Sr. Azure Security Engineer

Arena Technical Resources
Honolulu County, HI, United States
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Agile Methodology JIRA User Authentication Microsoft Azure Bash Shell Cloud Computing Cloud Computing Security Cyber Security Domain Name System (DNS) Internet Protocol Internet Protocol Security (IP SEC) Virtual Private Networks (VPN)
+21 more
Python (Programming Language) Network Protocols Public Key Infrastructure Windows PowerShell Role-Based Access Control Azure Active Directory Zero Trust Network Access Secure Coding Security Content Automation Protocol Security Information and Event Management Data Logging Data Processing Scripting Firewalls (Computer Science) SC Clearance Bicep Microsoft Sentinel Terraform Devsecops Key Vault Vulnerability Analysis

Job description

Sr. Azure Security Engineer Duties and Responsibilities:

  • Design, implement, and maintain secure cloud architectures within

Azure Government Secret classified environments

  • Enforce zero trust principles, role-based access control (RBAC), and

identity federation (e.g.,Azure AD B2B/B2C with CAC/PIV)

  • Configure and manage security controls such as Microsoft Defender

for Cloud, Key Vault, Azure Policy, NSGs, and Private Endpoints

  • Automate compliance and security operations using PowerShell,

Terraform, or ARM templates

  • Integrate SIEM/SOAR tools (e.g., Microsoft Sentinel for IL6) for

continuous monitoring, logging, and incident response

  • Conduct vulnerability assessments and implement remediations aligned

to NIST 800-53, DoD STIGs, and JSIG

  • Collaborate with mission owners, compliance teams, and developers to

ensure secure DevSecOps pipelines

  • Support Authority to Operate (ATO) processes by generating security

documentation, control evidence, and supporting audits

  • Navigate federal systems through the authorization process to

achieve and maintain Authority to Operate (ATO)

  • Work with the ISSO, Program and DOC ITD IA teams to maintain the

necessary security authorizations

  • Develop comprehensive System Security Plans (SSPs) documenting all

implemented NIST 800-53 controls

  • Coordinate security assessments with third-party assessors

  • Manage Plans of Actions & Milestones (POA&Ms) for addressing

identified vulnerabilities

  • Ensure continuous monitoring plans meet agency requirements

  • Prepare authorization packages for government review

  • Maintain ongoing compliance through change management processes

  • Serve as the liaison between technical teams and authorizing

officials

  • Translate security requirements into actionable tasks

  • Ensure all documentation meets the rigorous standards required for

Requirements

Eligibility: Candidate must possess an active Secret clearance, Bachelor’s degree in information systems security; master’s degree

or equivalent professional experience in information security is

preferred

  • Active Secret clearance

  • 5+ years in cloud security, including 2+ in Azure Government or DoD

environments

  • Strong knowledge of Azure-native security tools, IL6 data handling,

and cloud networking

  • Proficient in scripting (PowerShell, Python, or Bash) and

Infrastructure as Code (ARM, Bicep, Terraform)

  • Experiences with DoD SRG, FedRAMP High, JSIG, and ICD 503 compliance

frameworks

  • Hands-on experience with classified enclaves, hardened images, and

enclave-to-enclave connectivity

  • Comprehensive knowledge of corporate Systems/Solutions Architecture

processes and trends

  • Strong leadership, organizational, and communication skills

  • Secret Clearance to start

  • Knowledge of Agile software development process

Required Technical Skills:

  • SCAP, STIG, Patching, eMASS, and related RMF tools

  • Cybersecurity, Systems Administration, implementation of RMF tools

and processes

  • Experience with gaining an ATO for systems and working the systems

through the assessment and authorization process

  • Experience working with IP networking, networking protocols and

understanding of security related technologies including encryption,

IPsec, PKI, VPNs, firewalls, proxy services, DNS, electronic email

and access-list

  • Excellent communication skills

  • Experience working in Agile software development teams

  • Experience with secure development, coding and engineering practices

  • Experience with Cybersecurity, Information Security, and Information

Technology Security processes, protocols, and procedures.

Experience

  • 10 years of relevant experience

    • may vary based on technical training, certification(s), or

degree

  • Experience with Cloud Security

  • Experience working with leading firewall, network scanning and

authentication technologies

  • Experience working with internet, web, application and network

security techniques

  • Experience in Agile methodology

  • Experience in Jira to support development team in agile environment

  • Experience working in Federal or State government environments

  • Ability to work independently and remotely

Certification: Active DoD 8570 IAT Level II Certification (Security+,

CISSP, CISM)

