3Core Systems , Inc Logo

3Core Systems , Inc

Senior Azure Cloud Security Engineer

Posted 10 Days Ago
In-Office or Remote
Hiring Remotely in Austin, TX
Senior level
In-Office or Remote
Hiring Remotely in Austin, TX
Senior level
Designs, implements, and maintains security controls across enterprise Azure environments. Responsibilities include securing cloud infrastructure, identities, applications, networks, data, and DevOps pipelines; managing Azure security tools and IAM controls; identifying vulnerabilities; developing monitoring and detection capabilities; investigating incidents; reviewing infrastructure-as-code; supporting compliance; automating security processes; and mentoring junior engineers.
The summary above was generated by AI

This is a remote position.

Job Title: Senior Azure Cloud Security Engineer
Location: Remote
Duration: Long-term contract

 

Position Overview

We are seeking an experienced Senior Azure Cloud Security Engineer to design, implement, and maintain security controls across a complex Microsoft Azure environment. This individual will serve as a senior technical resource responsible for securing cloud infrastructure, applications, identities, and data while helping the organization mature its overall cloud security posture.

The ideal candidate has deep hands-on experience with Azure security technologies, identity and access management, cloud networking, security monitoring, vulnerability management, and infrastructure-as-code security. This role will partner closely with Cloud Engineering, Infrastructure, DevOps, Application Development, Security Operations, and Governance/Risk teams.

Key Responsibilities

  • Design, implement, and maintain security architecture and controls across Microsoft Azure environments.
  • Serve as a senior technical subject matter expert for Azure cloud security and cloud security best practices.
  • Secure Azure subscriptions, management groups, resource groups, networking, storage, compute, databases, containers, and other cloud services.
  • Implement and manage security capabilities using Microsoft Defender for Cloud, Microsoft Sentinel, Azure Policy, Microsoft Entra ID, Key Vault, and related Microsoft security technologies.
  • Design and maintain Identity and Access Management (IAM) controls, including RBAC, Conditional Access, Privileged Identity Management (PIM), managed identities, service principals, and least-privilege access.
  • Develop and enforce cloud security policies, standards, guardrails, and configuration baselines.
  • Identify and remediate cloud vulnerabilities, configuration weaknesses, excessive permissions, and other security risks.
  • Partner with engineering teams to incorporate security throughout the CI/CD and DevSecOps lifecycle.
  • Review Infrastructure-as-Code deployments, including Terraform, Bicep, and/or ARM templates, for security risks and compliance.
  • Implement security controls for Azure networking, including VNets, NSGs, Azure Firewall, Private Endpoints, Application Gateway/WAF, and related technologies.
  • Support logging, monitoring, threat detection, and incident response across Azure environments.
  • Develop detection rules, alerts, dashboards, and automated security responses.
  • Investigate cloud security incidents and assist with root-cause analysis and remediation.
  • Perform security assessments of new Azure services, applications, architectures, and third-party integrations.
  • Partner with architecture and engineering teams to review proposed cloud designs and provide security recommendations.
  • Automate security processes and controls using PowerShell, Azure CLI, Python, or similar scripting technologies.
  • Support regulatory and security compliance initiatives using frameworks such as NIST, CIS, ISO 27001, SOC 2, PCI DSS, or similar standards.
  • Mentor junior engineers and provide technical leadership on cloud security initiatives.
  • Stay current on emerging Azure threats, vulnerabilities, Microsoft security capabilities, and cloud security best practices.

Required Qualifications

    • 7+ years of experience in information security, infrastructure security, cloud engineering, or a related technical discipline.
    • 4+ years of hands-on Microsoft Azure security experience in enterprise environments.
    • Strong knowledge of Azure architecture and security concepts.
    • Advanced experience with Microsoft Entra ID (Azure AD), RBAC, Conditional Access, PIM, MFA, managed identities, and service principals.
    • Hands-on experience with Microsoft Defender for Cloud and Azure security posture management.
    • Experience with Microsoft Sentinel or another enterprise SIEM platform.
    • Strong understanding of Azure networking and network security.
    • Experience securing Azure IaaS and PaaS services.
    • Strong understanding of encryption, secrets management, certificates, and Azure Key Vault.
    • Experience implementing security through Azure Policy and cloud governance controls.
    • Experience with vulnerability management and cloud security posture management.
    • Experience securing CI/CD pipelines and DevOps environments.
    • Working knowledge of Infrastructure-as-Code technologies such as Terraform, Bicep, or ARM templates.
    • Scripting or automation experience using PowerShell, Python, Azure CLI, or similar technologies.
    • Strong understanding of security principles including Zero Trust, least privilege, defense-in-depth, network segmentation, and secure-by-design architecture.
    • Ability to troubleshoot complex security issues across cloud infrastructure, networking, identity, and applications.
    • Strong communication skills with the ability to work effectively with both technical and non-technical stakeholders.

