
Cloud Security Engineer
Posted Aug 13

Posted Aug 13
This is a fully remote position, open to applicants in United States.
• Design, implement, and enhance security controls and configuration baselines across Microsoft Azure and Microsoft 365.
• Configure, manage, and optimize Microsoft Defender for Cloud, Microsoft Defender for Endpoint, Microsoft Defender for Cloud Apps, and associated technologies.
• Perform security assessments on cloud resources, applications, Azure Kubernetes Service, and containerized workloads.
• Detect vulnerabilities, misconfigurations, excessive permissions, and various other security risks.
• Prioritize vulnerability issues, coordinate remediation efforts, and verify corrective measures.
• Set up and improve cloud security monitoring, threat detection, investigation, response, and automation using Microsoft Sentinel, Kusto Query Language, and related technologies.
• Work collaboratively with Cloud, Compliance, and other internal teams to ensure secure design, deployment, and maintenance of cloud services.
• Address customer security inquiries, assessments, and questionnaires.
• Develop and sustain technical documentation, procedures, dashboards, alerts, and reporting.
• Assist with internal and external audits by collecting evidence, validating controls, and showcasing compliance.
• Aid in incident response by investigating suspicious, anomalous, or unauthorized cloud activities and participating in security investigations.
• BS/BA in Cybersecurity, Computer Science, Engineering, or a technology-related field, or equivalent work experience.
• 3+ years of experience in securing cloud-based infrastructure, services, and technologies.
• Experience in identifying, analyzing, and mitigating security risks within cloud environments.
• Proficiency in securing Microsoft Azure through secure configuration, least-privilege access, data protection, threat detection and response, and security hardening.
• Familiarity with deploying, managing, and utilizing Microsoft Defender, SIEM, CASB, vulnerability management, and related security technologies.
• Working knowledge of Azure Log Analytics, Kusto Query Language, PowerShell, Bash, and REST APIs.
• Understanding of Microsoft Entra ID, RBAC, authentication, authorization, and least-privilege access.
• Knowledge of Windows and Linux operating systems.
• Familiarity with incident response, incident management, and change management processes.
• Preferred: experience with a CSP, MSP, SaaS provider, or similarly regulated cloud environment.
• Preferred: 5+ years of experience with Microsoft Azure, AKS, and containerized workloads.
• Preferred: knowledge of NIST 800-53, FedRAMP, SOC 1, SOC 2, ISO 27001, or similar standards.
• Preferred: understanding of IAM technologies and protocols including Okta, SAML, OAuth, and OIDC.
• Preferred: experience with IaC technologies including ARM, Bicep, Terraform, and Azure DevOps pipelines.
• Preferred: working knowledge of network security, TCP/IP, DNS, TLS, and firewalls.
• Preferred: familiarity with Agile, Scrum, and DevSecOps methodologies.
• Preferred: relevant cybersecurity certifications such as AZ-500, AZ-104, SC-200, SC-300, SC-100, Security+, or Cloud+.
• Strong analytical and problem-solving capabilities.
• Excellent written, verbal, and presentation communication skills.
• Ability to convey technical information to both technical and non-technical stakeholders.
• Demonstrated initiative, accountability, and attention to detail.
• Effective prioritization and organizational abilities.
• Adaptability to evolving technologies, priorities, and business requirements.
• Commitment to continuous learning and professional growth.
• Legally authorized to work for any company in the United States without sponsorship.
• Vision insurance.
• Medical coverage.
• Life insurance.
• Dental insurance.
• 401K plan.
• Additional variable compensation may apply.
• Excellent Medical Plan.
• Dental & Vision Insurance.
• Life Insurance.
• Short & Long Term Disability coverage.
• Vacation Time.
• Paid Holidays.
• Professional Development opportunities.
• Retirement Plan.
• Multiple training opportunities.
• Variety of project work.
• Strong culture and camaraderie.
• Transparency regarding corporate structure, salary, and benefits.
ASG Technologies
CrowdStrike
Culmen International
Threatscape
Get handpicked remote jobs straight to your inbox weekly.