Azure Security Analyst, Azure Security Engineer
  • Steneral
1 Days Ago
NA
C2C
Phoenix-AZ
8-10 Years
Required Skills: Microsoft Azure, Azure security, networking, identity, resource management, security, Azure Policy, policy definitions, initiatives, assignments, exemptions, compliance evaluation, remediation, cloud security, risk, governance, compliance concepts, Terraform for infrastructure-as-code, security controls, policy deployment, JSON for cloud configurations, policy definitions, templates, service certification , Git, GitHub
Job Description
Role Summary
Responsible for reviewing, implementing, and maintaining security controls across Microsoft Azure environments, with Azure serving as the primary cloud platform for this role. The position focuses on evaluating Azure services from a security perspective, developing Azure-native policies and guardrails, managing approved exceptions and allow policies, and supporting day-to-day cloud security operations.
Experience with other major cloud platforms—including Amazon Web Services (AWS), Google Cloud Platform (GCP), and Oracle Cloud Infrastructure (OCI)—is preferred and will support broader multi-cloud security initiatives and collaboration.
Key Responsibilities:
  • Review and assess existing and new Azure services, resources, architectures, and configurations for security risks, compliance requirements, vulnerabilities, and misconfigurations.
  • Develop, test, deploy, and maintain Azure Policy definitions, initiatives, assignments, guardrails, exemptions, and approved allow policies; evaluate policy impacts and troubleshoot deployment or operational issues.
  • Develop and maintain Terraform modules and security controls, using Terraform as the primary infrastructure-as-code (IaC) tool for Azure security and policy deployment.
  • Work with JSON-based configurations and templates, including those supporting Azure service certifications and security requirements.
  • Use Git and GitHub to manage infrastructure-as-code and security policy changes, including validating GitHub Actions workflows and pull requests (PRs) as needed.
  • Monitor Azure environments for security findings, vulnerabilities, misconfigurations, and policy violations; recommend remediation actions and partner with application and engineering teams to track findings through resolution.
  • Support cloud security operations, incident investigations, and troubleshooting, collaborating with cloud engineering, architecture, risk, compliance, cybersecurity, and CSE teams as needed.
  • Apply cloud security principles across a multi-cloud environment, with Azure as the primary focus and AWS, GCP, and OCI as secondary platforms.
  • Maintain clear documentation for security policies, standards, service certifications, exceptions, guardrails, and operational procedures.
Preferred: Working knowledge or hands-on security experience with Amazon Web Services (AWS), Google Cloud Platform (GCP), and/or Oracle Cloud Infrastructure (OCI).
Preferred: Understanding of how common cloud security concepts—such as IAM, network security, policy enforcement, encryption, logging/monitoring, and security posture management—are implemented across Azure, AWS, GCP, and OCI.
 
Certifications:
  • HashiCorp Certified: Terraform Associate
  • Microsoft Certified: Azure Fundamentals (AZ-900)
  • Additional AWS, GCP, or Oracle Cloud certifications are considered a plus but are not required.
  • Primary vs. Secondary Cloud Expectations
  • Primary: Microsoft Azure — candidates should have practical Azure security experience and be capable of working directly with Azure Policy, security controls, Terraform, and enterprise Azure environments.
  • Secondary/Preferred: AWS, GCP, OCI-candidates do not need the same depth of expertise as Azure but familiarity with one or more of these platforms and their security models is desirable.

Jobseeker

Looking For Job?
Search Jobs

Recruiter

Are You Recruiting?
Search Candidates