3Core Systems , Inc Logo

3Core Systems , Inc

Senior Azure Cloud Security Engineer

Posted Yesterday
In-Office or Remote
Hiring Remotely in Austin, TX
Senior level
In-Office or Remote
Hiring Remotely in Austin, TX
Senior level
Designs, implements, and maintains security controls across enterprise Azure environments. Responsibilities include securing cloud infrastructure, identities, applications, networks, data, and DevOps pipelines; managing Azure security tools and IAM controls; identifying vulnerabilities; developing monitoring and detection capabilities; investigating incidents; reviewing infrastructure-as-code; supporting compliance; automating security processes; and mentoring junior engineers.
The summary above was generated by AI

This is a remote position.

Job Title: Senior Azure Cloud Security Engineer
Location: Remote
Duration: Long-term contract

 

Position Overview

We are seeking an experienced Senior Azure Cloud Security Engineer to design, implement, and maintain security controls across a complex Microsoft Azure environment. This individual will serve as a senior technical resource responsible for securing cloud infrastructure, applications, identities, and data while helping the organization mature its overall cloud security posture.

The ideal candidate has deep hands-on experience with Azure security technologies, identity and access management, cloud networking, security monitoring, vulnerability management, and infrastructure-as-code security. This role will partner closely with Cloud Engineering, Infrastructure, DevOps, Application Development, Security Operations, and Governance/Risk teams.

Key Responsibilities

  • Design, implement, and maintain security architecture and controls across Microsoft Azure environments.
  • Serve as a senior technical subject matter expert for Azure cloud security and cloud security best practices.
  • Secure Azure subscriptions, management groups, resource groups, networking, storage, compute, databases, containers, and other cloud services.
  • Implement and manage security capabilities using Microsoft Defender for Cloud, Microsoft Sentinel, Azure Policy, Microsoft Entra ID, Key Vault, and related Microsoft security technologies.
  • Design and maintain Identity and Access Management (IAM) controls, including RBAC, Conditional Access, Privileged Identity Management (PIM), managed identities, service principals, and least-privilege access.
  • Develop and enforce cloud security policies, standards, guardrails, and configuration baselines.
  • Identify and remediate cloud vulnerabilities, configuration weaknesses, excessive permissions, and other security risks.
  • Partner with engineering teams to incorporate security throughout the CI/CD and DevSecOps lifecycle.
  • Review Infrastructure-as-Code deployments, including Terraform, Bicep, and/or ARM templates, for security risks and compliance.
  • Implement security controls for Azure networking, including VNets, NSGs, Azure Firewall, Private Endpoints, Application Gateway/WAF, and related technologies.
  • Support logging, monitoring, threat detection, and incident response across Azure environments.
  • Develop detection rules, alerts, dashboards, and automated security responses.
  • Investigate cloud security incidents and assist with root-cause analysis and remediation.
  • Perform security assessments of new Azure services, applications, architectures, and third-party integrations.
  • Partner with architecture and engineering teams to review proposed cloud designs and provide security recommendations.
  • Automate security processes and controls using PowerShell, Azure CLI, Python, or similar scripting technologies.
  • Support regulatory and security compliance initiatives using frameworks such as NIST, CIS, ISO 27001, SOC 2, PCI DSS, or similar standards.
  • Mentor junior engineers and provide technical leadership on cloud security initiatives.
  • Stay current on emerging Azure threats, vulnerabilities, Microsoft security capabilities, and cloud security best practices.

Required Qualifications

    • 7+ years of experience in information security, infrastructure security, cloud engineering, or a related technical discipline.
    • 4+ years of hands-on Microsoft Azure security experience in enterprise environments.
    • Strong knowledge of Azure architecture and security concepts.
    • Advanced experience with Microsoft Entra ID (Azure AD), RBAC, Conditional Access, PIM, MFA, managed identities, and service principals.
    • Hands-on experience with Microsoft Defender for Cloud and Azure security posture management.
    • Experience with Microsoft Sentinel or another enterprise SIEM platform.
    • Strong understanding of Azure networking and network security.
    • Experience securing Azure IaaS and PaaS services.
    • Strong understanding of encryption, secrets management, certificates, and Azure Key Vault.
    • Experience implementing security through Azure Policy and cloud governance controls.
    • Experience with vulnerability management and cloud security posture management.
    • Experience securing CI/CD pipelines and DevOps environments.
    • Working knowledge of Infrastructure-as-Code technologies such as Terraform, Bicep, or ARM templates.
    • Scripting or automation experience using PowerShell, Python, Azure CLI, or similar technologies.
    • Strong understanding of security principles including Zero Trust, least privilege, defense-in-depth, network segmentation, and secure-by-design architecture.
    • Ability to troubleshoot complex security issues across cloud infrastructure, networking, identity, and applications.
    • Strong communication skills with the ability to work effectively with both technical and non-technical stakeholders.

Preferred Qualifications

    • Experience securing large-scale or highly regulated Azure environments.
    • Experience with Azure Kubernetes Service (AKS), container security, and Kubernetes security.
    • Experience with Microsoft Defender XDR and the broader Microsoft security ecosystem.
    • Experience with CSPM, CNAPP, or cloud security platforms such as Wiz, Prisma Cloud, Orca Security, or similar technologies.
    • Experience integrating security tooling into CI/CD pipelines.
    • Experience with GitHub Actions, Azure DevOps, or similar platforms.
    • Familiarity with security frameworks such as NIST CSF, NIST 800-53, CIS Benchmarks, ISO 27001, SOC 2, and PCI DSS.
    • Experience working within financial services, healthcare, insurance, or another highly regulated industry.

Preferred Certifications

    • Microsoft Certified: Azure Security Engineer Associate
    • Microsoft Certified: Cybersecurity Architect Expert
    • Microsoft Certified: Azure Solutions Architect Expert
    • CISSP, CCSP, or equivalent security certification
    • Relevant Terraform, Kubernetes, or cloud security certifications

Ideal Candidate

The successful candidate will be a hands-on senior cloud security engineer who can operate at both the architectural and engineering levels. This person should be comfortable identifying cloud security risks, recommending solutions, and then working directly within Azure to implement and automate those controls.



Similar Jobs

13 Minutes Ago
Remote
United States
190K-220K Annually
Senior level
190K-220K Annually
Senior level
Insurance
Leads the company’s information security operations and reports to the CISO. Oversees SIEM, threat detection, vulnerability management, penetration testing, incident response, SOC 2 Type II compliance, third-party risk, security awareness, cloud and endpoint security, and regulatory cybersecurity coordination. Manages security policies, breach readiness, tabletop exercises, KPIs, audits, and emerging technology evaluations while partnering with IT, infrastructure, compliance, regulators, and executive leadership.
Top Skills: Cloud SecurityEdr/XdrElasticIso 27001Nist Cybersecurity FrameworkPamPenetration TestingSIEMSoc 2 Type IiSsoVulnerability Scanners
13 Minutes Ago
Remote
United States
130K-140K Annually
Mid level
130K-140K Annually
Mid level
Insurance
Build and maintain cloud-based development, build, testing, deployment, and production infrastructure. Own platform systems using Terraform, Kubernetes, Vault, AWS, Docker, and CI/CD tools. Collaborate with engineers on a you-build-it-you-run-it platform, troubleshoot incidents, lead postmortems, address root causes, and automate improvements to enhance reliability, performance, and stability.
Top Skills: Amazon Web Services (Aws)Ci/CdCircleCIDockerElixirGitGitopsGoHashicorp VaultKubernetesOci ContainersRubyTerraformYaml
34 Minutes Ago
Remote
United States
152K-152K Annually
Senior level
152K-152K Annually
Senior level
Security • Cybersecurity
Own end-to-end delivery of technical IT projects from intake and procurement through deployment and closeout. Manage SaaS rollouts, system integrations, requirements, vendor milestones, security reviews, testing, go-live, risks, dependencies, and stakeholder communications. Maintain project plans and reporting in Jira and Confluence, enforce lifecycle handoffs, manage change control, and report portfolio health. Improve delivery processes through templates, automation, intake criteria, and standardized reporting while coordinating Procurement, Engineering, IT Security, vendors, and business stakeholders.
Top Skills: Ai ToolsApi IntegrationsConfluenceJIRAJira AutomationMicrosoft 365ExcelMicrosoft TeamsMiddlewareSAMLSharepointSso

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account