Cloud Architect
2026-03-02T13:20:11+00:00
The Pharo Foundation
https://cdn.greatkenyanjobs.com/jsjobsdata/data/employer/comp_8568/logo/The%20Pharo%20Foundation.jpeg
http://www.pharofoundation.org/
FULL_TIME
Nairobi
Nairobi
00100
Kenya
Nonprofit, and NGO
Computer & IT, Science & Engineering, Business Operations, Social Services & Nonprofit
2026-03-09T17:00:00+00:00
8
Background information about the job or company (e.g., role context, company overview)
The Pharo Foundation (the ‘’Foundation”) is a privately-funded entrepreneurial organisation that runs philanthropic programmes as well as for-profit social enterprises. The vision of the Foundation is an economically vibrant and inclusive Africa. The mission is to achieve this vision by investing in the human and physical capital of Africa, with an emp...
Responsibilities or duties
Design and implement M365 and Google Workspace tenant architectures (identity, access, collaboration, endpoint and device management).
Collaborate with other departments to build robust workflows within the M365 and Google Workspace environments.
Own the workspace administration, including access rights, on and off-boarding, and frequent reviews of collaboration platforms for Pharo’s ever-growing portfolio company.
Own identity and access patterns across platforms: Entra ID (Azure AD), SSO/federation, MFA, Conditional Access, privileged access, access reviews, lifecycle automation.
Build security-by-design controls: email and collaboration security, secure configuration baselines, secure sharing, external collaboration controls, mobile and endpoint posture.
Implement data protection and governance: Data Leak Prevention (DLP), information protection/classification/labels, retention policies, eDiscovery/legal hold, audit and alerting, encryption and key considerations.
Lead or support coexistence (Exchange/SharePoint/Teams; Google Workspace mail/drive), including risk management, and comms.
Apply strong networking knowledge to cloud connectivity and security outcomes: DNS, SMTP, routing, VPN/proxy concepts, firewalling, secure web gateways, and zero-trust access patterns.
Produce architecture artifacts: current/future state diagrams, High Level Documents/Low Level Documents, decision records, standards, and runbooks.
Monitor, troubleshoot, and improve service health, performance, and security posture; integrate logs with Security Information and Event Management (SIEM) and support incident response.
Collaborate with vendors/Managed Service Providers (MSPs) and internal teams; mentor juniors and contribute to platform roadmaps.
Qualifications or requirements (e.g., education, skills)
At least 2 to 5 years’ experience in cloud/infrastructure/security engineering with hands-on M365 and/or Google Workspace administration.
Bachelor’s degree in IT, Computer Science or any other relevant field.
Hybrid identity and migration tooling experience (e.g., Entra Connect, third-party migration tools, directory sync concepts).
Security certifications or vendor certificates (e.g., Microsoft, Google, CompTIA Security+, ISO 27001 familiarity).
Experience working in regulated environments or supporting audits.
- Design and implement M365 and Google Workspace tenant architectures (identity, access, collaboration, endpoint and device management).
- Collaborate with other departments to build robust workflows within the M365 and Google Workspace environments.
- Own the workspace administration, including access rights, on and off-boarding, and frequent reviews of collaboration platforms for Pharo’s ever-growing portfolio company.
- Own identity and access patterns across platforms: Entra ID (Azure AD), SSO/federation, MFA, Conditional Access, privileged access, access reviews, lifecycle automation.
- Build security-by-design controls: email and collaboration security, secure configuration baselines, secure sharing, external collaboration controls, mobile and endpoint posture.
- Implement data protection and governance: Data Leak Prevention (DLP), information protection/classification/labels, retention policies, eDiscovery/legal hold, audit and alerting, encryption and key considerations.
- Lead or support coexistence (Exchange/SharePoint/Teams; Google Workspace mail/drive), including risk management, and comms.
- Apply strong networking knowledge to cloud connectivity and security outcomes: DNS, SMTP, routing, VPN/proxy concepts, firewalling, secure web gateways, and zero-trust access patterns.
- Produce architecture artifacts: current/future state diagrams, High Level Documents/Low Level Documents, decision records, standards, and runbooks.
- Monitor, troubleshoot, and improve service health, performance, and security posture; integrate logs with Security Information and Event Management (SIEM) and support incident response.
