3Core Systems , Inc Logo

3Core Systems , Inc

Senior Azure Cloud Security Engineer

Posted Yesterday
In-Office or Remote
Hiring Remotely in Austin, TX
Senior level
In-Office or Remote
Hiring Remotely in Austin, TX
Senior level
Designs, implements, and maintains security controls across enterprise Azure environments. Responsibilities include securing cloud infrastructure, identities, applications, networks, data, and DevOps pipelines; managing Azure security tools and IAM controls; identifying vulnerabilities; developing monitoring and detection capabilities; investigating incidents; reviewing infrastructure-as-code; supporting compliance; automating security processes; and mentoring junior engineers.
The summary above was generated by AI

This is a remote position.

Job Title: Senior Azure Cloud Security Engineer
Location: Remote
Duration: Long-term contract

 

Position Overview

We are seeking an experienced Senior Azure Cloud Security Engineer to design, implement, and maintain security controls across a complex Microsoft Azure environment. This individual will serve as a senior technical resource responsible for securing cloud infrastructure, applications, identities, and data while helping the organization mature its overall cloud security posture.

The ideal candidate has deep hands-on experience with Azure security technologies, identity and access management, cloud networking, security monitoring, vulnerability management, and infrastructure-as-code security. This role will partner closely with Cloud Engineering, Infrastructure, DevOps, Application Development, Security Operations, and Governance/Risk teams.

Key Responsibilities

  • Design, implement, and maintain security architecture and controls across Microsoft Azure environments.
  • Serve as a senior technical subject matter expert for Azure cloud security and cloud security best practices.
  • Secure Azure subscriptions, management groups, resource groups, networking, storage, compute, databases, containers, and other cloud services.
  • Implement and manage security capabilities using Microsoft Defender for Cloud, Microsoft Sentinel, Azure Policy, Microsoft Entra ID, Key Vault, and related Microsoft security technologies.
  • Design and maintain Identity and Access Management (IAM) controls, including RBAC, Conditional Access, Privileged Identity Management (PIM), managed identities, service principals, and least-privilege access.
  • Develop and enforce cloud security policies, standards, guardrails, and configuration baselines.
  • Identify and remediate cloud vulnerabilities, configuration weaknesses, excessive permissions, and other security risks.
  • Partner with engineering teams to incorporate security throughout the CI/CD and DevSecOps lifecycle.
  • Review Infrastructure-as-Code deployments, including Terraform, Bicep, and/or ARM templates, for security risks and compliance.
  • Implement security controls for Azure networking, including VNets, NSGs, Azure Firewall, Private Endpoints, Application Gateway/WAF, and related technologies.
  • Support logging, monitoring, threat detection, and incident response across Azure environments.
  • Develop detection rules, alerts, dashboards, and automated security responses.
  • Investigate cloud security incidents and assist with root-cause analysis and remediation.
  • Perform security assessments of new Azure services, applications, architectures, and third-party integrations.
  • Partner with architecture and engineering teams to review proposed cloud designs and provide security recommendations.
  • Automate security processes and controls using PowerShell, Azure CLI, Python, or similar scripting technologies.
  • Support regulatory and security compliance initiatives using frameworks such as NIST, CIS, ISO 27001, SOC 2, PCI DSS, or similar standards.
  • Mentor junior engineers and provide technical leadership on cloud security initiatives.
  • Stay current on emerging Azure threats, vulnerabilities, Microsoft security capabilities, and cloud security best practices.

Required Qualifications

    • 7+ years of experience in information security, infrastructure security, cloud engineering, or a related technical discipline.
    • 4+ years of hands-on Microsoft Azure security experience in enterprise environments.
    • Strong knowledge of Azure architecture and security concepts.
    • Advanced experience with Microsoft Entra ID (Azure AD), RBAC, Conditional Access, PIM, MFA, managed identities, and service principals.
    • Hands-on experience with Microsoft Defender for Cloud and Azure security posture management.
    • Experience with Microsoft Sentinel or another enterprise SIEM platform.
    • Strong understanding of Azure networking and network security.
    • Experience securing Azure IaaS and PaaS services.
    • Strong understanding of encryption, secrets management, certificates, and Azure Key Vault.
    • Experience implementing security through Azure Policy and cloud governance controls.
    • Experience with vulnerability management and cloud security posture management.
    • Experience securing CI/CD pipelines and DevOps environments.
    • Working knowledge of Infrastructure-as-Code technologies such as Terraform, Bicep, or ARM templates.
    • Scripting or automation experience using PowerShell, Python, Azure CLI, or similar technologies.
    • Strong understanding of security principles including Zero Trust, least privilege, defense-in-depth, network segmentation, and secure-by-design architecture.
    • Ability to troubleshoot complex security issues across cloud infrastructure, networking, identity, and applications.
    • Strong communication skills with the ability to work effectively with both technical and non-technical stakeholders.

