
Azure Network and Security Engineer
Posted Aug 5

Posted Aug 5
This is a fully remote position, open to applicants in New Jersey.
• Design, implement, and oversee Azure network architectures, including Hub-and-Spoke, Virtual WAN, VNets, subnets, peering, routing, ExpressRoute, and VPN connectivity.
• Administer and oversee Azure network security services, such as Azure Firewall, WAF, DDoS Protection, NSGs, Private Endpoints, Private DNS, and Service Endpoints.
• Deploy and manage Microsoft Defender for Cloud, Defender for Endpoint, and Microsoft Sentinel.
• Create detection rules, automation processes, threat hunting strategies, and incident response capabilities.
• Enforce Azure security governance through Azure Policy, RBAC, security baselines, and compliance controls.
• Monitor and resolve issues in network and security environments using Azure Monitor, Network Watcher, Log Analytics, and Connection Monitor.
• Perform vulnerability assessments, assist in threat modeling, and coordinate remediation efforts with infrastructure and application teams.
• Maintain comprehensive network security documentation, architecture diagrams, firewall standards, data flows, and operational runbooks.
• Collaborate with DevOps and cloud engineering teams to embed security within CI/CD pipelines and enhance DevSecOps practices.
• Assess and evaluate emerging Azure networking and security technologies.
• Support both internal and external audits by providing security evidence, documentation, risk assessments, and compliance artifacts.
• Safeguard and manage patients’ PHI in compliance with HIPAA standards.
• Adhere to Information Security and HIPAA policies and procedures.
• Limit PHI access to the minimum necessary for assigned responsibilities.
• Bachelor's Degree in Computer Science, Information Technology, Cybersecurity, Engineering, or a related discipline, or equivalent professional experience.
• Over 5 years of IT experience, including at least 3 years in an Azure network engineering or cloud security engineering position.
• In-depth knowledge of Azure networking, encompassing Virtual Networks, NSGs, Azure Firewall, Application Gateway, Azure Front Door, Load Balancers, Traffic Manager, ExpressRoute, and VPN Gateway.
• Proficient in Azure Private Endpoint, Private DNS, Service Endpoints, and network segmentation methods.
• Practical experience with Microsoft Defender for Cloud, Microsoft Sentinel (SIEM/SOAR), and Azure Security Center.
• Familiarity with Microsoft Entra ID (Azure AD), Conditional Access, PIM, Identity Protection, MFA, and SSO/federation.
• Understanding of zero-trust architecture principles and their practical application in Azure.
• Experience with Azure DDoS Protection Standard, WAF policies, and bot protection configurations.
• Knowledge of compliance frameworks such as HIPAA, SOC 2, PCI-DSS, NIST CSF, and CIS Azure Benchmarks.
• Proficient in PowerShell, Azure CLI, and/or Python.
• Experience with Infrastructure-as-Code using Terraform or Bicep.
• Competent in using Microsoft Office Suite.
• Excellent interpersonal, written, and verbal communication skills.
• Strong analytical and creative problem-solving abilities; capable of exercising sound judgment and making decisions based on precise and timely analysis.
• High integrity, reliability, urgency, and results orientation.
• Willingness to work outside regular business hours and/or be on call as required.
• Must have a smartphone or electronic device capable of downloading applications for multifactor authentication and security purposes.
• Ability to meet the physical and mental demands outlined for this role.
• Remote/virtual work arrangement.
• Occasional travel to other company locations.
• Flexibility to work outside of normal business hours and/or be on call as necessary.
Legacy Community Health
NeoGuardian
Fresh Consulting
CrowdStrike
Get handpicked remote jobs straight to your inbox weekly.