Job Summary :
We are seeking a highly skilled Azure Cloud Security Engineer with 10+ years of experience in design, implementation, and management of Enterprise-grade security solutions in Microsoft Azure.
The ideal candidate will have a strong foundation in cloud infrastructure security, IAAC (Terraform) and compliance frameworks.
You will be responsible for protecting our cloud assets, identifying vulnerabilities, and enforcing robust security policies across hybrid and cloud-native environments.
Mandatory Skillset :
- Strong experience in security roles, with a focus on Azure cloud security (Total of 10 + Years of Experience with experience supporting On-prem Security & 3-4 years of experience in Azure cloud Security.
- Develop and enforce cloud security policies, standards, and best practices using Azure Well-Architected Framework and Cloud Adoption Framework.
- Practical experience in Azure Active Directory, identity and access management, RBAC, Azure Security Center and privilege identity management.
- Provide guidance on identity and access management (IAM), RBAC, and privileged access strategies.
- Hands-on expertise with Terraform for infrastructure as code and Azure policy creation and deployment.
- Working experience of network security : Azure firewalls, NSGs, WAF, and ability to write / edit modules for these using Terraform.
- Experience with Azure Sentinel and Azure Monitor for security monitoring and logging, Vulnerability Remediation & Incident Response co-ordination.
- Familiarity with compliance standards such as PCI, HIPAA, ISO, and ability to assess and enhance security posture.
- Exposure to Azure Well-Architected Framework and Cloud Adoption Framework security guidelines.
- Collaborate with cross-functional teams to embed security in cloud architecture and development processes.
- Data protection skills : Azure Key Vault, data classification, encryption.
- Practical experienc & deep understanding of zero trust principles and conditional access policies.
- Experience with both on-premises and cloud (Azure) security frameworks, especially in migration / lift-and-shift scenarios.
- Maintain documentation of security configurations, processes, and audits.
- Experience working on Azure Policies & Blueprints & Align to security practices with the Microsoft Cloud Security Benchmark (MCSB) and industry standards (e., NIST, CIS, PCI-DSS).
Good to Have Skillset :
Working knowledge of containers and Kubernetes security (basic understanding sufficient).Familiarity with Azure Bicep (in addition to Terraform).Experience with application security, especially securing financial, insurance, or healthcare applications.Awareness of new security features and ability to adapt to evolving cloud security tools.Exposure to Azure Defender (not mandatory, lighter usage).Experience with Azure Purview and other Azure monitoring tools.Conduct regular threat modeling, security assessments, and penetration tests across cloud services.Perform risk analysis and create mitigation strategies for cloud deployments.Understanding container security (Kubernetes, AKS) and CI / CD pipeline protection.Troubleshooting Security related issues using Azure Monitor, Flow Logs, CSPM such as Wiz, Sentinel etc.Preferred Certifications :
Microsoft Certified : Azure Security Engineer Associate (AZ-500).Microsoft Certified : Azure Solutions Architect Expert.Certified Information Systems Security Professional (CISSP) or Equivalent.Soft Skills :
Strong analytical and problem-solving abilities.Excellent communication and documentation skills.Ability to work independently and collaboratively in cross-functional teams.(ref : hirist.tech)