Hiring.Camp

Azure Cloud Security Engineer - 100% Remote

CENSUS SA

·

Today

Location
worldwide
Workplace
Remote
Type
Full-time
Department
Engineering
Experience
3+ years
Education
Master
Source
Breezy HR

Description

CENSUS’ bespoke cybersecurity services are driven by a talented team of Security Engineers, Consultants, and Researchers whose work goes beyond traditional security assessment. Bolstered by the technology-focused expertise of our Technical Leads and our deep industry knowledge, our Security Engineers/Architects are tasked with implementing and assessing the security design of cutting-edge technologies.

We are seeking technically strong and detail-oriented professionals to expand our Technology & Operations team and join our ongoing mission to deliver comprehensive and top-tier cybersecurity services to our valued clients. In this role, you will leverage your experience in Microsoft Azure to develop Azure security architectures, execute design security reviews and conduct risk assessments across cloud-native, hybrid, and enterprise environments.

Key Responsibilities

  • Analyze product security requirements and apply industry-recognized methodologies to translate them into effective Azure security controls. 
  • Design and support the implementation of secure Azure cloud architectures. 
  • Audit externally developed product security designs, document missing security controls and lead efforts to analyze and implement security improvements. 
  • Conduct threat modeling, attack surface analysis and attack tree creation for applications, services, workloads and AI-enabled solutions running on Microsoft Azure.
  • Research, review, compare and propose Microsoft technologies that meet client requirements and align with their strategic objectives. 
  • Validate CI/CD pipelines and audit deployment configurations across various hosting environments (native, hybrid, etc.). 
  • Ensure that the implemented solutions align with the product’s security architecture, requirements and threat model. 
  • Perform comprehensive security posture assessments through source code auditing, functional testing, fuzz testing, and other relevant methodologies. 
  • Document and present product security risks in both technical and business contexts. 

Minimum Qualifications

  • MSc or BSc. in Electrical Engineering, Computer Science, Computer Engineering or equivalent. 
  • 3+ years of experience in IT or Cybersecurity 
  • 2+ years of experience in cloud applications or cloud security related roles – preferably Microsoft Azure. Experience can be an engineering / development position (e.g., consumer or enterprise), an assessment / consultancy role, an equivalent role in other engineering organizations or a combination of them. 
  • Proven experience in developing or auditing security solutions for cloud platforms (public, private or hybrid Cloud Service Providers). 
  • Problem solving skills, analytical thinking and willingness to learn/grow. 
  • Proficient in English.

Required Skills 

Experience with:

  • Designing, implementing and auditing cloud platform security architecture and engaged technologies. 
  • The Azure ecosystem and its security features (Microsoft Entra ID, Azure RBAC, Privileged Identity Management, Service Accounts, Workload / VM Identities, TLS / PKI / Certificates Management, Azure Storage, Key Vault, managed HSM, etc.). 
  • Developing & comprehending source code, discerning business logic and identifying security flaws in Web- and Cloud-relevant languages, such as Python, C#, Go, Java, Ruby, Rust, JavaScript or related frameworks.  
  • Application authentication, authorization, identity, access management, and secrets management technologies, such as OAuth, MFA, SSO, JWT, PKI, Cloud IAM, password-less authentication, HashiCorp Vault, etc. 
  • DevSecOps practices, including secure CI/CD pipeline design, automated security testing, infrastructure-as-code security, container/image scanning, dependency management, and policy-as-code enforcement e.g. Azure Policy, Bicep/Terraform. 
  • Secure systems hardening across on-premises, hybrid, and cloud environments, including operating systems, network services, virtualization platforms, Kubernetes clusters, cloud workloads, and baseline configuration standards such as CIS Benchmarks. 
  • Applying Secure SDLC principles, including security requirements definition, secure design reviews, threat modeling, secure coding guidance, code review support, vulnerability remediation and security gate integration throughout the development lifecycle. 
  • Designing and assessing secure AI agent architectures on Microsoft Azure, including Azure AI Foundry, Azure OpenAI, agent orchestration patterns, tool integration, grounding with enterprise data and secure retrieval-augmented generation (RAG). 
  • Securing AI agents with enterprise controls such as Microsoft Entra ID, scoped agent identities, least-privilege Azure RBAC, private networking, secrets protection, telemetry, evaluation, guardrails and responsible AI controls. 

Nice-to-Have Skills 

  • Applied cryptography and cryptographic protocols, such as E2E protection, authenticated encryption, mTLS, Key Exchange / Agreement, Key Derivation, Key Wrapping and Remote Key Attestation.
  • Cloud confidential computing, virtualization, enclaves, containers, and workload attestation technologies.  
  • Identifying and mitigating security vulnerabilities on software running on cloud platforms (OWASP Web Top10 vulnerabilities, data encryption, transport layer protections, insecure configurations, secrets management, etc.). 
  • Familiarity with debugging, instrumenting and profiling software running on cloud platforms. 
  • Familiarity with enterprise security baselines, hardening automation, compliance-as-code, and configuration management tooling across both traditional infrastructure and cloud-native platforms. 
  • Familiarity with developer enablement practices, including security champions programs, secure coding training, reusable security patterns, and practical guidance for embedding security into engineering workflows. 
  • Familiarity with operationalizing AI agents in enterprise environments, including lifecycle management, monitoring, prompt and tool risk assessment, data leakage prevention, auditability, and integration with Microsoft 365 Copilot or Teams-based workflows. 
  • Familiarity with SIEM architecture and applications, including log source onboarding, data normalization, detection use-case design, correlation rules, alert triage workflows, SOAR integrations, and operational tuning for cloud, hybrid and enterprise environments. 
  • Experienced in working with international teams in other regions and time zones worldwide. 

#LI-Remote

Skills

PythonJavaScriptJavaRustRubyAzureKubernetesTerraformCI/CDCybersecuritySIEMOAuthComplianceGo

Similar Jobs

12

Azure Cloud Security Engineer

apeirum · Spain · Hybrid

4 weeks ago

Senior .Net Developer - API + Security + Azure Cloud

UPS · IN - TDC 1 (IN110), India

1 month ago

Azure Cloud Security Support Engineer

Accenture · Sydney, International House, 3 Sussex St, Australia +2

2 months ago

Azure Cloud Security Architect

Devoteam · Machelen, Vlaams Gewest, Belgium · Hybrid

6 months ago

Azure Cloud Security Engineer

Devoteam · Machelen, Vlaams Gewest, Belgium · Hybrid

6 months ago

Cloud Security Engineer - Azure Defender/Prisma Cloud/Cortex Cloud

PNC Bank · Two PNC Plaza (PA374), United States of America +4

3 days ago

Cloud Security Architect - Azure - Italian

Cnx · Italy - Work at Home · Hybrid

2 weeks ago

Lead Cloud Security Engineer - Azure

Depository Trust Company · Tampa, FL, United States, US

2 months ago

Azure Cloud Consultant - Security

TEC Partners Limited · London

5 months ago

Senior Cloud Security Engineer (Azure)

3Cloud · Remote - Philippines · Remote

11 months ago

Azure Cloud and Infrastructure Security Engineer

Accenture · Sydney, International House, 3 Sussex St, Australia +2

1 month ago

Cloud Architect – Security & Guardrails (AWS/Azure) (She/ He/ They)

Capco · Poland - Warsaw +1

3 weeks ago