Key Responsibilities
- Azure Security Architecture & Design: Design and implement secure Azure infrastructure solutions that follow industry best practices and security standards.
- Azure Defender Implementation: Implement and manage Azure Defender to protect Azure resources, detecting and responding to threats in real-time.
- DDoS Protection: Deploy and manage Azure DDoS Protection to safeguard applications and workloads from distributed denial-of-service attacks.
- Azure Governance: Implement Azure Policies to ensure compliance, enforce governance standards, and manage resource costs effectively across the Azure environment.
- Azure Sentinel for SIEM & SOAR: Set up and configure Azure Sentinel for Security Information and Event Management (SIEM) and Security Orchestration, Automation, and Response (SOAR) capabilities to improve threat detection and incident response.
- Security Monitoring & Incident Response: Utilize tools like Azure Security Center and Azure Sentinel to monitor and respond to security incidents, ensuring continuous improvement in security posture.
- Compliance & Risk Management: Ensure cloud environments meet regulatory compliance standards such as GDPR, HIPAA, and PCI DSS by leveraging security controls and monitoring capabilities.
- Collaboration with Security Teams: Work closely with cross-functional teams to align security architecture with business objectives and security requirements.
Required Skills & Qualifications
- Minimum of 6 years of experience in Azure cloud infrastructure with a focus on security.
- Expertise in Azure Defender for threat protection, security management, and compliance.
- Strong experience in DDoS Protection configuration and management in Azure.
- In-depth knowledge of Azure Policies and Azure Governance for compliance and resource management.
- Hands-on experience with Azure Sentinel for SIEM and SOAR, including setting up alerts, dashboards, and automated response playbooks.
- Proficiency in Azure Security Center and integrating it with other Azure security services.
- Experience with cloud security frameworks and best practices for securing cloud-native environments.
- Understanding of network security, including NSGs, Application Gateway WAF, and VPNs.
- Familiarity with Azure Identity and Access Management (IAM), Azure Active Directory (AAD), RBAC, and Conditional Access.
- Scripting skills in PowerShell, Bash, or similar tools for automation and incident response tasks.
Preferred Qualifications
- Azure Certifications (e.g., Microsoft Certified: Azure Security Engineer Associate, Azure Solutions Architect Expert).
- Experience with additional security solutions like Azure Key Vault, Azure Firewall, and Azure Bastion.
- Familiarity with Security Operations Center (SOC) processes and integration with cloud-native tools.
- Knowledge of cloud compliance standards (e.g., SOC 2, ISO 27001, NIST) and how to implement them within Azure.
- Experience in DevSecOps practices and integrating security into CI/CD pipelines.
- Be aware of phishing scams involving fraudulent career recruiting and fictitious job postings; visit our Phishing Scams page to learn more.