Azure Cloud Security Architect / Engineer
Type: Full-Time
Role Overview
We are looking for an experienced Azure Cloud Security Architect / Engineer to design, implement, and secure enterprise Azure environments. The role will focus on cloud security architecture, identity, network security, data protection, monitoring, compliance, and security automation.
The candidate should be able to design security solutions and also implement them hands-on , following Azure security and Zero Trust principles. Microsoft recommends security architecture covering identity/access, segmentation, encryption, workload protection, monitoring, and incident response.
Key Responsibilities
- Design secure Azure cloud architectures for enterprise applications and workloads.
- Implement Zero Trust, IAM, RBAC, MFA, Conditional Access, and least-privilege security controls.
- Design and secure Azure networking including VNets, NSGs, Azure Firewall, WAF, Private Link, VPN, and ExpressRoute .
- Implement data protection using encryption, Key Vault, secrets management, and data security controls .
- Configure and manage Microsoft Defender for Cloud, Microsoft Sentinel, and Azure security policies .
Must-Have Skills
- 7-10+ years of cloud/security engineering experience.
- Azure security architecture and Zero Trust .
- Microsoft Defender for Cloud and Microsoft Sentinel .
- Azure Key Vault and encryption.
- Vulnerability management, threat modeling, and security monitoring.
- Infrastructure as Code such as Terraform or ARM/Bicep .
- CI/CD and DevSecOps security practices.
- Strong troubleshooting, architecture, documentation, and stakeholder communication skills.