Azure Cloud Security Engineer
RESOURCE CONSULTING SERVICES INC
Arlington, VA, United States
16 days ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Working hours
Regular working hours
Job source
Tech stack
Microsoft Windows
Android Software Development
Apple IOS
Apple Mac Systems
Microsoft Azure
Cloud Computing
Cyber Security
Information Systems
Information Leak Prevention
Data Security
Identity and Access Management
Python (Programming Language)
+14 more
Microsoft Security Essentials
Microsoft Office
Windows PowerShell
Azure Active Directory
Phishing
Zero Trust Network Access
Runbook
Microsoft SharePoint
Data Classification
Microsoft InTune
Information Technology
Casper Suite
SailPoint
Splunk
Job description
- Design and maintain complex conditional access policies incorporating device compliance, location, and risk-based signals.
- Implement Privileged Identity Management (PIM) to enforce just-in-time (JIT) and just-enough-administration (JEA) for high-impact roles.
- Conduct regular access reviews and manage identity lifecycles for employees, contractors, guests, and service accounts.
- Configure MDM and MAM policies, including device enrolment restrictions, compliance baselines, and configuration profiles for Windows, macOS, iOS, and Android.
- Oversee patching deployments and automate OS/Application patching cycles to maintain a low vulnerability footprint.
- Build and tune sensitivity labels for automatic data classification across SharePoint, Teams, and Exchange.
- Develop Data Loss Prevention (DLP) policies to prevent unauthorized data exfiltration.
- Manage the full suite (Endpoint, Office 365, Identity, and Cloud) to investigate and remediate sophisticated threats.
Requirements
This role requires expert-level, hands-on experience in the Microsoft security ecosystem coupled with deep proficiency in best-of-breed third-party tools like CrowdStrike, Splunk, and Tenable., * 7+ years of professional experience relevant experience supporting enterprise cloud and/or infrastructure environments.
- Deep knowledge & hands on experience in core components of the Microsoft security and management ecosystem designed for a Zero Trust Approach. Specifically on Azure Entra, Intune and Purview (DLP, eDiscovery, Information Protection, Insider Risk Management) and Azure Conditional Access Policies for automated guardrails.
- Advanced proficiency in PowerShell or Python for automating security tasks and incident response playbooks.
- Expertise in using Proofpoint Targeted Attack Protection (TAP) and Threat Response Auto-Pull (TRAP) to stop phishing and malware.
- Experience managing the full user lifecycle (joiner, mover, leaver) and automating provisioning / deprovisioning using SailPoint.
- Experience with JAMF Pro and JAMF Protect for securing Apple endpoints within an enterprise Azure environment.
- Bachelor’s degree in Cybersecurity, Computer Science, or Information Systems.
- Microsoft Certified Azure Security Engineer Associate (AZ-500) (Preferred)
- SC-100 (Cybersecurity Architect) or CISSP (Highly Preferred)
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.careerjet.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
AJ
Austin Joy
over 4 years ago
DC
Daniel Cranney
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
6 months ago
LM
Luis Minvielle
7 Cloud Computing Trends Coming in 2025 for Developers
over 2 years ago
DC
Daniel Cranney
Understanding and Mitigating Common Web Vulnerabilities
over 1 year ago
CH
Chris Heilmann
Dev Digest 134 - Where pixels sing?
almost 2 years ago
LM
Luis Minvielle
9 Ways to Make Money Hacking
about 2 years ago