Azure Cyber Engineer
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+8 more
Job description
We are seeking a hands-on Cloud Security Engineer to support a major Azure Cloud Modernization initiative within a highly regulated federal environment. This role will focus on cloud security engineering, monitoring, hardening, vulnerability remediation, and compliance support within FedRAMP High and FISMA High environments. The ideal candidate will have 5-7 years of hands-on cybersecurity experience, strong Azure security expertise, and experience working in an Agile/Scrum environment. The role requires practical experience with Microsoft Sentinel, Microsoft Defender for Cloud, Kusto Query Language (KQL), Data Collection Rules (DCRs), and Azure security services, with a strong emphasis on technical implementation and continuous security improvement. Key ResponsibilitiesMicrosoft Sentinel SIEM & SOAR
- Configure and maintain Log Analytics Workspaces and Microsoft Sentinel environments.
- Develop, tune, and deploy Sentinel Analytics Rules using KQL for threat detection, configuration drift, and malicious activity.
- Build and maintain Sentinel Playbooks and Automation Rules using Azure Logic Apps for automated triage, alerting, and response.
- Configure data connectors, custom log parsers, and ASIM schemas to ingest security telemetry.
- Develop Sentinel Workbooks for security monitoring, reporting, and threat hunting.
Azure Security & Hardening
- Use Microsoft Defender for Cloud/CSPM to monitor security posture and identify remediation opportunities.
- Design and deploy Data Collection Rules (DCRs) and Azure Monitor Agent (AMA) configurations to collect required security and audit telemetry.
- Support security monitoring across Azure virtual machines, containers, networking, and other cloud resources.
- Implement CIS Benchmarks and STIG configurations across Azure workloads.
- Configure and secure Azure resources, including Virtual Networks, RBAC, and Entra ID.
Compliance & Vulnerability Management
- Use KQL to gather security, configuration, and identity evidence for compliance assessments and third-party auditors.
- Support readiness activities for FedRAMP High, FISMA High, and NIST SP 800-53 Rev. 5 requirements.
- Assist with audit controls related to Audit and Accountability (AU) and Incident Response (IR).
- Review vulnerability findings, Defender alerts, and configuration gaps and perform technical remediation.
- Support resolution of POA&M items and security findings.
Agile & Security Engineering
- Work as part of an Agile/Scrum engineering team to execute security-focused user stories and technical enabler stories.
- Integrate security tooling, vulnerability checks, and policy evaluations into Azure DevOps or GitHub CI/CD pipelines.
- Identify security risks, dependencies, blockers, and remediation requirements during sprint planning and team meetings.
- Collaborate with cloud, infrastructure, development, and compliance teams to continuously improve the security posture of the Azure environment.
Requirements
- 5-7 years of hands-on cybersecurity experience, with emphasis on cloud security engineering, vulnerability management, and security/log operations.
- Hands-on experience with Microsoft Azure security in enterprise or government environments.
- Strong experience with Microsoft Sentinel, Microsoft Defender for Cloud, KQL, and Data Collection Rules (DCRs).
- Experience configuring Log Analytics Workspaces, Azure Monitor Agent (AMA), Sentinel Analytics Rules, Workbooks, Playbooks, and Automation Rules.
- Experience supporting or remediating environments preparing for FedRAMP or FISMA assessments.
- Experience with Azure networking, RBAC, Entra ID, and secure Azure resource configuration.
- Experience working in an Agile/Scrum environment.
- Strong understanding of cloud security monitoring, vulnerability management, incident response, and security hardening., * Microsoft Certified: Cybersecurity Architect Expert (SC-100)
- CCSP
- CompTIA Security+
- SSCP
- Certified ScrumMaster (CSM) or SAFe Practitioner
Benefits & conditions
$70 - $80 an hour - Contract
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Everything a Developer Needs to Know About MCP with Neo4j
Understanding and Mitigating Common Web Vulnerabilities
Dev Digest 164: AI Agents, AI Blindspots and MCP security problems
Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents