Key Skills: Cloud Security, Rbac, VNETS, Azure, Azure Firewall, Network Security
Roles and Responsibilities:
Cloud Platform Support
- Assist in implementing and maintaining security configurations across Azure services and Landing Zones.
- Support platform security components including Azure Firewall, NSGs, ASGs, Private Endpoints, VNETs, routing, managed identities, and Key Vault.
- Contribute to platform hardening activities and secure-by-design reviews.
Security Monitoring & Incident Support
- Monitor and triage alerts from Defender for Cloud and Sentinel, escalating when necessary.
- Assist senior engineers in investigating platform-level security events.
- Support the improvement of detection rules, dashboards, and reporting.
Identity & Access Controls
- Support platform access governance using Azure RBAC and PIM.
- Assist with access reviews, entitlement hygiene, and platform-level identity audits.
- Help enforce identity requirements such as MFA and Conditional Access.
Governance & Compliance
- Help apply and monitor Azure Policy, tagging standards, and platform guardrails.
- Assist with compliance checks against frameworks like CIS Benchmarks and ISO 27001.
- Maintain platform documentation, configuration baselines, and audit evidence.
Automation & Scripting
- Contribute to basic automation tasks using PowerShell, Azure CLI, Bicep, or Terraform.
- Support continuous improvement of platform security tooling and automated checks.
Collaboration & Continuous Learning
- Work closely with cloud engineers, architects, and Cyber Ops teams.
- Participate in platform security reviews, change boards, and engineering stand-ups.
- Stay updated on new Azure security features and evolving cloud threats.
- Engage in structured learning paths and certification development.
Skills Required:
- Foundational experience with Azure services (subscriptions, resource groups, VNETs, RBAC, monitoring)
- Basic understanding of cloud security principles (least privilege, network security, encryption, threat detection)
- Exposure to platform security tools: Azure Firewall, NSGs, ASGs, Defender for Cloud, Sentinel, Key Vault, PIM
- Basic scripting or automation knowledge (PowerShell, Azure CLI, Bicep, Terraform)
- Familiarity with compliance frameworks (CIS, ISO 27001, NIST)
- Strong communication and documentation skills
- Willingness to learn and pursue Azure certifications (AZ-900, SC-900, AZ-104, AZ-500)
Education: Bachelor's degree in IT, Computer Science, Cybersecurity, or related field, OR equivalent bootcamp/training experience