Azure Infrastructure & Security Engineer

State of Ohio
Columbus, OH, United States
15 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
4 years minimum
Compensation
$143,000.0
Working hours
Shift work
Job source

Tech stack

Microsoft Word Microsoft Excel Application Firewall Systems Engineering Microsoft Azure Microsoft Outlook Cloud Computing Cloud Computing Security Cyber Security Information Systems Computer Networks System Configuration
+48 more
DDoS Mitigation Desktop Computing Disaster Recovery Domain Name System (DNS) Github Monitoring of Systems Identity and Access Management Intrusion Detection and Prevention IP Routing Subnetting Virtual Private Networks (VPN) Network Security Log Analysis Microsoft Office Microsoft Visio Network Architecture Routing Peering Microsoft PowerPoint Windows PowerShell Role-Based Access Control Remote Access Technology Cloud Services Kusto Query Language Secure Coding Microsoft SharePoint Security Information and Event Management Virtual Machines Software Vulnerability Management Backup and Restore Policy as Code Data Logging Scripting Load Balancing Cloud Platform System Delivery Pipeline Software Security Azure Powershell HybridCloud Firewalls (Computer Science) Infrastructure Automation Frameworks Information Technology Bicep Firewall Services Module Terraform Cyber Warfare Software Version Control Azure Resource Manager

Job description

The Azure Infrastructure & Security Engineer reports to the Network Manager and works closely with the Chief Information Security Officer (CISO) and Cyber Defense Team to implement cloud security standards, remediate cloud risks, support incident response activities, and ensure compliance with agency security and regulatory requirements.

The Azure Infrastructure & Security Engineer designs, implements, administers, secures, monitors, and supports the Ohio Secretary of State’s Microsoft Azure cloud infrastructure. The position is responsible for maintaining secure and resilient cloud environments; administering Azure networking, identity, compute, storage, and security services; implementing security controls and governance standards; monitoring system performance, availability, and health; and supporting disaster recovery, business continuity, and operational excellence initiatives. Serves as the agency’s primary technical resource for Azure infrastructure engineering, cloud security operations, and the ongoing optimization of the agency’s cloud platform., Cloud Infrastructure Administration

  • Implements, configures, administers, and supports Microsoft Azure infrastructure services.
  • Deploys and maintains virtual machines, storage resources, virtual networks, and platform services.
  • Administers Azure subscriptions, resource groups, networking components, and resources.
  • This role helps maintain the Azure governance model: management groups, subscriptions, naming standards, tagging, Azure Policy, RBAC, guardrails.
  • Supports hybrid cloud connectivity and integration with on-premises systems.
  • Monitors system performance, capacity, availability, and resource utilization.
  • Troubleshoots and resolves cloud infrastructure issues and service disruptions.

Cloud Security and Compliance

  • Implements and maintains cloud security controls, policies, and technical safeguards.
  • Supports vulnerability management, security monitoring, threat detection, and remediation activities.
  • Implements encryption, segmentation, logging, monitoring, and access control standards.
  • Assists with security assessments, audits, compliance reviews, and incident response activities.
  • Collaborates with Cyber Defense Team to identify and mitigate cloud security risks.

Network Engineering and Connectivity

  • Designs, configures, and supports Azure Virtual Networks, subnets, peering, route tables, network security groups, application security groups, Azure Firewall, private endpoints, Private Link, Azure DNS, Azure Bastion, load balancers, Application Gateway, Web Application Firewall, and DDoS protection.
  • Reviews network exposure, inbound/outbound traffic flows, firewall rules, public IP usage, private connectivity, and segmentation controls to reduce cloud attack surface.
  • Evaluates network performance and implements improvements to support reliability and scalability.
  • Conducts network testing, troubleshooting, and performance analysis.
  • Supports cloud connectivity with external vendors, partners, and hosted applications.

Automation, Operations, and Documentation

  • Develops and maintains infrastructure automation and deployment processes.
  • Configures and maintains Azure Monitor, Log Analytics workspaces, diagnostic settings, alert rules, dashboards, action groups, and service health monitoring.
  • Uses Kusto Query Language to analyze Azure platform logs, activity logs, resource logs, security events, and operational telemetry.
  • Develops, reviews, and maintains Infrastructure as Code using approved tools such as Bicep, ARM templates, Terraform, Azure CLI, PowerShell, Azure DevOps, GitHub, or other agency-approved deployment technologies.
  • Uses version control, peer review, deployment pipelines, change control, rollback planning, and secure coding practices for cloud infrastructure changes.
  • Supports policy-as-code, reusable deployment modules, configuration baselines, and automated validation of cloud resources.
  • Creates and maintains technical documentation, diagrams, procedures, and operational standards.
  • Participates in disaster recovery planning, testing, and implementation activities.
  • Assists in evaluating new technologies, cloud services, and operational improvements.
  • Provides technical support and guidance to internal staff and project teams

Unusual Working Conditions

  • Unclassified per ORC 124.14(A)(9)
  • May require evening and weekend hours, particularly during elections, special events, and major initiatives.
  • Occasional statewide travel with possible overnight stays.
  • Must possess a valid driver’s license or reliable transportation.

