Security Engineer, Cloud
Posted 3hrs ago
Employment Information
Report this job
Job expired or something wrong with this job?
Job Description
Cloud Security Engineer securing Microsoft Azure environments through governance, landing zones, identity controls, monitoring, and compliance. Partnering with engineering, infrastructure, and Security Operations teams.
Responsibilities:
- Design, implement, and maintain cloud security guardrails across Microsoft Azure environments
- Develop and support Azure landing zone architectures, including management group hierarchy, policy enforcement, governance standards, tagging strategies, and security controls
- Configure and maintain encryption, secrets management, logging, monitoring, alerting, and secure remote administration capabilities
- Collaborate with platform, engineering, and infrastructure teams on architecture reviews, secure cloud networking, and hardening initiatives
- Perform cloud security posture reviews to identify misconfigurations, excessive permissions, security gaps, and compliance drift
- Support investigation, detection, and remediation of cloud security incidents with Security Operations and infrastructure teams
- Develop technical documentation and evidence demonstrating security control implementation, monitoring, and compliance alignment
- Support secure infrastructure-as-code and deployment practices through repeatable security guardrails and standards
- Provide recommendations for secure connectivity, segmentation, workload hardening, and monitoring coverage
- Coordinate with Security Operations, GRC, architecture teams, and auditors on cloud control validation and compliance reviews
- Enable engineering and delivery teams to adopt secure cloud development and deployment practices
Requirements:
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Engineering, or a related field; or an equivalent combination of education and relevant professional experience
- Minimum of three (3) years of hands-on cloud security, cloud infrastructure security, or related cybersecurity experience
- Strong knowledge of Microsoft Azure cloud security architecture, including subscription governance, resource organization, and role-based access control (RBAC)
- Experience designing and implementing Azure landing zones, management group structures, governance frameworks, and policy-based security controls
- Expertise in cloud identity and access management, privileged access controls, policy enforcement, secrets management, encryption, logging, and monitoring
- Strong understanding of cloud networking, segmentation, workload hardening, and secure connectivity principles
- Experience conducting cloud security assessments, posture reviews, and remediation planning
- Ability to build, refine, and support cloud detection capabilities and coordinate cloud security investigations and response activities
- Working knowledge of infrastructure-as-code (IaC) and policy-as-code concepts, including secure and repeatable deployment methodologies
- Proficiency in scripting, automation, and cloud operational tooling
- Experience mapping cloud security controls to audit, compliance, and evidence requirements
- Knowledge of centralized logging, security monitoring, and detection engineering practices within cloud environments
- Relevant certifications such as Microsoft Azure Security Engineer (AZ-500), CISSP, CCSK, or equivalent cloud security certifications are preferred
- Prolonged periods of sitting at a desk and working on a computer
- Must be able to lift up to 15 pounds at times


















