Epicareer Might not Working Properly
Learn More

cloud security engineer

Salary undisclosed

Apply on


Original
Simplified

Job Title: cloud security engineer

Location: remote

Must have hands on Azure cloud Sentinel and defender

Looking for an Azure Cloud Cybersecurity Engineer to work with one of its key government clients.

The Cloud Security Engineer is responsible for implementing technology initiatives to secure our key government client's cloud environment. The selected candidate will be accountable for assisting in strategic planning and architecture, and securing enterprise information by identifying network and application security requirements, implementing and testing security controls and procedures.



The primary areas of focus for the Cloud Cybersecurity Engineer is to enable Cloud Cybersecurity controls and compliance requirements and remediation programs based on business priorities and risks to address Cyber-Security, Cyber Defense and Business needs of our customer.

Key Job Responsibilities

  1. Analyze and continuously monitor cybersecurity and privacy policies, processes and compliance artifacts, systems authorization, and management in a cloud environment.
  2. Analyze and map existing security controls and safeguards to compliance requirements for a cloud environment.
  3. Manage the implementation of security controls and compliance controls including Entra ID Lifecycle Management, NIST and FedRAMP controls, Sentinel, and others.
  4. Conduct architecture reviews and security impact assessments for technology and software development initiatives.
  5. Lead the implementation a Zero-Trust Architecture as a core part of all design and development of the cloud solution.
  6. Coordinate application and infrastructure risk mitigation and vulnerability remediation activities.
  7. Assist in the design, development, implementation, and deployment of a Security Controls and compliance within a FedRAMP High environment.
  8. Assess vulnerabilities and attacker tactics, techniques, and procedures (TTP) and provide incident response support to locate and prevent threats.

Primary Job Requirements

Experience Required: (Microsoft Azure Cloud experience preferred; GovCloud experience preferred)

  • Education: Bachelor's degree in a technology field, Masters degree preferred.

  • 5+ years' cyber related experience in a commercial environment with Azure, in a technical information security and risk management role.

  • 5+ years managing security policies and initiatives in Azure.
  • Identity Access and Management concepts, multifactor authentication, SSO/Federation
  • Privileged Access Management key concepts
  • Ability to set up and configure the Azure security platforms, and function as an overall lead managing end to end security on the Azure Cloud regions.
  • Network and Application Vulnerability testing as it relates to Azure systems.

  • Security concepts & tools related to CI/CD pipelines, and software scanning.
  • Demonstratable understanding of Information Security and Risk Management capabilities related to cloud computing across Windows and Linux, with demonstrated direct experience with the following domains:
    • Identity, Credential and Access Management (ICAM)
    • Authentication and Authorization including SSO and Identify Federation
    • Zero-Trust Model
    • Defense-In-Depth
    • Governance and Compliance
    • Securing Data
    • Securing the Operating System
    • Protecting the Network Layer
    • Continuous Diagnostics and Mitigation, Alerting, Audit Trail, and Incident Response
    • Cloud Core Platform:Compute, Storage, Networking

Other experience desired:

  • Government environments and GovCloud experience
  • Certifications: CISSP, CCSP, Azure/AWS/Google Security specific Training and Certification
  • Crowdstrike Falcon EDR for Azure
  • Managing/maintaining FISMA and FedRAMP compliance for a government information system
  • Demonstrated experience collaborating directly with external clients, business leadership, and auditors.
  • 5+ Firsthand working with the various Azure security tools/platforms such as:
    • Extended Detection and Response (XDR): Microsoft Defender for Cloud Apps, Microsoft Defender for Endpoint, Microsoft Defender for Office 365, Microsoft Defender for Identity
    • Data Protection: Microsoft Purview, Microsoft Information Protection, DLP, One Trust, Kubernetes
    • Identity and Access Management (IAM): Zero Trust, Azure IAM and AWS IAM, Entra ID (Azure AD), Multitenant Organization (MTO), Lighthouse, Key Vault, Conditional Assess
    • Monitoring Compliance: Sentinel, MDC
    • Entra ID (formally Azure AD), M365

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
Report this job