Benefits & conditions

CountryNoneAfghanistanÅland IslandsAlbaniaAlgeriaAmerican SamoaAndorraAngolaAnguillaAntarcticaAntigua and BarbudaArgentinaArmeniaArubaAustraliaAustriaAzerbaijanBahamasBahrainBangladeshBarbadosBelarusBelgiumBelizeBeninBermudaBhutanBoliviaBonaire, Sint Eustatius and SabaBosnia and HerzegovinaBotswanaBouvet IslandBrazilBritish Indian Ocean TerritoryBritish Virgin IslandsBruneiBulgariaBurkina FasoBurundiCabo VerdeCambodiaCameroonCanadaCayman IslandsCentral African RepublicChadChileChinaChristmas IslandCocos (Keeling) IslandsColombiaComorosCongoCongo-BrazzavilleCook IslandsCosta RicaCôte d’IvoireCroatiaCubaCuraçaoCyprusCzechiaDemocratic People’s Republic of KoreaDenmarkDjiboutiDominicaDominican RepublicEcuadorEgyptEl SalvadorEquatorial GuineaEritreaEstoniaEthiopiaFalkland IslandsFaroe IslandsFederated States of MicronesiaFijiFinlandFranceFrench GuianaFrench PolynesiaFrench Southern TerritoriesGabonGambiaGeorgiaGermanyGhanaGibraltarGreeceGreenlandGrenadaGuadeloupeGuamGuatemalaGuernseyGuineaGuinea-BissauGuyanaHaitiHeard Island and McDonald IslandsHondurasHong KongHungaryIcelandIndiaIndonesiaIraqIrelandIslamic Republic of IranIsle of ManIsraelItalyJamaicaJapanJerseyJordanKazakhstanKenyaKiribatiKuwaitKyrgyzstanLao People’s Democratic RepublicLatviaLebanonLesothoLiberiaLibyaLiechtensteinLithuaniaLuxembourgMacaoMacedoniaMadagascarMalawiMalaysiaMaldivesMaliMaltaMarshall IslandsMartiniqueMauritaniaMauritiusMayotteMexicoMonacoMongoliaMontenegroMontserratMoroccoMozambiqueMyanmarNamibiaNauruNepalNetherlandsNew CaledoniaNew ZealandNicaraguaNigerNigeriaNiueNorfolk IslandNorthern Mariana IslandsNorwayOmanPakistanPalauPanamaPapua New GuineaParaguayPeruPhilippinesPitcairnPolandPortugalPuerto RicoQatarRepublic of KoreaRepublic of MoldovaReunionRomaniaRussiaRwandaSaint BarthelemySaint Helena, Ascension and Tristan da CunhaSaint Kitts and NevisSaint LuciaSaint MartinSaint Pierre and MiquelonSaint Vincent and the GrenadinesSamoaSan MarinoSao Tome and PrincipeSaudi ArabiaSenegalSerbiaSeychellesSierra LeoneSingaporeSint Maarten (Dutch part)SlovakiaSloveniaSolomon IslandsSomaliaSouth AfricaSouth Georgia and the South Sandwich IslandsSouth SudanSpainSri LankaState of PalestineSudanSurinameSvalbard and Jan MayenSwazilandSwedenSwitzerlandSyriaTaiwanTajikistanThailandTimor-LesteTogoTokelauTongaTrinidad and TobagoTunisiaTurkeyTurkmenistanTurks and Caicos IslandsTuvaluU.S. Virgin IslandsUgandaUkraineUnited Arab EmiratesUnited KingdomUnited Republic of TanzaniaUnited StatesUnited States Minor Outlying IslandsUruguayUzbekistanVanuatuVaticanVenezuelaVietnamWallis and FutunaWestern SaharaYemenZambiaZimbabwe

State/ProvinceNoneAlabamaAlaskaArizonaArkansasCaliforniaColoradoConnecticutDelawareFloridaGeorgiaHawaiiIdahoIllinoisIndianaIowaKansasKentuckyLouisianaMaineMarylandMassachusettsMichiganMinnesotaMississippiMissouriMontanaNebraskaNevadaNew HampshireNew JerseyNew MexicoNew YorkNorth CarolinaNorth DakotaOhioOklahomaOregonPennsylvaniaRhode IslandSouth CarolinaSouth DakotaTennesseeTexasUtahVermontVirginiaWashingtonWashington, D.C.West VirginiaWisconsinWyoming

City

ZIP/Postal Code

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on juju.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:53 min

Transitioning toward DevSecOps with dynamic scanning and secrets management

Christoph Ruggenthaler · LIVE

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

2:56 min

Provisioning a secure container infrastructure with Bicep

Matthias Falkenberg +1 · WWC 2022

3:05 min

Integrating an assistant application with Jira software

Felix Augenstein · LIVE

1:53 min

Evaluating traditional scripting languages for modern development tasks

Jens Knipper Jens Knipper · Europe 2026 Virtual

4:09 min

Selecting infrastructure tools and determining proper abstraction layers

Alayshia Knighten Alayshia Knighten · WWC 2024

Videos

See all

Related articles

See all