Requirements

o Bachelor’s degree in Computer Science, Information Systems, Information Technology, Engineering, Cybersecurity, or related field and four (4) years of experience supporting cloud infrastructure, network engineering, systems administration, cybersecurity, or related information technology disciplines; o OR any equivalent combination of education, training, and experience that demonstrates the required knowledge, skills, and abilities. o Experience administering Azure environments., o Microsoft Certified: Azure Security Engineer Associate o Experience with cloud networking, identity management, and security operations. o Experience supporting hybrid infrastructure environments., * Knowledge of Microsoft Azure infrastructure services, networking, storage, compute, and platform services.

  • Knowledge of cloud administration, systems engineering, and infrastructure support principles.
  • Knowledge of cloud security frameworks, identity and access management, and cybersecurity best practices.
  • Knowledge of network architecture, routing, firewalls, VPN technologies, and hybrid connectivity solutions.
  • Knowledge of vulnerability management, threat detection, incident response, and security monitoring.
  • Knowledge of disaster recovery, backup technologies, and business continuity practices.
  • Knowledge of infrastructure automation, scripting, and Infrastructure as Code concepts.
  • Knowledge of technical documentation standards and operational procedures.

Skills

  • Skilled in deploying, configuring, administering, and troubleshooting Azure resources and services.
  • Skilled in implementing cloud security controls and security monitoring solutions.
  • Skilled in diagnosing and resolving infrastructure, network, and security issues.
  • Skilled in configuring virtual networks, firewalls, VPNs, and cloud connectivity solutions.
  • Skilled in monitoring system performance, availability, and capacity utilization.
  • Skilled in developing technical documentation, diagrams, and operational procedures.
  • Skilled in supporting incident response and remediation activities.
  • Skilled in automating routine infrastructure and operational tasks.

ABILITIES

  • Ability to implement and maintain secure, reliable, and highly available cloud environments.
  • Ability to identify, analyze, and resolve technical and operational issues.
  • Ability to evaluate security vulnerabilities and implement corrective actions.
  • Ability to monitor cloud environments and proactively address performance concerns.
  • Ability to interpret technical requirements and implement effective solutions.
  • Ability to work independently while coordinating with technical teams and stakeholders.
  • Ability to prioritize workload and respond effectively to operational incidents.
  • Ability to communicate technical information effectively to users, vendors, and management.

Technology

  • Personal computing; Microsoft Office 365 - Word, Excel, PowerPoint, Outlook, and Visio; collaborative technology like Teams, SharePoint.

Benefits & conditions

Pulled from the full job description

  • Loan forgiveness
  • Health insurance
  • Paid time off
  • Vision insurance
  • Dental insurance
  • Life insurance
  • Paid holidays, At the State of Ohio, we take care of the team that cares for Ohioans. We provide a variety of quality, competitive benefits to eligible full-time and part-time employees*. For a list of all the State of Ohio Benefits, visit our Total Rewards website! Our benefits package includes:
  • Medical Coverage
  • Free Dental, Vision and Basic Life Insurance premiums after completion of eligibility period
  • Paid time off, including vacation, personal, sick leave and 11 paid holidays per year
  • Childbirth, Adoption, and Foster Care leave
  • Education and Development Opportunities (Employee Development Funds, Public Service Loan Forgiveness, and more)
  • Public Retirement Systems (such as OPERS, STRS, SERS, and HPRS) & Optional Deferred Compensation (Ohio Deferred Compensation), This position is Unclassified per ORC 124.11 (A) (30)

Background check and drug screening required prior to employment ADA Statement

Ohio is a Disability Inclusion State and strives to be a model employer of individuals with disabilities. The State of Ohio is committed to providing access and inclusion and reasonable accommodation in its services, activities, programs and employment opportunities in accordance with the Americans with Disabilities Act (ADA) and other applicable laws.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

6:13 min

Defining cloud proficiency by technical role

Piet Van Dongen · LIVE

2:04 min

Enhancing network privacy with routing fees and onion routing

Andreas M Antonopoulos · LIVE

6:36 min

Funding open source through GitHub Accelerator and Sponsors

Stormy Peters · WWC 2023

2:56 min

Provisioning a secure container infrastructure with Bicep

Matthias Falkenberg +1 · WWC 2022

1:51 min

Overview of the three Google Maps routing applications

Germán Álvarez · LIVE

2:40 min

Using GitHub primitives for internal documentation and corporate operations

Kyle Daigle · Coffee With Developers

Videos

See all

Related articles

See all