Unicorn Lab
Cloud Security & Migration Architect (Azure | Hybrid | Multi-Cloud)
Unicorn LabUnited Arab Emirates1 day ago
ContractInformation Technology

Role Overview

We are seeking a highly experienced Cloud Security & Migration Architect with deep, hands-on expertise in securing and migrating large-scale enterprise environments from on-premises to cloud. The role requires strong experience across cloud security, hybrid architectures, identity, SOC, and resilience, with proven delivery across GCC-based government and corporate clients.


The candidate must be capable of designing, executing, and securing end-to-end migration journeys across Azure, hybrid, and multi-cloud environments. This is a hands-on role with accountability for both architecture and execution.


Key Responsibilities


Cloud & Migration Architecture

Lead end-to-end migration programs from on-premises to cloud, including assessment, planning, landing zone design, and execution. Define secure target architectures across Azure, hybrid, and multi-cloud environments. Design Azure Landing Zones aligned to enterprise-scale governance and security. Drive workload migration strategies including rehost, replatform, refactor, and modernization. Ensure security, compliance, and resilience are embedded from day one.


Hybrid & Multi-Cloud Security

Design and secure hybrid environments integrating on-premises, Azure, and other cloud platforms. Implement secure connectivity models including VPN, private endpoints, and segmentation. Define consistent security controls, identity models, and governance across multi-cloud environments. Enable centralized visibility and control across distributed environments.


Identity & Access Security

Implement and manage Microsoft Entra ID, hybrid identity integration, Conditional Access, MFA, and identity governance. Design and secure identity across cloud and on-prem environments. Deploy Privileged Identity Management and enforce least privilege access models.


Threat Protection & SOC Enablement

Implement and optimize Microsoft Sentinel for centralized SIEM/SOAR across hybrid and multi-cloud environments. Deploy Microsoft Defender suite for cloud, endpoint, identity, and applications. Build detection use cases, playbooks, and automated response workflows. Lead threat hunting and incident response initiatives.


Cloud Security Posture & Compliance

Implement Microsoft Defender for Cloud and Azure Policy for posture management across cloud and hybrid environments. Align architectures to standards such as ISO 27001, NIST, CIS, and regional regulatory frameworks. Conduct security assessments, gap analysis, and remediation planning across migration phases.


DevSecOps & Application Security

Integrate security into CI/CD pipelines using Azure DevOps and GitHub Advanced Security. Implement secrets management using Azure Key Vault. Secure APIs, microservices, and containerized workloads across cloud platforms.


Resilience & Data Protection

Design and implement secure backup, disaster recovery, and ransomware protection strategies across hybrid and cloud environments. Ensure alignment with business continuity objectives. Conduct failover and recovery testing.


Client Engagement & Delivery

Lead engagements with CIOs, CISOs, and enterprise architecture teams. Conduct migration readiness assessments, security workshops, and architecture reviews. Drive execution with strong ownership from design through implementation. Manage stakeholders across multiple countries and business units.


Required Experience

10+ years in cybersecurity and cloud architecture with at least 6+ years focused on Azure and cloud security. Proven experience delivering large-scale cloud migration programs in GCC for enterprise or government clients. Strong hands-on expertise in Azure, hybrid architectures, and multi-cloud environments. Experience in Zero Trust architecture, SOC transformation, and enterprise-scale cloud governance. Strong understanding of regional regulatory and compliance requirements.


Mandatory Microsoft Certifications

Microsoft Certified Azure Solutions Architect Expert (AZ-305).

Microsoft Certified Azure Security Engineer Associate (AZ-500).

Microsoft Certified Cybersecurity Architect Expert (SC-100).

Microsoft Certified Identity and Access Administrator (SC-300).


Preferred Certifications

CISSP, CISM or CISA. CCSP.

ISO 27001 Lead Implementer or Lead Auditor.

AWS Certified Security Specialty or Solutions Architect (for multi-cloud exposure).

Google Professional Cloud Security Engineer (nice to have).


Key Skills

Cloud migration strategy and execution, Azure architecture, hybrid and multi-cloud security, Microsoft Sentinel and Defender suite, identity and Zero Trust, cloud governance and compliance, DevSecOps, incident response and threat hunting, stakeholder management.


What We Look For

A hands-on architect who can lead from design to execution.

Strong experience in complex enterprise transformation programs.

Ability to operate in high-stakes, multi-country GCC environments.

Strong ownership, accountability, and delivery focus.


Nice to Have

  • Experience in regulated industries such as banking, government, or healthcare.
  • Exposure to AI-driven security including Microsoft Security Copilot.
  • Experience managing large-scale transformation programs with cross-functional teams.

Key Skills

Ranked by relevance