Cyber Security Architect / Security Architect – Microsoft Defender, SIEM, Azure

Microsoft Security Architect | Entra ID / Azure AD | Purview | Endpoint / Server Security & Identity | ISM PSPF Essential Eight | Rapid7| NV1 Canberra
Listed
4 October 2026

By Evolut
4 October 2026

  • 12-month initial contract, with one 12-month extension
  • Competitive Rates on Offer
  • Canberra onsite — Federal Government contract
  • Security architecture across SIEM, Microsoft security, identity, endpoints and cloud
  • Must be able to obtain NV1 security clearance
  • Estimated start 2 November 2026

  
Infinity Pro is seeking a Cyber Security Architect with strong technical architecture and engineering experience for a contract opportunity with a Federal Government agency.

You will provide architecture leadership across enterprise cyber security platforms, investigate technical dependencies and gaps, develop implementable designs and guide improvements through to operational outcomes. The role combines hands-on technical analysis, architecture design and delivery assurance, working closely with security, cloud, network, endpoint and project teams.

The environment spans SIEM and enterprise logging, Microsoft Defender for Endpoint and Defender for Identity, Microsoft Purview, Entra ID and Active Directory, Azure/hybrid-cloud security, secure web gateways, proxies, CASB and vulnerability management.

Essential Experience

  • Cyber security architecture and engineering across complex enterprise environments, with experience spanning multiple security domains and translating designs into implemented, supportable solutions
  • Enterprise security-monitoring and SIEM architecture, including logging, telemetry, integration requirements and effective coverage across systems and security platforms
  • Microsoft Defender for Endpoint and Microsoft Defender for Identity, including architecture, deployment, sensor or agent design, configuration baselines, telemetry coverage and integration with security operations
  • Endpoint and server hardening, attack-surface reduction, vulnerability exposure and security configuration management
  • Producing high-level and detailed designs, integration and data-flow diagrams, security patterns, architecture decision records, technical standards and implementation roadmaps
  • Technical assurance, including validating that delivered solutions and supporting documentation align with approved designs and the actual deployed environment
  • Practical application of the Information Security Manual (ISM), Protective Security Policy Framework (PSPF), Essential Eight and relevant Australian Signals Directorate guidance to technical architecture and security-control implementation
  • Cross-team technical leadership, resolving dependencies and design constraints across cyber security, cloud, network, endpoint, enterprise architecture and project teams
  • Strong written and verbal communication, including explaining complex technical issues, documenting defensible decisions and providing clear direction to engineers, vendors and senior stakeholders

Highly regarded but not essential

  • Experience with Rapid7, Windows Event Collection or equivalent technologies

What you will work on

  • Own and maintain security-monitoring architecture, define logging and retention requirements, improve telemetry coverage and develop sustainable patterns for onboarding systems into the SIEM
  • Identify monitoring blind spots, misconfigured log sources, unsupported collection paths and gaps affecting detection, investigation and forensic readiness
  • Design endpoint, server and identity-security requirements, including sensor architecture, configuration baselines, hardening and integration with operational support processes
  • Assess security-platform configurations and integrations, identify duplicated or legacy tooling, and develop practical remediation approaches and technology roadmaps
  • Produce architecture designs and technical standards, investigate data flows, access models, firewall/proxy dependencies and security-control implementation
  • Define measurable technical requirements for procurement and vendor engagements, challenge generic proposals and validate solutions against the deployed environment
  • Lead security architecture reviews across infrastructure, identity, endpoint, network, cloud, SaaS, application and data initiatives, with emerging technologies such as AI potentially in scope

Location and security clearance

This position is onsite in Canberra. 

You must be able to obtain Negative Vetting Level 1 (NV1) security clearance. Please state your current clearance level and status, or confirm that you do not currently hold a clearance, together with your citizenship status when applying.

The opportunity

This role offers the opportunity to shape security architecture across an interconnected enterprise environment—not just one product. You will combine technical investigation and design with practical assurance, helping ensure security improvements work in operation.

Your CV should demonstrate the architectures you have designed, your personal contribution to implementation and assurance, and the outcomes achieved. Include examples across security monitoring, Microsoft security technologies and the application of government security frameworks.

Candidates progressing to submission will need to provide separate responses to six selection criteria, with a maximum of 3,000 characters per criterion.

Best method to apply is using the application button on this advert. We can be contacted on (02) 9687 1025 for a confidential discussion but please ensure the resume has been sent.

Please ensure all documents are sent in Microsoft Word format.
Scroll-down