Cloud Network Security Engineer

Microsoft
San Francisco, CA, United States
1 day ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
2 years minimum
Compensation
$119,800.0 - $234,700.0
Working hours
Regular working hours
Job source

Tech stack

Artificial Intelligence Microsoft Online Services Cyber Security DDoS Mitigation Intrusion Detection and Prevention Intrusion Detection Systems Python (Programming Language) Network Security Network Architecture Packet Analyzer Cloud Services Ansible
+8 more
Security Information and Event Management Software Engineering Cloud-native Network Functions (CNF) Cloud Platform System Firewalls (Computer Science) Information Technology Bicep Terraform

Job description

Microsoft Specialized Clouds (MSC) is seeking a Senior Cloud Network Security Engineer to design, deploy, and operate network security monitoring capabilities supporting sovereign and government cloud environments. This role focuses on network security telemetry, threat detection, alerting, automation, and operational ownership of critical security services.

The Engineer will be responsible for deploying and configuring network security platforms, building telemetry pipelines, developing detections and alerts, and enabling visibility into network activity across cloud and hybrid environments. The role requires strong network security expertise, experience analyzing packet captures and network telemetry, and the ability to leverage automation and AI to improve monitoring, incident response, and operational efficiency.

As the Directly Responsible Individual (DRI) for assigned services, this engineer will provide operational ownership, incident leadership, and participation in on-call rotations to ensure service reliability, security visibility, and compliance readiness across Microsoft sovereign cloud offerings.

Microsoft’s mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond, * Design, deploy, and manage network security platforms including firewalls, proxies, and traffic inspection solutions supporting sovereign cloud environments.

  • Configure network security devices to export logs, flow records, packet telemetry, and security events to centralized monitoring, analytics, and incident response platforms.
  • Develop and maintain network security detections, alerts, and analytics to identify malicious activity, unauthorized access, policy violations, and emerging threats.
  • Analyze packet captures, firewall logs, flow data, and network telemetry to support threat investigations, incident response, root cause analysis, and service improvements.
  • Build and maintain security telemetry pipelines that provide actionable visibility across network infrastructure, cloud services, and security platforms.
  • Develop automation solutions using scripting, Infrastructure as Code, and AI-enabled capabilities to improve detection engineering, alert correlation, incident triage, and operational efficiency.
  • Integrate network security telemetry, observability, and incident management platforms to improve monitoring coverage and response effectiveness.
  • Create operational dashboards, reporting, and health metrics to measure detection coverage, alert quality, service reliability, compliance posture, and operational risk.
  • Partner with engineering, security, and operations teams to define secure network architectures, monitoring standards, deployment patterns, and onboarding requirements for new services.

Requirements

  • Doctorate in Statistics, Mathematics, Computer Science, or related field
  • OR Master’s Degree in Statistics, Mathematics, Computer Science, or related field AND 3+ years experience in software development lifecycle, large-scale computing, modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology
  • OR Bachelor’s Degree in Statistics, Mathematics, Computer Science, or related field AND 4+ years experience in software development lifecycle, large-scale computing, modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology
  • OR equivalent experience.

Other Requirements:

  • Microsoft Cloud Background Check: This position will be required to pass the Microsoft Cloud background check upon hire/transfer and every two years thereafter.
  • Citizenship & Citizenship Verification: This position requires verification of U.S. citizenship due to citizenship-based legal restrictions. Specifically, this position supports United States federal, state, and/or local [or applicable country] government agency customers and is subject to certain citizenship-based restrictions where required or permitted by applicable law. To meet this legal requirement, and as a condition of employment, the successful candidate’s citizenship will be verified via a valid passport., * 2+ years of experience using AI technologies to improve security operations, detection engineering, alert correlation, incident investigation, and operational workflows.
  • 2+ years of experience supporting government, regulated, or sovereign cloud environments.
  • 10+ years of experience designing, deploying, or operating network security infrastructure and services.
  • 5+ years of experience with firewalls, DDoS protection, IDS/IPS platforms, proxies, traffic inspection, and network security controls.
  • 5+ years of experience automating operational processes using Python, Terraform, Ansible, Bicep, ARM, or similar technologies.
  • 3+ years of experience configuring security devices to export telemetry, logs, events, and flow data for centralized monitoring and threat analysis.
  • 3+ years of experience developing security detections, alerting strategies, monitoring content, and operational response processes.
  • 5+ years of experience supporting production services, incident response, operational ownership, and on-call rotations.

Security Operations Engineering IC4 - The typical base pay range for this role across the U.S. is USD $119,800 - $234,700 per year. There is a different range applicable to specific work locations, within the San Francisco Bay area and New York City metropolitan area, and the base pay range for this role in those locations is USD $160,200 - $261,000 per year.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:34 min

Essential commands for running and testing Terraform configurations

Hennie Francis · LIVE

1:42 min

Automating Skupper deployments using Ansible

Alex Soto Alex Soto · World Congress 2024

2:56 min

Provisioning a secure container infrastructure with Bicep

Matthias Falkenberg +1 · World Congress 2022

2:32 min

Overview of Terraform and Terraform Cloud features

Devlin Duldulao · LIVE

3:19 min

Executing complex workflows using Ansible Automation Platform

Goetz Rieger Goetz Rieger · World Congress 2025

Videos

See all

Related articles

See all