Senior Cloud Platform Security Engineer
New
J
JobgetherCloud security
Fully remote within the United States, Eastern Time working hoursFull-TimeSenior
Salary190,000 - 220,000 USD per year
Apply NowOpens the employer's application page
Job Details
- Experience
- 7+ years of hands-on cloud infrastructure or security engineering experience
- Required Skills
- Microsoft AzureTerraformAzure DevOps
Requirements
- Have 7+ years of hands-on cloud infrastructure or security engineering experience, including ownership of production Azure environments.
- Bring demonstrated senior-level responsibility in cloud infrastructure or security engineering.
- Have strong experience with Azure subscriptions and management groups, networking, Microsoft Entra ID, RBAC, Azure Policy, monitoring, backup and recovery, security controls, and cloud cost management.
- Have experience with Terraform, Bicep, ARM templates, or comparable infrastructure-as-code technologies, including source control, peer review, automated testing, and deployment practices.
- Have practical experience with cloud security operations, vulnerability remediation, logging and detection, incident response, access governance, configuration monitoring, and disaster-recovery testing.
- Have working knowledge of Microsoft Purview or comparable data-governance platforms, including classification, lineage, retention, DLP, and access controls.
- Have experience translating regulatory, customer, or internal control requirements into technical designs, operating procedures, audit evidence, and measurable results.
- Be experienced with tools and practices including Azure Monitor, Log Analytics, Microsoft Defender for Cloud, Microsoft Sentinel or comparable SIEM platforms, Azure DevOps pipelines, and Azure Key Vault.
- Bring experience with cloud networking, segmentation, firewalls, DNS security, zero-trust architectures, certificate and key management, backup and recovery, and FinOps practices.
- Have strong documentation skills and be able to communicate with technical teams, business stakeholders, executives, auditors, vendors, and external partners.
- Relevant Microsoft certifications are preferred, including Azure Security Engineer Associate, Cybersecurity Architect Expert, Security Operations Analyst Associate, or Azure Solutions Architect Expert.
- Experience in financial services or another regulated environment, production AI security, Databricks platform security, Microsoft 365 security, and SaaS identity integrations is preferred where applicable.
Responsibilities
- Design, configure, operate, and improve Azure subscriptions, management groups, networking, compute, storage, platform services, and shared infrastructure.
- Establish Azure environment, naming, tagging, approved-service, secure-configuration, and change-management standards.
- Design and maintain Microsoft Entra ID, MFA, Conditional Access, PIM, RBAC, managed identities, access reviews, and least-privilege controls.
- Operate cloud-security posture management, vulnerability remediation, configuration monitoring, logging, detection, and threat-response capabilities.
- Develop reusable infrastructure-as-code modules and maintain automated testing, deployment controls, peer reviews, and configuration-drift management.
- Translate regulatory, customer, and internal requirements into technical controls, documentation, audit evidence, and remediation activities.
- Partner with Data & AI teams to implement data governance and security controls and secure AI, machine-learning, LLM, and agent-based workloads.
- Maintain platform availability, incident response readiness, disaster recovery testing, monitoring, escalation paths, and recovery procedures.
- Manage cloud budgets, alerts, tagging standards, forecasting inputs, and recurring cost-optimization recommendations.
- Document architecture, standards, risk statements, runbooks, and executive updates for technical and business stakeholders.
View Full Description & ApplyYou'll be redirected to the employer's site