Azure Cloud Infra Security Engineer

Galent

Toronto

Hybrid

CAD 90,000 - 130,000

Full time

2 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Galent in Toronto is seeking an Azure Cloud Infra Security Engineer to secure and maintain our cloud infrastructure, focusing on remediation of vulnerabilities and enforcing security across cloud services.

You will patch container images, address findings, and implement fixes through infrastructure-as-code and configuration updates using Kubernetes, Terraform, GitHub Actions, and Entra ID.

The role combines hands-on security engineering with cloud governance in a hybrid work setting.

Qualifications

  • Experience addressing security vulnerabilities and remediation planning.
  • Hands-on with cloud governance and policy enforcement.
  • Experience implementing CI/CD security in IaC environments.

Responsibilities

  • Secure and maintain cloud infrastructure by remediating vulnerabilities.
  • Resolve compliance issues and implement security improvements across cloud services and platform components.
  • Patch container images on a day-to-day basis.
  • Address security findings.
  • Investigate policy violations and apply fixes via IaC and configuration updates.

Skills

Security
Vulnerability remediation
Cloud governance
CI/CD
Identity and Access Management

Tools

Docker
Kubernetes
Terraform
GitHub Actions
Azure
Entra ID

Job description

Role: Azure Cloud Infra Security Engineer

Location: Toronto (Hybrid 3/4 days onsite)

Top 3 skills required for this role

  • Security

Job Description/ Responsibilities

Cloud Infrastructure Security Engineer:

  • In This Role, You Will Help Secure And Maintain Our Cloud Infrastructure By Remediating Vulnerabilities
  • Resolving Compliance Issues And Implementing Security Improvements Across Cloud Services And Platform Components.
  • Day-to-day Responsibilities Include Patching Container Images
  • Addressing Security Findings
  • Investigating Policy Violations And Applying Fixes Through Infrastructure-as-code And Configuration Updates.

Our core technology stack includes Kubernetes

  • Docker
  • Terraform
  • GitHub Actions

Most of the infrastructure runs on Microsoft Azure.

Must-Have Qualifications

  • Experience troubleshooting Docker container image issues and implementing remediation plans for security vulnerabilities, including determining when vendor patches, exceptions, or compensating controls are required.
  • Experience with VM security patching, including reviewing vulnerability reports, prioritizing findings, and executing remediation plans.
  • Ability to investigate and remediate cloud policy violations, such as missing encryption, tagging, configuration, or governance controls.
  • Strong hands-on coding and configuration experience, including updating Terraform modules, YAML files, and CI/CD workflows in an infrastructure-as-code environment.
  • Working knowledge of Microsoft Entra ID concepts, including identity, access, and permissions management.
  • Familiarity with Microsoft Azure cloud services and cloud security practices.

Nice-to-Have Qualifications

  • IAM and persona knowledge, with the ability to provide guidance on identity and access management initiatives.
  • Experience or familiarity with API security concepts and best practices.
  • Python experience, particularly for implementing security fixes while preserving existing application functionality.
  • Java experience, particularly for implementing security fixes while preserving existing application functionality.

We are an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy, sexual orientation, or gender identity), national origin, citizenship status, age, disability, genetic information, protected veteran status, or any other characteristic protected by applicable law. https://www.e-verify.gov/sites/default/files/everify/posters/IER_RighttoWorkPoster.pdf

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cloud Security Engineer - RBAC, IAM, SIEM
Cloud Security Engineer - RBAC, IAM, SIEM

Astra-North Infoteck Inc. ~ Conquering today’s challenges, achieving tomorrow’s vision! • Montreal (administrative region)

Hybrid
CAD 90,000 - 130,000
Cloud Security Engineer
Cloud Security Engineer

Compunnel Inc. • Montreal

Hybrid
Cloud Security Engineer
Cloud Security Engineer

Tata Consultancy Services • Toronto

On-site
CAD 90,000 - 110,000
AWS Cloud Platform Engineer
AWS Cloud Platform Engineer

Apex Systems • Toronto

Hybrid
CAD 110,000 - 140,000
Medical insurance
Dental insurance
401K with company match
+2
Senior Cloud Application Specialist
Senior Cloud Application Specialist

Randstad Canada • Toronto

On-site
CAD 120,000 - 160,000
Senior Software Engineer - Security
Senior Software Engineer - Security

Releady • Toronto

Hybrid
CAD 90,000 - 96,000
Cloud Developer
Cloud Developer

SPECTRAFORCE • Toronto

Hybrid
CAD 130,000 - 240,000
Senior Azure Cloud Platform Engineer
Senior Azure Cloud Platform Engineer

United States Digital Space LLC • Toronto

Hybrid
CAD 90,000 - 105,000
Staff Cloud Security Engineer – Global Security
Staff Cloud Security Engineer – Global Security

Jobtailor • Toronto

On-site
CAD 150,000 - 200,000
Senior Cloud Security Engineer, Information Security
Senior Cloud Security Engineer, Information Security

Peoples Group • Calgary

Hybrid
CAD 140,000 - 190,000
Hybrid work environment
Profit sharing
RRSP matching
+2