
Senior Security Engineer, Azure
Posted 16 hours ago

Posted 16 hours ago
This is a fully remote position, open to applicants in Alabama, +29 more states.
• Assist in the design and execution of a secure Azure cloud infrastructure for a significant government modernization initiative.
• Establish foundational security and compliance measures across the tenant, including identity and access management, monitoring, and policy enforcement.
• Create and implement IAM frameworks, such as RBAC and privileged access controls.
• Configure and provide guidance on Microsoft Defender for Cloud and other security tools.
• Define and enforce security policies and governance frameworks using Azure Policy.
• Set up and oversee centralized logging, monitoring, and threat detection capabilities.
• Design solutions for key management and secrets handling, such as Azure Key Vault.
• Assist in HIPAA compliance and ATO preparation activities.
• Identify security vulnerabilities and propose remediation strategies in collaboration with partner teams.
• Contribute to secure cloud architecture decisions, including networking and access methodologies.
• Support Infrastructure-as-Code and CI/CD practices for secure deployments.
• Develop security documentation and runbooks, guiding client teams in secure operational practices.
• Collaborate with cloud architects, engineers, and client stakeholders to apply security best practices in alignment with federal and state regulations.
• Proficient in Azure cloud security, including Microsoft Entra ID and Defender for Cloud.
• In-depth knowledge of Identity and Access Management (IAM), including RBAC and privileged access controls.
• Familiarity with security and compliance frameworks such as HIPAA, state security standards, and ATO procedures.
• Experience in implementing cloud security monitoring, logging, and incident detection systems.
• Knowledge of Azure Policy and governance frameworks for enforcing security protocols.
• Experience in key management and secrets handling, including Azure Key Vault.
• Understanding of secure network architecture and connectivity, including hybrid/on-prem integrations.
• Experience with Infrastructure-as-Code (IaC) and secure CI/CD pipeline methodologies.
• Ability to define and document security architecture, standards, and operational procedures.
• Strong collaboration skills to engage with engineers, architects, and stakeholders on security design and remediation efforts.
• Legal authorization to work in the United States.
• Capability to fulfill other requirements for relevant government contracts.
• Work authorization that does not necessitate visa sponsorship now or in the future.
• May be subject to a government background investigation or security clearance, depending on the contract.
• Comprehensive medical, dental, and vision insurance plans.
• Disability, life, and accidental death insurance at no charge.
• Vacation and holidays, including Juneteenth, along with floating holidays.
• 12 paid federal holidays each year in addition to regular PTO.
• Performance-based annual bonus contingent on Nava meeting its goals.
• Paid parental leave.
• Weekly meal deliveries to your home for new parents.
• Wellness program offering physical, mental, and emotional health resources and support tools.
• Virtual care with no copay through a virtual visit program, depending on available providers.
• Sabbatical leave: extended unpaid leave following continuous service.
• 401(k) matching contribution of 4% of salary.
• Remote-first, flexible work environment.
• Company laptop and assistance with home office setup.
• Monthly reimbursement for eligible home office utility expenses.
• Internal training programs and resources for professional development.
• Access to LinkedIn Learning and an annual allowance for courses, tuition, and certifications.
• Referral bonus.
• Pre-tax commuter benefits where applicable.
• Collaborative and remote-friendly team culture.
CLEAResult
CRH Talento en IT
Get handpicked remote jobs straight to your inbox weekly.