Our client is seeking a Security Architect to lead the security workstream of a Dynamics 365 ERP implementation, . The role involves leading security control design and documentation activities.
Location: Remote
Duration: 3 months
Key Responsibilities
- Lead the design and configuration of applicable security controls for a Dynamics 365 ERP environment.
- Oversee and guide offshore security SME(s).
- Conduct up to six (6) workshops/interviews with client stakeholders to gather business and technical security requirements.
- Document and provide recommendations aligned with best practices across multiple security domains.
Workshop Focus Areas:
Business and Security Requirements
- Review policies, procedures, standards, and guidelines.
- Identify stakeholders and decision-making processes.
- Assess data governance and privacy requirements.
- Identify current security gaps.
Identity and Access Management (IAM)
- Design Role-Based Access Control (RBAC) models.
- Define security groups, roles (including custom roles), and personas with access needs.
- Evaluate current Conditional Access and Multi-Factor Authentication (MFA) setups.
Data Access & Protection
- Gather encryption requirements.
- Assess needs around key, certificate, and secret management (e.g., Azure Key Vault).
- Evaluate methods for encryption, tokenization, masking, and anonymization.
Security Monitoring
- Define requirements for security logging.
- Design integration approach with Security Information and Event Management (SIEM) tools.
Requirements
- 8+ years of experience in information security architecture.
- Strong experience with Microsoft Dynamics 365 security controls and identity management.
- Hands-on knowledge of Azure security capabilities (e.g., Key Vault, Conditional Access, MFA).
- Experience leading security workshops and interfacing with enterprise stakeholders.
- Familiarity with data privacy regulations and data protection strategies.
- Strong documentation and communication skills.
- Prior experience integrating security solutions with SIEM platforms is an asset.