Principal Azure Cloud Security Architect
Role details
Job location
Tech stack
Job description
As Principal Cloud Security Architect, you'll own the security architecture and operational security posture of Azure, working directly in the platform to design and implement controls, monitor risk, drive continuous remediation, and to ensure compliance with industry regulations and best practices. You'll serve as a senior technical authority for cloud security, balancing architectural leadership with hands-on execution, and ensuring measurable risk reduction across cloud environments and workloads. You'll combine excellent relationship and collaboration skills, deep technical knowledge and hands-on experience with major cloud providers and emerging cloud security technologies, proficiency with DevOps and automation, and a practical approach to real-world risk reduction to solve complex security problems. Key responsibilities include the following:
- Design and implement secure Azure cloud architecture, including network segmentation, access controls, and secure account and subscription architecture
- Assist with the selection, and lead the implementation of security solutions across Azure, AWS, and other major cloud providers
- Develop, implement, and socialize technical patterns, standards and guidance for cloud infrastructure and applications
- Own and administer the Cloud Native Application Protection Platform (CNAPP), including hands-on administration and configuration of the CNAPP solution, prioritizing findings, and driving remediation activities
- Monitor cloud security posture and conduct regular security assessments and risk analysis to identify vulnerabilities and prioritize remediation efforts
- Automate security policies and workflows using scripting languages and cloud native security tools to improve efficiency and scalability
- Assist with incident response activities for cloud-related security incidents, including investigation, containment, remediation, and post-mortem analysis.
- Collaborate with cross-functional teams (Business project teams, cloud platform and engineering teams, DevOps, Compliance) to integrate security practices into cloud deployments.
Requirements
- Extensive hands-on experience with Azure and familiarity with other major cloud providers (AWS, GCP) and security tools and technologies (Azure Security Center, AWS Security Hub, GCP Security Command Center, CNAPP tools, etc.).
- Deep understanding of cloud security concepts, including network security, data protection, identity management, and threat modeling across major cloud providers.
- Strong security foundations including experience with network security, vulnerability management, penetration testing, security operations, and application security; fundamental security concepts such as encryption, secure protocols and best in class solutions.
- Proficiency in scripting languages (Python, PowerShell) for automation and security orchestration.
- Exceptional interpersonal and communication skills with the proven ability to build strong relationships with diverse IT and business stakeholders.
- Familiarity with ICS/SCADA/OT environments and architecture, along with industry-relevant standards such as NIST, CIS benchmarks, CSA CCM, and NERC CIP.
More Information
Are you the right fit for this exciting role? You want to learn more about the position and National Grid's ambitious Digital Transformation? Then let's chat!
Rewarding work and a collaborative, team-oriented culture are just the beginning. Review our digital benefit guide at ngbenefitslivebrighter.com for full details and descriptions.
Benefits & conditions
Dowstate NY $184,000 - $216,000 a year
Massachusetts $172,000 - $202,000 a year
Salary is commensurate with experience and location