Get more replies from employers
Send a job-specific resume in minutes.
Axos Business Center! is seeking a Senior Azure Security Engineer to join our Cloud and AI Security team.
You will architect, implement, and continuously improve the security posture of our Microsoft Azure environments, partnering with infrastructure, development, risk, and compliance teams to bake security into design. You will lead Defender for Cloud, Sentinel, Entra ID, Key Vault, and policy governance, drive network security with NSGs and Firewalls, and guide incident response.
Imagine a world where banking is not just a transaction but a transformative experience. Welcome to Axos Business Center! We're on a mission to redefine the financial landscape with innovation, creativity, and customer-centric solutions at the core of everything we do. #Banking Evolved.
Ready to dive into a new chapter in your career journey and make your mark this year? We need visionary minds like yours! Join our team and become part of a dynamic force that’s reshaping how people interact with their finances.
Your next big opportunity is just a click away!
We are seeking a Senior Azure Security Engineer to join our Cloud and AI Security team within one of the nation's leading financial institutions. In this role, you will be the subject matter expert responsible for architecting, implementing, and continuously improving the security posture of our Microsoft Azure environments. You will partner closely with infrastructure, application development, risk, and compliance teams to embed security-by-design principles across our cloud estate.
Design and implement Azure security architectures aligned with FSI regulatory requirements including SOX, PCI-DSS, GLBA, and FFIEC guidelines
Lead Azure Security Center / Microsoft Defender for Cloud configuration, policy management, and continuous monitoring
Own and mature Azure Active Directory (Entra ID) security posture — PIM, Conditional Access, MFA, identity governance, and privileged identity management
Architect and enforce Azure Policy, Blueprints, and Management Group structures to ensure least-privilege and compliant deployments
Lead implementation and management of Azure Sentinel SIEM/SOAR — develop custom detection rules, playbooks, and automation workflows
Drive network security design: NSGs, Azure Firewall, DDoS protection, Private Endpoints, and hub-spoke architectures
Perform threat modeling, risk assessments, and security reviews for new Azure workloads and platform changes
Manage secrets, keys, and certificate lifecycle via Azure Key Vault; ensure HSM integration for regulated workloads
Lead response to cloud-native security incidents, conducting root cause analysis and driving remediation
Collaborate with DevSecOps teams to embed security into CI/CD pipelines (GitHub Actions, Azure DevOps)
Produce executive-level reporting on cloud security KPIs, control effectiveness, and risk posture
Mentor junior engineers and contribute to team capability building and knowledge sharing
7+ years of information security experience, with 4+ years focused on Azure cloud security in a regulated industry
Deep technical expertise across core Azure security services: Defender for Cloud, Sentinel, Entra ID, Key Vault, Firewall, NSGs, Policy
Strong understanding of financial services compliance frameworks: PCI-DSS, SOX, GLBA, FFIEC, NIST CSF
Proficiency in scripting and automation: PowerShell, Python, Bicep/ARM templates, Terraform
Experience with zero-trust architecture implementation in enterprise Azure environments
Solid understanding of PKI, cryptographic standards, and secrets management
Bachelor's degree in Computer Science, Information Security, or equivalent practical experience
Microsoft Certified: Azure Security Engineer Associate (AZ-500) — required
Microsoft Certified: Security Operations Analyst (SC-200) — strongly preferred
Additional certifications: CISSP, CISM, CCSP, CEH
Experience with DORA, MAS TRM, or OCC guidelines
Familiarity with multi-cloud security strategies and cross-cloud SIEM integrations
Prior experience in investment banking, retail banking, or insurance environments