Summary
Work as a DevSecOps Engineer responsible for strengthening cloud security across applications, containers, infrastructure, networks, and data. You will design and implement security controls, automate security processes, assess vulnerabilities, monitor threats, and respond to escalated incidents.
Highlights
Security-focused engineering role covering cloud security, architecture, automation, threat protection, incident response, and defense-in-depth practices across modern infrastructure.
Description
Requirements -
Responsibilities
• Maintain and improve the security posture of the Azure platform, identifying, and remediating vulnerabilities by using a variety of security tools.
• Provide cyber security expertise in the analysis, assessment, development, and evaluation of security solutions and architectures to secure applications, operating systems, databases, and networks.
• Implement and configure security controls and policies, manage access to data, and monitor threats to ensure that apps, containers, infrastructure, and networks are protected.
• Implementing threat protection and responding to security incident escalations.
• Automate security controls, data, and processes to provide better metrics and operational support using security-as-code.
• Configure access within a cloud solution environment using the defense-in-depth principle
• Configure network security including in a hybrid context with traditional network centric controls
• Ensure data protection
• Manage operations within a cloud solution environment such as operations tasks, using cloud native tools, like Log Analytics, Azure Monitor and Azure Security Center or other monitoring tooling.
• Support our cloud engineers to implement security best-practices and enable secure development and release processes.
• Ensure compliance
Experience
• Proven experience with Azure.
• A deep understanding of networking, e.g.
IP subnetting, Network Security Groups, routing, Azure Firewall, ExpressRoute, load balancer, DNS.
• A deep understanding of configuring security policies and securing applications and data.
• Strong familiarity with cloud capabilities and products and services for Azure, e.g.
Azure Active Directory, Privileged Identity Management, VMs, Container Registry, Azure Kubernetes Services (AKS), Data Services, KeyVault.
• Strong familiarity with cloud native tools in Azure, e.g.
Azure Monitor, Log Analytics, Azure Security Center.
• Strong skills in scripting and automation, Infrastructure-as-Code (IaC) and using CI/CD concepts.
• Experience with pipeline tooling for automated deployments and applying security controls.
•Experience with Azure DevOps Pipelines is preferred but also other tools like Jenkins, Bamboo, Buildkite are a pre.
• Experience with infrastructure orchestration (IaC) tools such as Terraform and other cloud-specific infrastructure automation tools (Azure Re