Haystack
← Back to Jobs
Technology

Azure Security Engineer // Chicago, IL

7 Kings Code LLCChicago, IL🇺🇸United StatesPosted 23 Jul 2026

Why This Role Stands Out

This hybrid Azure Security Engineer role offers a fantastic opportunity to deepen your expertise in a critical technology area, contributing directly to the security of a dynamic Microsoft Azure environment. You'll thrive here if you're a mid-senior level professional passionate about identity and access management, vulnerability remediation, and operational security within Azure. This is an excellent chance to grow your skills and make a significant impact, so we encourage you to apply!

Quick Overview

Work Type
Hybrid
Level
Mid Senior

Job Description

We have an immediate opportunity with one of our clients. Please find the below job description and if you are interested, please forward your resume to . You can also reach me at .

My apologies in advance if I have contacted you in error, please ignore this email.


Position: Azure Security Engineer
Location: Chicago, IL

Duration long-term

Job Description:

The Azure Security Engineer is responsible for securing, administering, and maintaining the RRB Microsoft Azure environment. The role focuses primarily on Azure security engineering, identity and access management, vulnerability remediation, security monitoring, patch compliance, and operational support of Azure-hosted systems.

The engineer will work directly with infrastructure, network, Windows, Linux, and application teams to maintain a secure, stable, patched, and compliant Azure environment. This position does not serve as the organizational security lead but provides hands-on security engineering and Azure operational support.

Primary Responsibilities

Azure Security Engineering

Design, implement, and maintain security controls across the Microsoft Azure environment.

Administer and secure Microsoft Entra ID.

Configure and maintain Conditional Access policies, multifactor authentication, authentication controls, and identity protection settings.

Implement and manage Role-Based Access Control and least-privilege access.

Administer Privileged Identity Management and privileged account access.

Support identity governance, access reviews, and account lifecycle management.

Configure and maintain Azure Policy, security baselines, resource locks, and governance controls.

Review Azure subscriptions, resource groups, virtual machines, storage accounts, networking components, and platform services for security risks and configuration weaknesses.

Vulnerability Management and Patching

Review vulnerability findings affecting Azure-hosted Windows and Linux systems.

Coordinate and perform remediation of identified vulnerabilities.

Plan, schedule, and execute operating system patching using Azure Update Manager and related enterprise tools.

Monitor patch status and compliance across Azure virtual machines and hybrid systems.

Validate successful patch deployment and resolve failed or incomplete patching activities.

Coordinate maintenance windows, system reboots, validation testing, and rollback activities.

Track remediation status and maintain evidence for security reviews and audits.

Support timely resolution of configuration findings, unsupported software, missing updates, and security baseline deviations.

Azure Environment Administration

Administer Azure subscriptions, resource groups, virtual machines, storage accounts, virtual networks, and supporting cloud resources.

Deploy, configure, maintain, and troubleshoot Azure virtual machines.

Support Azure networking components, including VNets, subnets, NSGs, private endpoints, DNS, load balancers, and connectivity services.

Manage Azure Backup, recovery configurations, and system restoration activities.

Monitor resource health, availability, capacity, and performance.

Support Azure Arc and hybrid infrastructure management where applicable.

Maintain cloud resource inventories, configurations, tagging, and lifecycle documentation.

Troubleshoot Azure infrastructure, access, identity, networking, and system issues.

Security Monitoring and Incident Response

Monitor security alerts through Microsoft Defender for Cloud, Microsoft Sentinel, Microsoft Defender XDR, Azure Monitor, and related tools.

Investigate security alerts, suspicious activity, access anomalies, and configuration risks.

Support incident response, containment, remediation, recovery, and post-incident documentation.

Review logs, alerts, identity events, and system activity to identify potential security issues.

Coordinate with internal security and infrastructure teams during security incidents.

Support root-cause analysis and corrective action planning.

Compliance and Documentation

Support federal cybersecurity compliance requirements, security assessments, audits, continuous monitoring, and POA&M remediation.

Maintain security procedures, patching procedures, configuration standards, operational runbooks, and technical documentation.

Provide technical evidence for vulnerability remediation, patch compliance, access reviews, and security control validation.

Support change management and configuration management processes.

Document system changes, maintenance activities, security findings, and remediation actions.

Technical Skills

Microsoft Azure

Microsoft Entra ID

Conditional Access

Role-Based Access Control

Privileged Identity Management

Azure Policy

Microsoft Defender for Cloud

Microsoft Sentinel

Microsoft Defender XDR

Azure Update Manager

Azure Virtual Machines

Azure Monitor

Log Analytics

Azure Backup

Azure Arc

Vulnerability Management

Windows and Linux Patching

Identity and Access Management

PowerShell

Azure CLI

Security Monitoring

Incident Response

Hybrid Cloud Security

Federal Security Compliance

Desired Certifications

Microsoft Certified: Azure Security Engineer Associate (AZ-500)

Microsoft Certified: Azure Administrator Associate (AZ-104)

CompTIA Security+

Microsoft Certified: Identity and Access Administrator Associate (SC-300), preferred

Microsoft Certified: Security Operations Analyst Associate (SC-200), preferred

Minimum Qualifications

4+ years of experience supporting enterprise cybersecurity or cloud security operations.

2+ years of hands-on experience securing and administering Microsoft Azure environments.

Experience with Microsoft Entra ID, Conditional Access, RBAC, PIM, and identity governance.

Experience with Azure security monitoring and vulnerability remediation.

Experience performing or coordinating Windows and Linux server patching.

Experience administering Azure virtual machines, networking, storage, monitoring, and backup services.

Experience supporting security incidents, audits, compliance reviews, and remediation activities.

Experience working in federal government or similarly regulated environments is preferred.

Strong troubleshooting, documentation, communication, and operational support skills




USA INDIA - ITALY

An E-Verify Company

Skills

Azure
DNS
PowerShell

Similar jobs