Preferred Qualifications

    • Experience securing large-scale or highly regulated Azure environments.
    • Experience with Azure Kubernetes Service (AKS), container security, and Kubernetes security.
    • Experience with Microsoft Defender XDR and the broader Microsoft security ecosystem.
    • Experience with CSPM, CNAPP, or cloud security platforms such as Wiz, Prisma Cloud, Orca Security, or similar technologies.
    • Experience integrating security tooling into CI/CD pipelines.
    • Experience with GitHub Actions, Azure DevOps, or similar platforms.
    • Familiarity with security frameworks such as NIST CSF, NIST 800-53, CIS Benchmarks, ISO 27001, SOC 2, and PCI DSS.
    • Experience working within financial services, healthcare, insurance, or another highly regulated industry.

Preferred Certifications

    • Microsoft Certified: Azure Security Engineer Associate
    • Microsoft Certified: Cybersecurity Architect Expert
    • Microsoft Certified: Azure Solutions Architect Expert
    • CISSP, CCSP, or equivalent security certification
    • Relevant Terraform, Kubernetes, or cloud security certifications

Ideal Candidate

The successful candidate will be a hands-on senior cloud security engineer who can operate at both the architectural and engineering levels. This person should be comfortable identifying cloud security risks, recommending solutions, and then working directly within Azure to implement and automate those controls.



Similar Jobs

2 Hours Ago
Remote or Hybrid
US
128K-193K Annually
Expert/Leader
128K-193K Annually
Expert/Leader
Information Technology
Designs and delivers Snowflake data architectures on AWS, including dbt-based data engineering and AI-enabled solutions. Leads RAG, vector search, embedding, semantic search, and analytics initiatives from proof of concept through production. Directs project teams, oversees solution quality and budgets, supports proposals and business cases, and serves as a trusted technical advisor to clients. Requires strong data engineering, governance, documentation, communication, and stakeholder-management skills, with travel as needed.
Top Skills: AWSDbtEmbedding PipelinesGenerative AiPrompt OrchestrationRetrieval-Augmented GenerationSemantic SearchSnowflakeSQLVector Search
2 Hours Ago
Remote or Hybrid
US
78K-108K Annually
Mid level
78K-108K Annually
Mid level
Information Technology
Provide customer-facing Microsoft infrastructure support in a case-based break/fix environment. Troubleshoot and resolve Azure, Microsoft 365, Windows Server, and related technology issues; manage cases, document resolutions, meet SLAs, collaborate with peers and Microsoft support, and participate in on-call coverage. The role also involves customer communication, technical documentation, mentoring, training, and identifying potential customer needs.
Top Skills: Active DirectoryIntuneMicrosoft 365AzureMicrosoft SupportSccmWindows Server
5 Hours Ago
Remote or Hybrid
United States
71K-88K Annually
Junior
71K-88K Annually
Junior
Digital Media • Gaming • Information Technology • Software • Sports • Esports • Big Data Analytics
Administer and enhance Salesforce for VIP teams by configuring flows, reports, dashboards, access, and data management. Gather stakeholder requirements, troubleshoot user issues, support adoption, and collaborate with development, analytics, and data engineering teams on integrations and technical solutions. Query and validate data using SQL and Snowflake, test system enhancements, and identify process improvements while maintaining Salesforce data accuracy and integrity.
Top Skills: ApexExcelGoogle SheetsSalesforceSalesforce Flow BuilderSnowflakeSQL

What you need to know about the Charlotte Tech Scene

Ranked among the hottest tech cities in 2024 by CompTIA, Charlotte is quickly cementing its place as a major U.S. tech hub. Home to more than 90,000 tech workers, the city’s ecosystem is primed for continued growth, fueled by billions in annual funding from heavyweights like Microsoft and RevTech Labs, which has created thousands of fintech jobs and made the city a go-to for tech pros looking for their next big opportunity.

Key Facts About Charlotte Tech

  • Number of Tech Workers: 90,859; 6.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lowe’s, Bank of America, TIAA, Microsoft, Honeywell
  • Key Industries: Fintech, artificial intelligence, cybersecurity, cloud computing, e-commerce
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (CED)
  • Notable Investors: Microsoft, Google, Falfurrias Management Partners, RevTech Labs Foundation
  • Research Centers and Universities: University of North Carolina at Charlotte, Northeastern University, North Carolina Research Campus

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account