Cybersecurity Engineer – Azure DevSecOps

Posted Aug 4

This is a fully remote position, open to applicants in United States.

📋 Description

• Implement and oversee Microsoft Defender for Cloud across Azure workloads, encompassing CSPM and CWPP for virtual machines, AKS containers, and serverless functions.

• Lead the DevSecOps initiative utilizing Snyk for SAST, DAST, and software composition analysis integrated into CI/CD workflows.

• Develop and manage Infrastructure as Code with Terraform, Bicep, and ARM templates, incorporating embedded security controls, policy-as-code, and guardrails.

• Ensure the security of integrations between Azure workloads and data platforms such as Cosmos DB, MongoDB Atlas, RedPanda, and Snowflake.

• Protect AKS containerized workloads through cluster hardening, workload identity management, network policy enforcement, and CI/CD image scanning.

• Collaborate with application developers on code reviews, provide secure coding advice, and assist in vulnerability remediation.

• Create and maintain tools, scripts, and APIs to automate security checks, enforce policies, and generate reports.

• Perform threat modeling for cloud-native workloads and data integrations, developing detection and automation use cases.

• Assess and integrate new cloud-native and data platform technologies, including those from mergers and acquisitions.

• Oversee security for AI-assisted development tools and AI agent/model platforms, focusing on code and secrets exposure, access scoping, and the secure integration of AI-generated code in CI/CD processes.

• Align DevSecOps and cloud-native methodologies with the principles of Zero Trust and the NIST Cybersecurity Framework.

• Potentially design and develop internal web applications such as security dashboards, self-service tools, and workflow automation portals.


⛳️ Requirements

• Previous experience as a software engineer, DevOps engineer, or platform engineer; hands-on coding experience is essential.

• Proficient in at least one of the following languages: Python, C#/.NET, Go, or JavaScript/TypeScript, including the ability to read, write, and debug application code.

• Practical experience with CI/CD pipelines, such as Azure DevOps or GitHub Actions.

• Familiarity with Infrastructure as Code using Terraform, Bicep, or ARM templates.

• Experience in integrating or securing cloud-native data platforms like Cosmos DB, MongoDB Atlas, RedPanda, Snowflake, or similar services.

• Knowledge of Microsoft Defender for Cloud or similar CNAPP/CWPP/CSPM tools.

• Experience with Kubernetes/Azure Kubernetes Service, focusing on container orchestration and cluster security.

• Understanding of security considerations and governance related to AI-assisted development and AI agent/model platforms.

• Experience with SAST/DAST/SCA tools; Snyk is preferred, while Checkmarx, Veracode, or similar tools are also acceptable.

• Knowledge of API design, OAuth2, service principals, managed identities, and secure service-to-service integration.

• Strong understanding of Zero Trust principles and the NIST Cybersecurity Framework.

• Capacity to manage multiple concurrent workstreams in a fast-paced, highly matrixed, multi-site organization.

• Excellent interpersonal and communication skills with a collaborative and developer-friendly approach.

• Self-motivated individual with a builder’s mindset capable of writing tools and automation.

• Willingness to travel to operating locations, meetings, and conferences.

• Ability to sit for extended periods, stand, walk, bend or stoop, lift up to 25 pounds frequently and up to 50 pounds occasionally, and transport PC CPUs and monitors.

• Bachelor’s degree in Computer Science, Software Engineering, Information Systems, or equivalent experience is required.

• Minimum of 3–5 years of professional experience in software development or DevOps engineering, with at least 1–2 years focused on security.

• Direct experience with Snyk or equivalent SAST/DAST/SCA, Microsoft Defender for Cloud, and at least one cloud-native data platform is required.

• Relevant certifications are preferred, including AZ-204, AZ-500, CKA/CKAD, Snyk certifications, or Terraform Associate.


🏝️ Benefits

• Fully remote work arrangement.

• Travel to various operating locations along with business-related meetings and conferences.

• Opportunities for professional development through relevant certification programs (certifications preferred).

• Equal-opportunity employment.

People also viewed

Robots & Pencils17 hours ago

Staff Cloud Architect – L4

CA flagCanada, +1 more countryFreelanceCloud EngineerC$53 – C$74/hour
ApplyView job
Robots & Pencils17 hours ago

Senior Cloud Architect

US flagUnited States, +1 more countryFull-timeCloud Engineer$53 – $73/hour
ApplyView job
Coastal Community1 day ago

Manager, Cloud Services – Infrastructure

CA flagCanada OnlyFull-timeCloud EngineerC$106.2k – C$118k/year
ApplyView job
Enable Data1 day ago

Lead/Sr AI Engineer, Azure Data Bricks

IN flagIndia OnlyFull-timeCloud Engineer
ApplyView job
Runtalent1 day ago

Senior Salesforce Marketing Cloud Developer

BR flagBrazil OnlyFull-timeCloud Engineer
ApplyView job
Cívica1 day ago

Data Engineer – Cloud, dbt

ES flagSpain OnlyFull-timeCloud Engineer
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers