Consultant / Senior Consultant (Microsoft Expert) - Technology Consulting - EY Mauritius
- Ebene, Mauritius
- Permanent
- Full-time
- Assess client security architectures and maturity, and develop roadmaps and recommendations aligned with Microsoft security best practices and Zero Trust principles.
- Design and implement security solutions using Microsoft Defender (XDR), Entra ID, Intune, and Purview, aligned to client risk, regulatory, and business requirements.
- Design and implement Microsoft Purview solutions, including Data classification & sensitivity labelling, Auto-labelling policies, Information Protection, Data Loss Prevention (DLP), Data Catalog, Data Lineage, and Governance
- Collaborate with infrastructure, cloud, and application teams to ensure secure-by-design Microsoft 365, Azure, and hybrid environments.
- Drive Zero Trust adoption across identity, device, network, applications, and data, aligned with Microsoft security best practices.
- Support DevSecOps enablement, embedding security controls into CI/CD pipelines (Azure DevOps/GitHub), policy-as-code, and automated compliance checks.
- Provide security guidance for Microsoft Fabric and analytics workloads, including access control, data protection, and Purview-aligned governance.
- Collaborate with infrastructure, cloud, and application teams to ensure secure-by-design Microsoft 365, Azure, and hybrid environments.
- Produce high quality technical documentation and executive level deliverables, including architecture diagrams, implementation guides, and security posture reports.
- Contribute to building client proposals (solutioning, estimation, client presentations) and support practice development and reusable accelerators.
- Mentor junior consultants and promote knowledge sharing and continuous improvement within the Microsoft Security practice.
- Stay current on emerging cybersecurity trends and threat intelligence to continually uplift client capabilities.
- Other Cognate Duties
- Microsoft Security platform: Microsoft Defender (XDR), Microsoft Sentinel, Entra ID, Intune, Microsoft Purview.
- Azure security architecture: secure design patterns for IaaS, PaaS, SaaS; secure landing zones and platform baselines aligned to CIS/Microsoft benchmarks.
- Hardening & governance: Azure Policy, RBAC, resource locks, identity governance, Conditional Access, MFA, PIM.
- Network & perimeter security: NSGs, Azure Firewall, Private Endpoints, secure hybrid connectivity; Azure WAF (App Gateway/Front Door) with OWASP Top 10 protections.
- Data & analytics security: Microsoft Fabric workspace security, role-based access, data isolation, and Purview classification/labelling/lineage integration.
- DevSecOps & automation: security in Azure DevOps/GitHub CI/CD, policy-as-code, Defender for Cloud recommendations and CSPM, scripting (PowerShell) for automation.
- Bachelor's or Master's degree in Computer Science, Cybersecurity, Information Systems/Technology, Engineering, or related.
- 4+ years of professional cybersecurity experience with significant exposure to Microsoft and Azure security in enterprise or consulting environments.
- Demonstrated client-facing consulting experience engaging both technical and business stakeholders.
- Solid background in Azure cloud security principles, platform hardening, and governance in complex environments.
- Strong understanding of identity and access management (modern auth, privileged access, identity governance) in Entra ID.
- Good working knowledge of Azure networking and infrastructure security concepts, including segmentation, firewalling, and secure connectivity models.
- Knowledge of cloud-native security controls supporting DevSecOps, such as Azure Policy, Defender for Cloud, and automated compliance checks.
- Familiarity with Infrastructure as Code (IaC) security for Azure (e.g. Bicep, ARM, Terraform), including secure configuration and drift detection.
- Understanding of Zero Trust and relevant regulatory/security frameworks for Microsoft environments.
- Relevant Microsoft and industry certifications such as AZ-500, SC-401, SC-200, SC-305, AZ-104, CCSP equivalent are preferred.
- Excellent communication and documentation skills; ability to articulate complex topics clearly to diverse audiences.
- Ability to work independently and collaboratively across multiple engagements in a fast-paced consulting environment.
- Support, coaching, and feedback from some of the most engaging colleagues around.
- Opportunities to develop new skills and progress your career.
- The freedom and flexibility to handle your role in a way that's right for you.