Sr. Azure Security Engineer
Core
Architecting, implementing, and continuously improving the security posture of Microsoft Azure environments for a financial institution.
Role type
Senior Azure Security Engineer
Builds
Secure cloud estate, security architectures, and compliance frameworks for financial services
Domain
Financial Services / Cloud Security
Deliverable
production ML models | product features | dashboards & analysis | infrastructure
Required skills
Azure security services (Defender, Sentinel, Entra ID, Key Vault, Firewall, NSGs, Policy), Financial services compliance (PCI-DSS, SOX, GLBA, FFIEC), Scripting (PowerShell, Python, Bicep, Terraform), Zero-trust architecture, PKI and cryptographic standards
Preferred skills
Azure Security Engineer Associate (AZ-500), Security Operations Analyst (SC-200), CISSP, CISM, CEH, Multi-cloud security strategies, Investment banking/retail banking/insurance experience
Technologies
Microsoft Defender for Cloud, Azure Sentinel, Azure Active Directory (Entra ID), Azure Policy, Azure Blueprints, GitHub Actions, Azure DevOps, Azure Key Vault, Azure Firewall, NSGs
Responsibilities
Design and implement Azure security architectures aligned with FSI regulatory requirements; Lead Azure Security Center / Microsoft Defender for Cloud configuration and monitoring; Own and mature Azure Active Directory security posture; Architect and enforce Azure Policy and Management Group structures; Lead implementation and management of Azure Sentinel SIEM/SOAR; Drive network security design including NSGs and Azure Firewall; Perform threat modeling and security reviews; Manage secrets and keys via Azure Key Vault; Lead response to cloud-native security incidents; Collaborate with DevSecOps teams to embed security into CI/CD pipelines; Produce executive-level reporting on cloud security KPIs; Mentor junior engineers
Seniority
Senior, hands-on IC