Summary
✨ AI‑Generated
A cloud security engineering role responsible for protecting and improving enterprise cloud platforms. The position involves vulnerability remediation, container security, automation, and infrastructure-as-code practices.
Highlights
Hybrid role focused on securing modern cloud infrastructure through automation, vulnerability management, and infrastructure improvements.
Description
Role: Azure Cloud Infra Security Engineer
Location: Toronto (Hybrid 3/4 days onsite)
Top 3 skills required for this role
Azure cloudSecurityRemediating vulnerabilities
Job Description/ Responsibilities
Cloud Infrastructure Security Engineer:
In This Role, You Will Help Secure And Maintain Our Cloud Infrastructure By Remediating VulnerabilitiesResolving Compliance Issues And Implementing Security Improvements Across Cloud Services And Platform Components.Day-to-day Responsibilities Include Patching Container ImagesAddressing Security FindingsInvestigating Policy Violations And Applying Fixes Through Infrastructure-as-code And Configuration Updates.
Our core technology stack includes Kubernetes
App Service PremiumDockerTerraformGitHub ActionsMost of the infrastructure runs on Microsoft Azure.
Must-Have Qualifications
Experience troubleshooting Docker container image issues and implementing remediation plans for security vulnerabilities, including determining when vendor patches, exceptions, or compensating controls are required.Experience with VM security patching, including reviewing vulnerability reports, prioritizing findings, and executing remediation plans.Ability to investigate and remediate cloud policy violations, such as missing encryption, tagging, configuration, or governance controls.Strong hands-on coding and configuration experience, including updating Terraform modules, YAML files, and CI/CD workflows in an infrastructure-as-code environment.Working knowledge of Microsoft Entra ID concepts, including identity, access, and permissions management.Familiarity with Microsoft Azure cloud services and cloud security practices.
Nice-to-Have Qualifications
IAM and persona knowledge, with the ability to provide guidance on identity and access management initiatives.Experience or familiarity with API security concepts and best practices.Python experience, particularly for implementing security fixes while preserving existing application functionality.Java experience, particularly for implementing security fixes while preserving existing application functionality.
We are an Equal Opportunity Employer.
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy, sexual orientation, or gender identity), national origin, citizenship status, age, disability, genetic information, protected veteran status, or any other characteristic protected by applicable law.
https://www.e-verify.gov/sites/default/files/everify/posters/IER_RighttoWorkPoster.pdf