> Markdown version of [/jobs/ext/2628744-cloud-security-engineer](https://www.wearedevelopers.com/jobs/ext/2628744-cloud-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cloud Security Engineer - **Company:** Brown, LLC - **Location:** Baltimore, MD, United States - **Experience:** Experienced - **Salary:** $140,000.0 - $150,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Artificial Intelligence, Application Integration Architecture, Microsoft Azure, Software as a Service, Cloud Computing, Cloud Computing Security, Cyber Security, Information Systems, Information Systems Security Architecture Professional, Key Management, Network Security, Microsoft Security Essentials, Cloud Services, Salesforce.Com, Security Information and Event Management, Data Logging, Enterprise Software Applications, Software Security, Information Technology, CIS Benchmarks, Devsecops - **Published:** August 6, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=3d8a781a3ada450f ## About the Role * Bachelor's degree in cyber security, computer science, engineering, information systems, or a relevant field, or equivalent professional experience. * 4-8 years of experience in information security, cloud security, infrastructure security, application security, or a related technical discipline. * Hands-on experience securing Microsoft Azure environments; financial services or other regulated-industry experience preferred. * Ability to work independently in a lean team while coordinating across technology, vendor, risk, and business stakeholders. * Microsoft Azure security certifications, CISSP, CCSP, or other relevant professional designations preferred. Technical Skills * Azure security architecture, Defender for Cloud, Azure Policy, logging, monitoring, and secure configuration practices. * Microsoft 365 security and compliance concepts, including integration points with Entra ID, Purview, Defender, and conditional access. * SaaS security administration for platforms such as Salesforce, Box, and other enterprise cloud applications. * Static and dynamic application-security testing concepts, vulnerability triage, and secure SDLC practices. * SIEM integration patterns, alert tuning, security telemetry, and operational handoff to incident response teams. * Strong written communication skills for standards, procedures, exception documentation, and leadership reporting. * Demonstrates curiosity and a continuous improvement mindset by identifying opportunities to enhance processes, improve efficiency, and thoughtfully leverage new technologies and tools, including AI-enabled productivity solutions Personal Attributes * Take ownership and move initiatives forward without constant oversight. * Balance technical depth, process discipline, and sound business judgment. * Approach risk management pragmatically rather than theoretically. * Thrive in collaborative, high-accountability environments. * Communicate clearly with technical and non-technical colleagues. * Bring an entrepreneurial mindset to building and improving security capabilities. Applicants must be authorized to work in the United States without the need for current or future employer-sponsored work authorization (e.g., H-1B , O-1, F-1 (OPT), TN, or any other non-immigrant visa classifications that require employer support or sponsorship). ## Description Brown Advisory is currently seeking a pragmatic and hands-on Cloud Security Engineer to strengthen the firm's Azure security posture and help mature secure cloud operations. This blended role is designed for a security professional who can operate across cloud configuration, SaaS security, application integration, and security tooling without losing sight of business enablement. As part of a lean Information Security team within a mid-sized financial services organization, this individual will partner closely with Infrastructure, Engineering, Enterprise Applications, third-party developers, and Risk partners. The role will help ensure that Brown Advisory-hosted applications, cloud services, and SaaS platforms are configured securely, monitored effectively, and integrated into the firm's broader security control environment. Blended Role Coverage Primary emphasis: Cloud Security Engineer with a specific focus on secure Azure management, application hosting, and cloud control maturity. Blended coverage: Application Security / DevSecOps Analyst, SaaS security administration, cloud tool operations, SIEM integration support, and third-party application-development security guidance. Duties and Responsibilities * Own day-to-day security engineering for Azure environments, including secure configuration, cloud control hardening, logging, monitoring, and remediation follow-through. * Partner with Infrastructure and Engineering teams to implement Azure security baselines, secure networking patterns, key management practices, storage protections, and workload guardrails. * Support Microsoft Defender for Cloud, Azure Policy, Entra-adjacent cloud controls, conditional access inputs, and other Microsoft security capabilities as part of the broader cloud security stack. * Review Brown Advisory-hosted applications and third-party-developed cloud solutions for secure architecture, authentication, authorization, logging, data protection, and operational readiness. * Configure and improve security controls for SaaS platforms such as Salesforce, Box, Microsoft 365, and other business-critical cloud applications. * Support limited DevSecOps activities, including static and dynamic application-security testing coordination, vulnerability triage, and practical remediation guidance for internal and third-party development teams. * Integrate cloud, SaaS, and application telemetry into SIEM and detection workflows, and partner with Security Operations on actionable alerting and response procedures. * Maintain sanctioned application lists, cloud security standards, exception records, and implementation documentation in partnership with GRC and technology owners. * Execute immediate remediation actions where appropriate and coordinate more complex fixes across platform, application, and vendor teams. * Develop clear reporting on cloud security posture, open risks, remediation progress, and control maturity for security and technology leadership. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [A practical guide to writing secure Dockerfiles](https://www.wearedevelopers.com/videos/109-a-practical-guide-to-writing-secure-dockerfiles) - [Crypto-secure Data Management with In-Database Blockchain](https://www.wearedevelopers.com/videos/632-crypto-secure-data-management-with-in-database-blockchain) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries)