Director – Security Architect (Bengaluru)

Director – Security Architect (Bengaluru)

17 Sep
|
VARITE
|
Bengaluru

17 Sep

VARITE

Bengaluru

Company Name: VARITE India Private Limited

About The Client:

A global professional services network and part of the Big Four, along with Client, EY, and KPMG, operating across 149 countries worldwide.

About The Job:

- Client is seeking an experienced Director-level Security Architect to lead the design, governance, and technical direction of large-scale enterprise security transformation programs — with immediate responsibility for a major Microsoft E5 Security and Purview implementation for a global client.

- This is a working architect role, not a purely oversight position.
- The successful candidate must be equally comfortable presenting architecture strategy and risk trade-offs to client CISOs and board-level stakeholders, and rolling up their sleeves to configure, troubleshoot, and validate Microsoft E5 capabilities directly when delivery timelines, escalations, or technical complexity demand it.
- We are looking for a strong hands-on practitioner with genuine prior delivery experience on the Microsoft E5 suite and to manage leadership-level client relationships.

Essential Job Functions:

Hands-On Architecture Leadership & Delivery:

- Own the end-to-end target security architecture across Microsoft Entra ID, Defender Suite (MDE, MDO, MDCA, MDI), Microsoft 365 Defender XDR, and Microsoft Purview (DLP, Insider Risk, eDiscovery, Information Protection, Compliance Manager).

- Personally configure, test, and troubleshoot Conditional Access, Identity Protection, ASR rules, DLP policies, and sensitivity labels when required — particularly during initial deployment, escalations, or complex wave cutovers where deep technical credibility is needed.
- Define enterprise-wide architectural standards for RBAC, cross-domain XDR correlation, and legacy tool decommissioning (CrowdStrike, Checkpoint EDR, Symantec DLP, Sophos).
- Design the enterprise sensitivity label taxonomy, data governance model, and DLP control framework aligned to regulatory and business requirements.

- Act as technical escalation point for Critical/High severity issues during stabilization and hypercare — diagnosing and resolving configuration issues directly alongside the delivery team, not just directing from above.

Program & Delivery Oversight:

- Lead architecture governance across all engagement phases and Knowledge Transfer.
- Define wave exit criteria, oversee validation/testing activities, and sign off on architectural compliance before wave progression.
- Step into delivery workstreams directly during resource gaps, tight deadlines, or high-complexity configuration work to keep wave timelines on track.

Leadership-Level Client & Stakeholder Management:

- Act as the primary architectural point of contact for client CISO, IT leadership, and Business Unit stakeholders — building trusted-advisor relationships at the most senior levels.
- Present architecture decisions, risk trade-offs, and roadmap progress confidently in board-level and steering committee forums, translating technical complexity into business risk language.
- Facilitate workshops with Business Units and Compliance teams to validate data classification, policy exceptions,



and adoption impacts.
- Manage difficult stakeholder conversations (scope, risk acceptance, delays) with composure and commercial judgment, protecting both client outcomes and *** delivery integrity.

Team Leadership & Capability Building:

- Lead and actively work alongside a multi-disciplinary delivery team (security engineers, consultants, project managers) across identity, endpoint, cloud app security, and data protection workstreams — leading from the front, including hands-on configuration when needed.
- Own quality assurance of technical deliverables: configuration baselines, SOPs, runbooks, stabilization/optimization reports, and KPI/health check reports.
- Lead architecture-focused Knowledge Transfer sessions and ensure client teams are enabled for independent BAU operation.
- Contribute reusable architecture patterns and points of view to ***'s Securing Emerging Technologies practice.

Risk, Compliance & Governance:

- Ensure architecture decisions strengthen regulatory compliance and audit readiness.
- Balance security control rigor against business disruption — particularly for DLP, Insider Risk Management, and sensitivity labelling — via risk-based tuning (Adaptive Protection).
- Maintain architectural alignment with agreed scope boundaries and manage architecture-impacting change requests through formal change control.

