and security • Orchestrate and configure infrastructure...CloudMicrosoftContract workFor contractors
- ...Hands-on experience with AWS, Microsoft Azure, and Snowflake in building... ...with data scientists and cloud teams to operationalize ML models... ...pipelines, and build reliable, secure, and scalable ML platforms.... ...Experience with Snowflake Cortex AI, Snowpark, or ML workloads in...PrincipalCloudMicrosoft
$210k
...Principal GCP Solutions Architect (1099 Contract) Country United States of... ...organization undergoing a major cloud and data transformation. We... ...supporting analytics, AI, and modernization initiatives... ...standards for performance, security, and governance Required...PrincipalCloudFull timeContract workFor contractorsRelocation- ...Title: Senior AI Engineer Location: Houston, TX (4 days of the... ...candidate will bring deep expertise in Microsoft Azure AI services , MLOps, and cloud-native architectures, with a strong... ...delivering reliable, scalable, and secure production systems. Key...CloudMicrosoftWork from home
- ...Lead Cloud Engineer Architects and manage the Azure cloud infrastructure for end... ...integrity. Ensure consistent, secure, reliable, resilient cloud... ...end-to-end solutions using Microsoft Azure services in a secure... .... Familiar with AI/ML integration frameworks...CloudMicrosoftWork experience placement
- ...experienced Azure Data Architect to lead the design, development... ...of enterprise-scale cloud data platforms. This... ...modeling, governance, security, and analytics... ...Data services and modern AI-enabled data solutions.... ...solutions within Azure/ Microsoft Fabric, design and solution...CloudMicrosoftCasual work
- ...We are looking for a Senior Data Architect with strong Software Architecture and AI/ML capabilities for a leading investment... ..., and physical data models Cloud architecture: Azure and AWS,... ...platforms: Databricks, SageMaker, S3, Microsoft Fabric Reporting &...CloudMicrosoft
- ...Principal It Architect As a Principal IT Architect, you will architect, support... ...for delivering modern, secure, and scalable end-user computing... ...management, such as Microsoft Endpoint Manager (Intune), Tanium... ...desktops and applications). Cloud Services : Knowledge of...PrincipalCloudMicrosoftFull timeFor contractorsRelocation package
- ...an experienced and visionary Principal IT Architect - Finance to lead the... ...automated period-end closing, and AI-driven cash flow forecasting... ...architectural oversight for SAP S/4HANA Cloud including RISE with SAP... ...with enterprise architects, security architects, and data...PrincipalCloudTemporary workFlexible hours
$142.8k - $274.8k
...' engineers to jointly develop code for cloud-based solutions that can accelerate their... .... We work in collaboration with Microsoft product teams, partners, and open-source... ...Microsoft platform. We are hiring a Principal Software Engineer with deep experience...PrincipalCloudMicrosoftOngoing contractLocal areaVisa sponsorshipWork visaFlexible hours- ...HPE Morpheus Enterprise - Principal Software Engineer This role... ...Enterprise is the global edge-to-cloud company advancing the way... ...cloud technologies (e.g., AWS, Microsoft Azure, Google Cloud). You... ...Azure, Google Cloud, CompTIA Security+). What We Can Offer You:...PrincipalCloudMicrosoftWork experience placementWork at office2 days per week
- ...Summary: We are seeking a hands-on Cloud & Security Administrator / Cloud Solutions Architect to manage, secure, and optimize our cloud-hosted SaaS and... ...deep experience with AWS, infrastructure automation, Microsoft SQL Server, Windows Server, Active Directory,...CloudMicrosoftLocal areaRemote work
$270k - $300k
...will lead strategic identity security initiatives across the company... ...across a range of on-premises, cloud-hosted, and third-party SaaS platforms... ...~ Serve as the engineering principal on implementing secure... ...power of artificial intelligence (AI) to efficiently accelerate...PrincipalCloudDaily paidLocal areaRemote work- ...Enterprise Security Operations Specialist This role supports enterprise... ...endpoint, network, identity, cloud, and application environments.... ...technologies, including AI, to ensure secure adoption in... ...Qualifications: Experience with Microsoft 365 security, cloud identity...CloudMicrosoftRemote workVisa sponsorshipWork visa
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Principal Microsoft Cloud & AI Security Architect. Be the first to apply!
- cloud operations engineer Houston, TX
- senior principal cloud computing engineer Houston, TX
- senior cloud engineer Houston, TX
- senior aws cloud engineer Houston, TX
- aws cloud security engineer Houston, TX
- aws cloud architect Houston, TX
- cloud developer Houston, TX
- devops cloud engineer Houston, TX
- cloud security architect Houston, TX
- senior cloud network engineer Houston, TX


