Lead Cloud Security Architect (Azure) || Toronto, ON (Hybrid) || Fulltime FTE

Lead Cloud Security Architect (Azure) || Toronto, ON (Hybrid) || Fulltime FTE

04 Aug
|
AceStack
|
Toronto

04 Aug

AceStack

Toronto

If anyone is interested, please share your resume to Job Title: Lead Cloud Security Architect (Azure)

Location: Toronto, ON
Work Model: Hybrid
Employment Type: Full-Time FTE

Experience Required: 8 10 Years Job Summary

We are seeking an experienced Lead Cloud Security Architect (Azure) to design, implement, and lead enterprise-scale cloud security initiatives. The ideal candidate will possess deep expertise in Azure security architecture, cloud-native security services, Zero Trust principles, infrastructure-as-code (IaC), compliance frameworks, and cloud security governance. This role requires strong technical leadership, stakeholder management, and hands-on experience securing enterprise applications migrating to Microsoft Azure. Key Responsibilities

- Lead the architecture, design, and implementation of secure Azure cloud environments for enterprise applications.
- Develop and implement cloud security strategies aligned with business objectives and regulatory requirements.
- Design security controls using industry best practices, including Zero Trust, Defense-in-Depth, and Secure-by-Design principles.
- Conduct cloud security assessments, identify risks, and develop remediation roadmaps.
- Build and enforce security controls using Infrastructure as Code (IaC) and Policy-as-Code methodologies.
- Collaborate with application, infrastructure, DevOps, and security teams to ensure secure cloud adoption.
- Define security architecture aligned with frameworks such as NIST CSF, CSA Cloud Controls Matrix, CIS Benchmarks, and Microsoft Cloud Security Benchmark.
- Lead Azure security architecture reviews for applications migrating from on-premises environments.
- Provide technical leadership, mentorship,



and architectural guidance to engineering and security teams.
- Engage directly with clients and stakeholders to gather security requirements, present solutions, and manage expectations.
- Support governance, risk, and compliance (GRC) initiatives and ensure adherence to regulatory standards.
- Drive vulnerability management, incident response readiness, monitoring, and cloud security operations.

Required Skills & Experience Cloud Security
- 8+ years of experience in Cybersecurity, including 4 5 years of Azure Cloud Security.
- 5+ years of experience designing and implementing enterprise cloud security architectures.
- Solid expertise in securing workloads migrating from on-premises environments to Microsoft Azure.
- Hands-on experience implementing cloud-native security controls and best practices.

Azure Security
- Strong knowledge of:

- Azure Security Reference Architecture
- Microsoft Cloud Security Reference Architecture (MCRA)
- Azure Well-Architected Framework
- Azure Entra ID (Azure AD)
- Azure networking and identity security
- Key Vault and Secrets Management
- Logging, Monitoring, and Security Operations

Cloud Security Tools

Experience with:

- Microsoft Defender
- Palo Alto Prisma Cloud
- Aqua CNAPP
- CrowdStrike Falcon EDR
- Qualys VMDR
- Imperva WAF




- Palo Alto Next-Generation Firewalls
- Zscaler SASE
- Snyk
- CNAPP/CWPP platforms

Cloud Governance & Compliance

Experience with:

- NIST Cybersecurity Framework (CSF)
- CSA Cloud Controls Matrix (CCM)
- CIS Benchmarks
- Microsoft Cloud Security Benchmark
- PCI-DSS
- HIPAA
- FedRAMP
- Governance, Risk & Compliance (GRC)

Infrastructure & DevSecOps
- Infrastructure as Code (IaC)
- Policy-as-Code
- DevSecOps practices
- Cloud IAM
- Container Security
- Vulnerability Management
- SIEM
- Incident Response
- Backup & Recovery
- Threat Management
- Attack Surface Management

Required Qualifications
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- 8 10 years of overall cybersecurity experience.
- 5+ years of consulting, technical leadership, and mentoring experience.
- Strong client-facing experience with stakeholder management.
- Excellent communication, analytical, and problem-solving skills.

Preferred Certifications
- CISSP (Required)
- Microsoft Certified: Azure Security Engineer Associate
- Microsoft Certified: Azure Solutions Architect Expert
- CCSP
- Azure Security or Cloud Architecture certifications (preferred)

Mandatory Skills
- Microsoft Azure Security
- Azure Security Architecture
- Azure Entra ID
- Cloud Security
- Cybersecurity
- Microsoft Defender
- Palo Alto Prisma Cloud
- Infrastructure as Code (IaC)
- Policy as Code
- DevSecOps
- Zero Trust
- Defense-in-Depth
- NIST CSF
- CIS Benchmarks
- Microsoft Cloud Security Benchmark
- CNAPP / CWPP
- SIEM
- Incident Response
- Vulnerability Management
- Cloud IAM
- Container Security
- CISSP

📌 Lead Cloud Security Architect (Azure) || Toronto, ON (Hybrid) || Fulltime FTE
🏢 AceStack
📍 Toronto

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: lead cloud security architect (azure) || toronto, on (hybrid) || fulltime fte / toronto