Responsible for all aspects of Azure security, including implementing security controls based on the fundamentals of Azure Security Benchmark, threat protection, identity, and access management, defining Azure cloud infrastructure and Azure Policies. Also, will use Azure technologies to provide data protection, network security defenses, while also.
Job Responsibilities
Analyze software security requirements and define solution standards and specifications for the Azure Cloud.
Monitor cloud infrastructure and proactively mitigate potential incidents before service degradation occurs.
Secure Azure Cloud infrastructure, including but not limited to data platform management, automated deployment, service configuration, virtual networks, storage accounts, Azure App Service, virtual machines, Azure Active Directory, Azure AD Connect, load balancing, network security, and Azure Backup.
Implement balanced security solutions to ensure the cloud platform architecture and technology are programmed and configured to deliver security and privacy.
Implement security processes to produce security-centric PaaS deliverables, enabling DevOps, product engineering, infrastructure, and operations to create secure products without unreasonable restrictions.
Develop an Azure Cloud security roadmap in collaboration with other technology leaders to help implement security controls that support the company's cloud vision.
Maintain and improve the security posture of the Azure platform, identifying and remediating vulnerabilities using a variety of security tools.
Define risk and mitigation plans related to security, legal, data, compliance, and regulatory requirements.
Implement, configure, and maintain security controls and policies, and monitor threats to ensure the protection of applications, containers, infrastructure, and networks.
Automate security controls, data, and processes to provide better metrics and operational support using security as code.
Configure and maintain access within cloud solution environments using the principle of least privilege.
Configure and maintain network security within the cloud using a hybrid context with traditional network-centric controls.
Create, maintain, and manage Azure policies to enforce security controls.
Job Qualifications
Bachelor's degree in Engineering or Information Systems.
3–5 years of relevant experience.
Strong understanding of cloud computing models: IaaS, PaaS, and SaaS.
Preferred to be certified in CCSP & CISSP.
Familiarity with major cloud providers (AWS, Azure, GCP) and their security features.
Experience in designing and implementing secure cloud architectures and landing zones.
Proficiency in leveraging cloud security services and features, including CSPM/CWPP, IaC guardrails, and cloud-native network security tools.
Solid knowledge of Identity and Access Management (IAM), including designing and configuring roles, permissions, and secrets management.
Experience in cloud-specific threat detection, incident response, and regulatory compliance mapping.
Understanding of network security principles such as segmentation, firewall rules, and VPNs.
Ability to work collaboratively with cross-functional teams.