Qualifications:

- 15+ years in cybersecurity, with 8+ years in enterprise security architecture roles, ideally at Director/Principal Architect level in a consulting or large enterprise environment.
- Proven, hands-on prior delivery experience with the Microsoft E5 Security and Purview suite — this is a hard requirement, not a preference.
- Candidates must be able to speak to specific configurations they have personally designed and deployed (e.g., Conditional Access policies, MDE/MDO/MDCA onboarding, DLP and sensitivity label rollouts, Insider Risk Management).
- Demonstrated track record architecting AND delivering enterprise implementations at scale (10,000+ endpoints/servers, multi-region) — not purely advisory engagements.
- Deep hands-on expertise across:
- Microsoft Entra ID (Conditional Access, Identity Protection, RBAC)
- Microsoft Defender Suite (MDE, MDO, MDCA/MCAS, MDI, Microsoft 365 Defender XDR)
- Microsoft Purview (Information Protection, DLP, Insider Risk Management, eDiscovery, Compliance Manager, Records Management)

- Experience leading migration/consolidation from legacy/third-party tools (e.g., CrowdStrike, Checkpoint, Symantec, Sophos) into unified Microsoft-native platforms.
- Demonstrated experience with wave-based/phased enterprise rollouts, hypercare models, and formal stage-gate/sign-off governance.
- Strong,



evidenced ability to manage leadership-level client stakeholders (CISO, CIO, Board/Steering Committee) — able to build trust quickly, navigate escalations, and influence senior decision-makers.
- Comfortable operating across the full spectrum from executive presentation to console-level configuration within the same week — genuinely willing and able to roll up sleeves when delivery needs it.
- Relevant certifications preferred: Microsoft Certified: Cybersecurity Architect Expert (SC-100), SC-200/SC-300/SC-400, CISSP, CISM, or TOGAF.
- Experience in manufacturing, logistics, industrial, or critical infrastructure environments is highly valued given complexity of OT/IT convergence and heterogeneous device estates.

Domain – Technical:
- Hands-on Microsoft E5 Security & Purview configuration.
- Zero Trust architecture.
- XDR/SIEM integration patterns.
- DLP/data classification design.
- RBAC concepts.

Domain – Delivery:

- Willingness and ability to execute hands-on configuration/troubleshooting personally.
- Multi-region rollout governance.
- Hypercare management.

Domain – Leadership:

- Mentoring senior consultants.
- Leading from the front on technical and client fronts simultaneously.

Domain – Stakeholder Management:

- Executive/board-level presentation.
- CISO/CIO relationship management.
- Navigating escalations with composure and commercial judgment.

Domain – Consulting:

- Proposal/SOW development.
- Risk-based prioritization.
- Change management support.

Domain – Regulatory:

- Regulatory compliance frameworks.
- Industrial/manufacturing digital risk.
- Emerging technology security.

How to Apply: Interested candidates are encouraged to respond/submit their updated resumes, and for additional job opportunities, please visit Jobs In India – VARITE.

Unlock Rewards: Refer Candidates and Earn.

If you're not available or interested in this opportunity, please pass this along to anyone in your network who might be a good fit and interested in our open positions. VARITE offers a Candidate Referral program, where you'll receive a one-time referral bonus based on the following scale if the preferred candidate completes a three-month assignment with VARITE.

Experience Level Bonus Referral:

0-2 years INR 5,000 2-6 years INR 7,500 6+ years INR 10,000

About VARITE: VARITE is a global staffing and IT consulting company providing technical consulting and team augmentation services to Fortune 500 Companies in USA, UK, CANADA and INDIA. VARITE is currently a primary and direct vendor to the leading corporations in the verticals of Networking, Cloud Infrastructure, Hardware and Software, Digital Marketing and Media Solutions, Clinical Diagnostics, Utilities, Gaming and Entertainment, and Financial Services.

Equal Opportunity Employer:

VARITE is an equal prospect employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. We do not discriminate based on race, color, religion, sex, sexual orientation, gender identity or expression, national origin, age, marital status, veteran status, or disability status

📌 Director – Security Architect (Bengaluru)
🏢 VARITE
📍 Bengaluru

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: director – security architect (bengaluru) / bengaluru

Subscribe to this job alert:

Get the latest job offers by email for: director – security architect (bengaluru) / bengaluru