Preferred Qualifications

    • Experience securing large-scale or highly regulated Azure environments.
    • Experience with Azure Kubernetes Service (AKS), container security, and Kubernetes security.
    • Experience with Microsoft Defender XDR and the broader Microsoft security ecosystem.
    • Experience with CSPM, CNAPP, or cloud security platforms such as Wiz, Prisma Cloud, Orca Security, or similar technologies.
    • Experience integrating security tooling into CI/CD pipelines.
    • Experience with GitHub Actions, Azure DevOps, or similar platforms.
    • Familiarity with security frameworks such as NIST CSF, NIST 800-53, CIS Benchmarks, ISO 27001, SOC 2, and PCI DSS.
    • Experience working within financial services, healthcare, insurance, or another highly regulated industry.

Preferred Certifications

    • Microsoft Certified: Azure Security Engineer Associate
    • Microsoft Certified: Cybersecurity Architect Expert
    • Microsoft Certified: Azure Solutions Architect Expert
    • CISSP, CCSP, or equivalent security certification
    • Relevant Terraform, Kubernetes, or cloud security certifications

Ideal Candidate

The successful candidate will be a hands-on senior cloud security engineer who can operate at both the architectural and engineering levels. This person should be comfortable identifying cloud security risks, recommending solutions, and then working directly within Azure to implement and automate those controls.



Similar Jobs

55 Minutes Ago
Remote or Hybrid
US
135K-210K Annually
Senior level
135K-210K Annually
Senior level
Artificial Intelligence • Cloud • Payments • Software • Business Intelligence • Generative AI • Automation
Lead product vision, strategy, adoption, roadmap prioritization, user research, metrics, and cross-functional execution for an AI-powered B2B insurance submissions platform. Partner across design, engineering, marketing, customer experience, and operations; manage integrations with adjacent products; resolve dependencies; communicate strategy and outcomes to senior leadership; and mentor other product managers.
Top Skills: AgileAIApplied EpicConfluenceJIRA
2 Hours Ago
Remote or Hybrid
16 Locations
150K-220K Annually
Senior level
150K-220K Annually
Senior level
Information Technology • Productivity • Software • Infrastructure as a Service (IaaS)
Design and develop scalable C++ software for endpoint state and control across Windows, macOS, and potentially Linux. Build reliable, multi-process systems that enforce endpoint behavior, manage local state, support IPC, and operate across millions of devices. Responsibilities include implementing features, improving platform performance, writing design documents, defining architecture and IPC contracts, and making technical decisions in an evolving, sparsely documented environment.
Top Skills: AnsibleApple Endpoint SecurityAWSC++C++14C++17ChefCis BenchmarksCmakeCreateprocessD-BusEbpfGoGrpcIpcJavaKernel ModulesKotlinLaunchdLinuxMacos Configuration ProfilesMdmNamed PipesPostgresProtocol BuffersPuppetSqliteSystemdVcpkgWhqlWindows Configuration Service ProviderWindows Job ObjectsWindows Registry ApisWindows ServicesWmi
2 Hours Ago
Remote
United States
75K-125K Annually
Senior level
75K-125K Annually
Senior level
Biotech
Drive new client acquisition and revenue through high-volume lead outreach, sales strategy, CRM pipeline management, client pitches, stakeholder engagement, pricing analysis, and cross-functional collaboration to meet sales targets.
Top Skills: Ai ToolsCRM

What you need to know about the Seattle Tech Scene

Home to tech titans like Microsoft and Amazon, Seattle punches far above its weight in innovation. But its surrounding mountains, sprinkled with world-famous hiking trails and climbing routes, make the city a destination for outdoorsy types as well. Established as a logging town before shifting to shipbuilding and logistics, the Emerald City is now known for its contributions to aerospace, software, biotech and cloud computing. And its status as a thriving tech ecosystem is attracting out-of-town companies looking to establish new tech and engineering hubs.

Key Facts About Seattle Tech

  • Number of Tech Workers: 287,000; 13% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Amazon, Microsoft, Meta, Google
  • Key Industries: Artificial intelligence, cloud computing, software, biotechnology, game development
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Madrona, Fuse, Tola, Maveron
  • Research Centers and Universities: University of Washington, Seattle University, Seattle Pacific University, Allen Institute for Brain Science, Bill & Melinda Gates Foundation, Seattle Children’s Research Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account