Azure Cyber Engineer

Matlen Silver
Atlanta, GA, United States
25 days ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$145,600.0 - $166,400.0
Working hours
Regular working hours
Job source

Tech stack

Agile Methodology Data Analysis Microsoft Azure Cloud Computing Cloud Computing Security CompTIA Security+ Cyber Security Github Log Analysis Scrum Methodology Role-Based Access Control Kusto Query Language
+8 more
Virtual Machines Software Vulnerability Management Cybercrime Microsoft Sentinel CIS Benchmarks Azure Resource Manager Security Orchestration, Automation & Response Plan of Action and Milestones

Job description

We are seeking a hands-on Cloud Security Engineer to support a major Azure Cloud Modernization initiative within a highly regulated federal environment. This role will focus on cloud security engineering, monitoring, hardening, vulnerability remediation, and compliance support within FedRAMP High and FISMA High environments. The ideal candidate will have 5-7 years of hands-on cybersecurity experience, strong Azure security expertise, and experience working in an Agile/Scrum environment. The role requires practical experience with Microsoft Sentinel, Microsoft Defender for Cloud, Kusto Query Language (KQL), Data Collection Rules (DCRs), and Azure security services, with a strong emphasis on technical implementation and continuous security improvement. Key ResponsibilitiesMicrosoft Sentinel SIEM & SOAR

  • Configure and maintain Log Analytics Workspaces and Microsoft Sentinel environments.
  • Develop, tune, and deploy Sentinel Analytics Rules using KQL for threat detection, configuration drift, and malicious activity.
  • Build and maintain Sentinel Playbooks and Automation Rules using Azure Logic Apps for automated triage, alerting, and response.
  • Configure data connectors, custom log parsers, and ASIM schemas to ingest security telemetry.
  • Develop Sentinel Workbooks for security monitoring, reporting, and threat hunting.

Azure Security & Hardening

  • Use Microsoft Defender for Cloud/CSPM to monitor security posture and identify remediation opportunities.
  • Design and deploy Data Collection Rules (DCRs) and Azure Monitor Agent (AMA) configurations to collect required security and audit telemetry.
  • Support security monitoring across Azure virtual machines, containers, networking, and other cloud resources.
  • Implement CIS Benchmarks and STIG configurations across Azure workloads.
  • Configure and secure Azure resources, including Virtual Networks, RBAC, and Entra ID.

Compliance & Vulnerability Management

  • Use KQL to gather security, configuration, and identity evidence for compliance assessments and third-party auditors.
  • Support readiness activities for FedRAMP High, FISMA High, and NIST SP 800-53 Rev. 5 requirements.
  • Assist with audit controls related to Audit and Accountability (AU) and Incident Response (IR).
  • Review vulnerability findings, Defender alerts, and configuration gaps and perform technical remediation.
  • Support resolution of POA&M items and security findings.

Agile & Security Engineering

  • Work as part of an Agile/Scrum engineering team to execute security-focused user stories and technical enabler stories.
  • Integrate security tooling, vulnerability checks, and policy evaluations into Azure DevOps or GitHub CI/CD pipelines.
  • Identify security risks, dependencies, blockers, and remediation requirements during sprint planning and team meetings.
  • Collaborate with cloud, infrastructure, development, and compliance teams to continuously improve the security posture of the Azure environment.

Requirements

  • 5-7 years of hands-on cybersecurity experience, with emphasis on cloud security engineering, vulnerability management, and security/log operations.
  • Hands-on experience with Microsoft Azure security in enterprise or government environments.
  • Strong experience with Microsoft Sentinel, Microsoft Defender for Cloud, KQL, and Data Collection Rules (DCRs).
  • Experience configuring Log Analytics Workspaces, Azure Monitor Agent (AMA), Sentinel Analytics Rules, Workbooks, Playbooks, and Automation Rules.
  • Experience supporting or remediating environments preparing for FedRAMP or FISMA assessments.
  • Experience with Azure networking, RBAC, Entra ID, and secure Azure resource configuration.
  • Experience working in an Agile/Scrum environment.
  • Strong understanding of cloud security monitoring, vulnerability management, incident response, and security hardening., * Microsoft Certified: Cybersecurity Architect Expert (SC-100)
  • CCSP
  • CompTIA Security+
  • SSCP
  • Certified ScrumMaster (CSM) or SAFe Practitioner

Benefits & conditions

$70 - $80 an hour - Contract

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

6:36 min

Funding open source through GitHub Accelerator and Sponsors

Stormy Peters · World Congress 2023

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

11:18 min

Addressing audience questions on security and microservice architectures

Reinhard Kugler · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:40 min

Using GitHub primitives for internal documentation and corporate operations

Kyle Daigle · Coffee With Developers

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

Videos

See all

Related articles

See all