Azure Cloud Security Engineer - 100% Remote Job at CENSUS SA, Remote

cHoxTURWRlA5QmdqN3VkdkN4NVBBblB4UWc9PQ==
  • CENSUS SA
  • Remote

Job Description

CENSUS' bespoke cybersecurity services are driven by a talented team of Security Engineers, Consultants, and Researchers whose work goes beyond traditional security assessment. Bolstered by the technology-focused expertise of our Technical Leads and our deep industry knowledge, our Security Engineers/Architects are tasked with implementing and assessing the security design of cutting-edge technologies. 

We are seeking technically strong and detail-oriented professionals to expand our Technology & Operations team and join our ongoing mission to deliver comprehensive and top-tier cybersecurity services to our valued clients. In this role, you will leverage your experience in Microsoft Azure to develop Azure security architectures, execute design security reviews and conduct risk assessments across cloud-native, hybrid, and enterprise environments.

Key Responsibilities

  • Analyze product security requirements and apply industry-recognized methodologies to translate them into effective Azure security controls.  
  • Design and support the implementation of secure Azure cloud architectures.  
  • Audit externally developed product security designs, document missing security controls and lead efforts to analyze and implement security improvements.  
  • Conduct threat modeling, attack surface analysis and attack tree creation for applications, services, workloads and AI-enabled solutions running on Microsoft Azure. 
  • Research, review, compare and propose Microsoft technologies that meet client requirements and align with their strategic objectives.  
  • Validate CI/CD pipelines and audit deployment configurations across various hosting environments (native, hybrid, etc.).  
  • Ensure that the implemented solutions align with the product's security architecture, requirements and threat model.  
  • Perform comprehensive security posture assessments through source code auditing, functional testing, fuzz testing, and other relevant methodologies.  
  • Document and present product security risks in both technical and business contexts.  

Minimum Qualifications

  • MSc or BSc. in Electrical Engineering, Computer Science, Computer Engineering or equivalent.  
  • 3+ years of experience in IT or Cybersecurity  
  • 2+ years of experience in cloud applications or cloud security related roles – preferably Microsoft Azure. Experience can be an engineering / development position (e.g., consumer or enterprise), an assessment / consultancy role, an equivalent role in other engineering organizations or a combination of them.  
  • Proven experience in developing or auditing security solutions for cloud platforms (public, private or hybrid Cloud Service Providers).  
  • Problem solving skills, analytical thinking and willingness to learn/grow.  
  • Proficient in English.

Required   Skills   

Experience with: 

  • Designing, implementing and auditing cloud platform security architecture and engaged technologies.  
  • The Azure ecosystem and its security features (Microsoft Entra ID, Azure RBAC, Privileged Identity Management, Service Accounts, Workload / VM Identities, TLS / PKI / Certificates Management, Azure Storage, Key Vault, managed HSM, etc.).  
  • Developing & comprehending source code, discerning business logic and identifying security flaws in Web- and Cloud-relevant languages, such as Python, C#, Go, Java, Ruby, Rust, JavaScript or related frameworks.   
  • Application authentication, authorization, identity, access management, and secrets management technologies, such as OAuth, MFA, SSO, JWT, PKI, Cloud IAM, password-less authentication, HashiCorp Vault, etc.  
  • DevSecOps practices, including secure CI/CD pipeline design, automated security testing, infrastructure-as-code security, container/image scanning, dependency management, and policy-as-code enforcement e.g. Azure Policy, Bicep/Terraform.  
  • Secure systems hardening across on-premises, hybrid, and cloud environments, including operating systems, network services, virtualization platforms, Kubernetes clusters, cloud workloads, and baseline configuration standards such as CIS Benchmarks.  
  • Applying Secure SDLC principles, including security requirements definition, secure design reviews, threat modeling, secure coding guidance, code review support, vulnerability remediation and security gate integration throughout the development lifecycle.  
  • Designing and assessing secure AI agent architectures on Microsoft Azure, including Azure AI Foundry, Azure OpenAI, agent orchestration patterns, tool integration, grounding with enterprise data and secure retrieval-augmented generation (RAG).  
  • Securing AI agents with enterprise controls such as Microsoft Entra ID, scoped agent identities, least-privilege Azure RBAC, private networking, secrets protection, telemetry, evaluation, guardrails and responsible AI controls.  

Nice-to-Have   Skills   

  • Applied cryptography and cryptographic protocols, such as E2E protection, authenticated encryption, mTLS, Key Exchange / Agreement, Key Derivation, Key Wrapping and Remote Key Attestation.
  • Cloud confidential computing, virtualization, enclaves, containers, and workload attestation technologies.   
  • Identifying and mitigating security vulnerabilities on software running on cloud platforms (OWASP Web Top10 vulnerabilities, data encryption, transport layer protections, insecure configurations, secrets management, etc.).  
  • Familiarity with debugging, instrumenting and profiling software running on cloud platforms.  
  • Familiarity with enterprise security baselines, hardening automation, compliance-as-code, and configuration management tooling across both traditional infrastructure and cloud-native platforms.  
  • Familiarity with developer enablement practices, including security champions programs, secure coding training, reusable security patterns, and practical guidance for embedding security into engineering workflows.  
  • Familiarity with operationalizing AI agents in enterprise environments, including lifecycle management, monitoring, prompt and tool risk assessment, data leakage prevention, auditability, and integration with Microsoft 365 Copilot or Teams-based workflows.  
  • Familiarity with SIEM architecture and applications, including log source onboarding, data normalization, detection use-case design, correlation rules, alert triage workflows, SOAR integrations, and operational tuning for cloud, hybrid and enterprise environments.  
  • Experienced in working with international teams in other regions and time zones worldwide.  

#LI-Remote  

Job Tags

Remote job, Full time, Worldwide

Similar Jobs

AdventHealth West Florida Ambulatory Services

Gastroenterology - IBD, AdventHealth Tampa Job at AdventHealth West Florida Ambulatory Services

 ...GI practice is staffed with medical assistants, scribes, and program support staff. Requirements: Board certification in Gastroenterology (ABMS or AOA) Fellowship training in Inflammatory Bowel Disease About Tampa Bay Tampa Bay is the heart of Florida's... 

Jennmar

Floor Hand Job at Jennmar

 ...with equipment they are qualified to operate such as hand tools, power tools and heavy equipment. This position requires the ability to...  ...area* Work on the Rig floor* Operate high pressure power washing equipment* Set well equipment at well locations* Load/unload... 

Dunkin'

Cake Decorator Job at Dunkin'

Full Job Description Cake decorating experience, preferably with ice cream cakes and treats Dependable and reliable Creative and artistic abilities Proficient in use of all cake decorating tools and equipment Ability to stand on your feet for long periods ...

Crime Scene Resources, Inc

Digital Forensics Specialist Job at Crime Scene Resources, Inc

 ...Duties and Requirements Click to read more Duties Duties and Essential Functions of a Digital Forensics Specialist (AGO Senior Investigator/Analyst): This is an expert level position that is responsible for the secure collection, preservation, analysis... 

Gouin District

Financial Advisor - $100k+ Opportunity Job at Gouin District

 ...Financial Advisor Full-Time In-Office | Bachelor's Degree Required | $350k+/Year Possible | Uncapped Commission Turn Your Ambition...  ...routes into leadership for people who produce. A professional home base. A polished, in-office environment with a team that's...