- Collaborate with vendors/Managed Service Providers (MSPs) and internal teams; mentor juniors and contribute to platform roadmaps.
- M365 administration
- Google Workspace administration
- Identity and access management (Entra ID, SSO, MFA, Conditional Access)
- Security-by-design principles
- Data protection and governance (DLP, information protection, retention policies, eDiscovery)
- Networking knowledge (DNS, SMTP, routing, VPN, firewalling)
- SIEM integration
- Vendor and MSP collaboration
- Mentoring juniors
- Hybrid identity and migration tooling (Entra Connect, directory sync)
- At least 2 to 5 years’ experience in cloud/infrastructure/security engineering with hands-on M365 and/or Google Workspace administration.
- Bachelor’s degree in IT, Computer Science or any other relevant field.
- Hybrid identity and migration tooling experience (e.g., Entra Connect, third-party migration tools, directory sync concepts).
- Security certifications or vendor certificates (e.g., Microsoft, Google, CompTIA Security+, ISO 27001 familiarity).
- Experience working in regulated environments or supporting audits.
JOB-69a58e8b7365a
Vacancy title:
Cloud Architect
[Type: FULL_TIME, Industry: Nonprofit, and NGO, Category: Computer & IT, Science & Engineering, Business Operations, Social Services & Nonprofit]
Jobs at:
The Pharo Foundation
Deadline of this Job:
Monday, March 9 2026
Duty Station:
Nairobi | Nairobi
Summary
Date Posted: Monday, March 2 2026, Base Salary: Not Disclosed
Similar Jobs in Kenya
Learn more about The Pharo Foundation
The Pharo Foundation jobs in Kenya
JOB DETAILS:
Background information about the job or company (e.g., role context, company overview)
The Pharo Foundation (the ‘’Foundation”) is a privately-funded entrepreneurial organisation that runs philanthropic programmes as well as for-profit social enterprises. The vision of the Foundation is an economically vibrant and inclusive Africa. The mission is to achieve this vision by investing in the human and physical capital of Africa, with an emp...
Responsibilities or duties
Design and implement M365 and Google Workspace tenant architectures (identity, access, collaboration, endpoint and device management).
Collaborate with other departments to build robust workflows within the M365 and Google Workspace environments.
Own the workspace administration, including access rights, on and off-boarding, and frequent reviews of collaboration platforms for Pharo’s ever-growing portfolio company.
Own identity and access patterns across platforms: Entra ID (Azure AD), SSO/federation, MFA, Conditional Access, privileged access, access reviews, lifecycle automation.
Build security-by-design controls: email and collaboration security, secure configuration baselines, secure sharing, external collaboration controls, mobile and endpoint posture.
Implement data protection and governance: Data Leak Prevention (DLP), information protection/classification/labels, retention policies, eDiscovery/legal hold, audit and alerting, encryption and key considerations.
Lead or support coexistence (Exchange/SharePoint/Teams; Google Workspace mail/drive), including risk management, and comms.
Apply strong networking knowledge to cloud connectivity and security outcomes: DNS, SMTP, routing, VPN/proxy concepts, firewalling, secure web gateways, and zero-trust access patterns.
Produce architecture artifacts: current/future state diagrams, High Level Documents/Low Level Documents, decision records, standards, and runbooks.
Monitor, troubleshoot, and improve service health, performance, and security posture; integrate logs with Security Information and Event Management (SIEM) and support incident response.
Collaborate with vendors/Managed Service Providers (MSPs) and internal teams; mentor juniors and contribute to platform roadmaps.
Qualifications or requirements (e.g., education, skills)
At least 2 to 5 years’ experience in cloud/infrastructure/security engineering with hands-on M365 and/or Google Workspace administration.
Bachelor’s degree in IT, Computer Science or any other relevant field.
Hybrid identity and migration tooling experience (e.g., Entra Connect, third-party migration tools, directory sync concepts).
Security certifications or vendor certificates (e.g., Microsoft, Google, CompTIA Security+, ISO 27001 familiarity).
Experience working in regulated environments or supporting audits.
Work Hours: 8
Experience in Months: 12
Level of Education: bachelor degree
Job application procedure
Application Link:Click Here to Apply Now
All Jobs | QUICK ALERT SUBSCRIPTION