Azure Security Engineer
Role details
Job location
Tech stack
Job description
The Azure Security Engineer is responsible for securing, administering, and maintaining the RRB Microsoft Azure environment. The role focuses primarily on Azure security engineering, identity and access management, vulnerability remediation, security monitoring, patch compliance, and operational support of Azure-hosted systems.
The engineer will work directly with infrastructure, network, Windows, Linux, and application teams to maintain a secure, stable, patched, and compliant Azure environment. This position does not serve as the organizational security lead but provides hands-on security engineering and Azure operational support.
Primary Responsibilities
Azure Security Engineering
Design, implement, and maintain security controls across the Microsoft Azure environment.
Administer and secure Microsoft Entra ID.
Configure and maintain Conditional Access policies, multifactor authentication, authentication controls, and identity protection settings.
Implement and manage Role-Based Access Control and least-privilege access.
Administer Privileged Identity Management and privileged account access.
Support identity governance, access reviews, and account lifecycle management.
Configure and maintain Azure Policy, security baselines, resource locks, and governance controls.
Review Azure subscriptions, resource groups, virtual machines, storage accounts, networking components, and platform services for security risks and configuration weaknesses.
Vulnerability Management and Patching
Review vulnerability findings affecting Azure-hosted Windows and Linux systems.
Coordinate and perform remediation of identified vulnerabilities.
Plan, schedule, and execute operating system patching using Azure Update Manager and related enterprise tools.
Monitor patch status and compliance across Azure virtual machines and hybrid systems.
Validate successful patch deployment and resolve failed or incomplete patching activities.
Coordinate maintenance windows, system reboots, validation testing, and rollback activities.
Track remediation status and maintain evidence for security reviews and audits.
Support timely resolution of configuration findings, unsupported software, missing updates, and security baseline deviations.
Azure Environment Administration
Administer Azure subscriptions, resource groups, virtual machines, storage accounts, virtual networks, and supporting cloud resources.
Deploy, configure, maintain, and troubleshoot Azure virtual machines.
Support Azure networking components, including VNets, subnets, NSGs, private endpoints, DNS, load balancers, and connectivity services.
Manage Azure Backup, recovery configurations, and system restoration activities.
Monitor resource health, availability, capacity, and performance.
Support Azure Arc and hybrid infrastructure management where applicable.
Maintain cloud resource inventories, configurations, tagging, and lifecycle documentation.
Troubleshoot Azure infrastructure, access, identity, networking, and system issues.
Security Monitoring and Incident Response
Monitor security alerts through Microsoft Defender for Cloud, Microsoft Sentinel, Microsoft Defender XDR, Azure Monitor, and related tools.
Investigate security alerts, suspicious activity, access anomalies, and configuration risks.
Support incident response, containment, remediation, recovery, and post-incident documentation.
Review logs, alerts, identity events, and system activity to identify potential security issues.
Coordinate with internal security and infrastructure teams during security incidents.
Support root-cause analysis and corrective action planning.
Compliance and Documentation
Support federal cybersecurity compliance requirements, security assessments, audits, continuous monitoring, and POA&M remediation.
Maintain security procedures, patching procedures, configuration standards, operational runbooks, and technical documentation.
Provide technical evidence for vulnerability remediation, patch compliance, access reviews, and security control validation.
Support change management and configuration management processes.
Document system changes, maintenance activities, security findings, and remediation actions.
Technical Skills
Microsoft Azure
Requirements
Conditional Access
Role-Based Access Control
Privileged Identity Management
Azure Policy
Microsoft Defender for Cloud
Microsoft Sentinel
Microsoft Defender XDR
Azure Update Manager
Azure Virtual Machines
Azure Monitor
Log Analytics
Azure Backup
Azure Arc
Vulnerability Management
Windows and Linux Patching
Identity and Access Management
PowerShell
Azure CLI
Security Monitoring
Incident Response
Hybrid Cloud Security, Microsoft Certified: Identity and Access Administrator Associate (SC-300), preferred
Microsoft Certified: Security Operations Analyst Associate (SC-200), preferred
Minimum Qualifications
4+ years of experience supporting enterprise cybersecurity or cloud security operations.
2+ years of hands-on experience securing and administering Microsoft Azure environments.
Experience with Microsoft Entra ID, Conditional Access, RBAC, PIM, and identity governance.
Experience with Azure security monitoring and vulnerability remediation.
Experience performing or coordinating Windows and Linux server patching.
Experience administering Azure virtual machines, networking, storage, monitoring, and backup services.
Experience supporting security incidents, audits, compliance reviews, and remediation activities.
Experience working in federal government or similarly regulated environments is preferred.
Strong troubleshooting, documentation, communication, and operational support skills