Cloud Security Engineer (Azure Focus)

Intersources Inc.
McKinney, TX, United States
1 day ago
Apply on www2.jobdiva.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$26,000.0
Working hours
Regular working hours

Tech stack

Microsoft Azure Cloud Computing Cloud Computing Security Cloud Engineering Cyber Security Data Security Python (Programming Language) Key Management Platform as a Service (PAAS) Windows PowerShell Role-Based Access Control Azure Active Directory
+20 more
Cloud Services Zero Trust Network Access Security Information and Event Management Systems Integration Software Vulnerability Management Scripting Data Classification Firewalls (Computer Science) Azure Security Center Falcon Platform Bicep Microsoft Sentinel Api Design Terraform Cyber Warfare Prisma Cloud Platform Splunk Devsecops Azure Resource Manager Key Vault

Job description

We are seeking a Cloud Security Engineer with a strong focus on Microsoft Azure to design, implement, and operate security controls across a predominantly Azure-based environment. This role will partner closely with Cloud Engineering, Identity, and Cyber Operations teams to ensure secure-by-design cloud deployments, continuous monitoring, and alignment with enterprise security frameworks., Azure Security Architecture & Engineering

  • Design and implement security controls across Azure services including compute, storage, networking, and PaaS offerings
  • Secure Azure landing zones using best practices aligned to Zero Trust principles
  • Implement and manage Azure-native security services (Defender for Cloud, Conditional Access, Key Vault, etc.)
  • Partner with architecture teams to embed security into cloud design patterns and reference architectures

Cloud Security Operations

  • Monitor and respond to cloud security alerts and incidents across Azure environments
  • Integrate Azure logs with SIEM/SOAR platforms (e.g., Sentinel, CrowdStrike, etc.)
  • Support incident response activities related to cloud threats and misconfigurations
  • Develop automation for detection and response using Azure-native tooling

Identity & Access Security

  • Implement and enforce strong identity controls leveraging Microsoft Entra ID
  • Design Conditional Access policies and support passwordless initiatives (WHfB, FIDO2, etc.)
  • Ensure least privilege access using RBAC, PIM, and Just-in-Time access models

Cloud Posture & Vulnerability Management

  • Manage cloud security posture using tools such as Defender for Cloud and/or CNAPP platforms
  • Identify and remediate misconfigurations, vulnerabilities, and compliance gaps
  • Partner with engineering teams to prioritize and remediate risks based on business impact

Data Protection & Governance

  • Implement data protection controls across Azure services (encryption, DLP, data classification)
  • Secure data flows between cloud services and external integrations
  • Support compliance initiatives (NIST, CIS, ISO, PCI, etc.) through technical control implementation

DevSecOps & Automation

  • Integrate security into CI/CD pipelines (IaC scanning, secrets management, policy enforcement)
  • Support secure Infrastructure-as-Code (Terraform, Bicep, ARM templates)
  • Automate security controls and validation through scripting (PowerShell, Python, etc.)

Requirements

  • 5+ years of experience in cloud security or cloud engineering
  • Strong hands-on experience securing Microsoft Azure environments (90%+)
  • Experience with:
  • Microsoft Defender for Cloud / Azure Security Center
  • Microsoft Entra ID (Azure AD), Conditional Access, RBAC
  • Azure networking (VNets, NSGs, Private Endpoints, Firewall)
  • Familiarity with SIEM/SOAR platforms (e.g., Microsoft Sentinel, CrowdStrike, Splunk)
  • Experience with Infrastructure-as-Code and automation
  • Strong understanding of Zero Trust architecture principles, * Experience with CNAPP platforms (e.g., Wiz, Prisma Cloud, CrowdStrike CNAPP)
  • Knowledge of SaaS security monitoring and API-based integrations
  • Familiarity with Zscaler (ZIA/ZPA) or similar secure access solutions
  • Experience in hybrid environments (Azure + on-prem)
  • Relevant certifications:
  • AZ-500 (Azure Security Engineer)
  • CISSP, CCSP, or equivalent

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www2.jobdiva.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:55 min

Centralizing credentials management using Azure Key Vault resource integration

Marcel Lupo · LIVE

2:56 min

Provisioning a secure container infrastructure with Bicep

Matthias Falkenberg +1 · World Congress 2022

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

3:03 min

Implementing secured configuration vaults via Azure

Markus Möller · World Congress 2021

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

Videos

See all

Related articles

See all