Platform Engineer - Security Specialist (Azure)
Role details
Job location
Tech stack
Job description
We're hiring a senior Azure Platform Engineer with a strong security focus to join a major UK enterprise organisation undergoing large-scale cloud transformation.
This role sits within the Platform Engineering function, working at the intersection of platform, architecture, and cyber security to strengthen the organisation's Azure security posture.
You'll collaborate closely with Cyber Security (including SOC teams), Architecture, and Engineering to ensure the platform is secure by design and compliant by default.
The Opportunity
This is not a ticket-driven operations role.
You'll take ownership of platform security posture - analysing risks, prioritising improvements, and driving adoption of secure standards across a complex Azure environment.
Key responsibilities include:
- Establishing and enforcing Azure security baselines and policies
- Driving adoption of secure platform practices and guardrails
- Reviewing technical designs and assessing security posture
- Working with SOC and cyber teams to address platform risks
- Defining and implementing secure standards for infrastructure and services
- Supporting compliance across internal and customer-facing systems
- Partnering with architects and engineering teams to embed security into delivery
The role combines day-to-day operational ownership (BAU) with project-driven improvements as the platform continues to evolve.
Requirements
Do you have experience in Terraform?, We're looking for a hands-on senior engineer with strong technical credibility and the ability to influence across teams:
- Strong experience with Microsoft Azure (particularly PaaS environments)
- Deep understanding of Azure security capabilities and enterprise patterns
- Experience implementing or governing Azure Policy, identity, and access controls
- Hands-on Infrastructure as Code mindset (Terraform, Bicep, ARM, etc.)
- Familiarity with tools such as Defender for Cloud, Key Vault, Sentinel, networking controls
- Experience working with CI/CD tooling (e.g., GitHub)
- Ability to assess risks and drive remediation to completion
- Comfortable operating independently and owning outcomes
- Strong stakeholder engagement skills
Desirable certifications:
- AZ-500 Azure Security Engineer
- SC-100 Cybersecurity Architect
- AZ-305 Azure Solutions Architect
- CCSP