Summary
✨ AI‑Generated
A security engineering position focused on designing, building, and operating secure cloud platforms. The role emphasizes identity management, threat protection, and hands-on implementation.
Highlights
Senior security role with ownership of cloud platforms, strong compensation, and responsibility for critical environments.
Description
Azure Security Engineer – Entra ID, Sentinel, Defender | Amsterdam [€120K + car]
[Business Critical IT / Managed Services]
One team is building a multi tenant Azure platform from scratch under heavy regulation.
The other is merging two Entra ID tenants and putting a data and AI platform on Azure.
Both need an engineer who owns security rather than one who reviews it.
My client runs business critical infrastructure for large organisations, a good part of it in regulated sectors.
Every client environment belongs to one dedicated team that designs it, builds it and then runs it for years, and the technical mandate sits inside that team.
A team is a group of senior engineers, one of whom carries the tech lead role, and there is no management layer above you deciding how the platform should work.
What you’ll do
You own the security side of a live Azure platform, and you build it yourself instead of writing recommendations for someone else.
Identity is the biggest piece, so Entra ID in depth: role based access control, Conditional Access, Privileged Identity Management, and identity governance with access packages.
Defender for Cloud gives you the posture picture, Microsoft Sentinel gives you detection and you write your own KQL rather than living off the defaults.
Around that sits the platform itself: Terraform, Azure DevOps pipelines, Ansible for configuration management, PowerShell where you need it, network segmentation with private endpoints, and monitoring on Datadog and Azure Monitor.
Software supply chain and vulnerability management are wide open, and so is the question of how you keep things safe while the teams build with AI agents.
You will be in the design sessions, the deployments and the disaster recovery tests, because security touches all of it.
The first months are heavy on implementation, after that it moves with whatever the platform needs.
Your profile
6+ years in Azure infrastructure or cloud engineering, with security as your main focus in recent yearsEntra ID in depth: role based access control, Conditional Access, Privileged Identity Management, identity governanceMicrosoft Sentinel and Defender for Cloud, including writing your own KQLInfrastructure as code with Terraform, plus Azure DevOps pipelines and PowerShellAzure networking: segmentation, private endpoints, and what actually makes a resource privateSoftware supply chain and vulnerability management, or the appetite to own it hereFluent English, Dutch is a plus
What’s in it for you
Up to €120K gross per year, a lease car, and a strong package on top of that.
A permanent contract from day one.
Three days a week in the Amsterdam office, the rest from wherever you work best.
Budget for certification, training and conferences, and the room to actually use it.
Interested?
Contact me at s.vanderiet@doghouse.nl