Quick Overview
Job Description
A high profile Client is looking for a Microsoft Azure Cloud Security Engineer with hands-on experience of securing and engineering enterprise Azure environments, including landing zone/cloud foundation capabilities and shared platform services.
Taking security requirements and architectural principles and translating them into practical, maintainable Azure configurations.
Essential: Significant hands-on experience of Microsoft Azure engineering and cloud security. Demonstrable experience implementing security within enterprise Azure environments. Strong understanding of Azure hub-and-spoke architectures and enterprise cloud foundation/landing zone concepts. Strong practical experience of Microsoft Entra ID and Azure identity and access management. Detailed knowledge and hands-on experience of Azure RBAC, including role assignment at management group, subscription, resource group and resource level.
Strong understanding of least privilege, separation of duties and privileged access management. Experience implementing and managing Microsoft Entra Privileged Identity Management (PIM). Experience of Conditional Access, Multi-Factor Authentication and identity security controls. Experience securing service principals, managed identities and application identities. Strong understanding of Azure management groups, subscriptions and resource organisation. Experience implementing and managing Azure Policy and cloud governance controls. Experience with Microsoft Defender for Cloud.
Strong understanding of Azure network security including hub-and-spoke networking, Network Security Groups, Azure Firewall, routing and network segmentation. Understanding of Azure logging, monitoring and security event management. Experience implementing encryption, secrets and key management controls. Experience of cloud security assessment, vulnerability management and remediation. Understanding of Infrastructure as Code and automated cloud deployment approaches.
Hands-on experience securing Azure integration services, with practical knowledge of API Management (APIM) and one or more of Service Bus, Logic Apps, Azure Functions or Event Grid. Understanding of secure API and service-to-service integration patterns, including managed identities, OAuth/OIDC, private endpoints, secrets management and least-privilege access. Experience applying Secure by Design principles to cloud platform engineering, translating security requirements into preventative, detective and auditable technical controls.
Candidates should hold SC Clearance or be eligible to achieve SC Clearance HYBRID role;Commutable from Salisbury, Wiltshire, Devizes, Basingstoke, Andover, Bath, Amesbury, Swindon, Trowbridge, Chippenham, Marlborough
Similar jobs
- SR
Senior Cloud Security Engineer
NewSpencer Rose Ltd
United Kingdom🇬🇧£50k/yrHybrid3 hours agoGCPAWSSOC 2+7Technology - NI
Lead Cloud Operations Engineer
NewNICE
United Kingdom - London🇬🇧HybridYesterdayAWSActive DirectoryAnsible+5Technology - NI
Cloud Operations Engineer - Night shift 10PM to 6AM
NewNICE
United Kingdom - Remote🇬🇧RemoteYesterdayAWSActive DirectoryAnsible+8Technology - NB
Network Engineer
NewNBCUniversal
Bedford🇬🇧On-siteYesterdayTechnology - BP
Senior Azure Cloud & Security Engineer
NewBright Purple Resourcing
Glasgow🇬🇧£48k/yrHybrid13 hours agoMySQLSQLPCI DSS+5Technology - HA
Senior Cloud & AI Security Enablement Engineer
NewHackajob Ltd
South East London, London🇬🇧HybridYesterdayAdministrative