Accenture Technology powers our clients to achieve high performance. We combine business and industry insights with innovative technology to drive growth for your business. We extend our technology and business capabilities through a powerful alliance ecosystem of market leaders and innovators to provide our clients the best specialized skills and tailored solutions.
We are seeking a highly qualified professional to join our team as an Azure Cloud Infrastructure Security Engineer. As an essential part of our Cybersecurity team, you will be responsible for designing, implementing, and securing Azure cloud infrastructure, ensuring that cloud platforms, landing zones, and workloads comply with security standards and industry best practices. We are looking for a professional with strong expertise in Azure infrastructure, cloud security, networking, and governance.
Qualifications
- Bachelor's degree in Information Technology, Computer Science, Cybersecurity, Engineering, or a related field, or equivalent professional experienceE
- Experience in Azure Cloud Engineering, Cloud Security, Infrastructure, or related technical roles
- Hands‑on experience deploying, configuring, and supporting Azure IaaS and PaaS services
- Strong understanding of Azure Landing Zone concepts, including management groups, subscriptions, resource organization, governance, and access controls
- Knowledge of Azure networking, including Virtual Networks, Subnets, Network Security Groups (NSGs), Azure Firewall, Private Endpoints, Service Endpoints, Routing, and DNS
- Experience with Azure Identity and Access Management, including RBAC, Managed Identities, Privileged Access, and Least Privilege principles
- Understanding of cloud security principles, risk assessment methodologies, and security control validation
- Experience implementing security baselines, hardening standards, and governance controls across Azure environments
- Familiarity with Azure Policy and policy‑driven cloud governance
- Basic experience with Infrastructure as Code technologies such as Terraform, Bicep, or ARM Templates
- Knowledge of encryption, key management, secret management, logging, and monitoring services in Azure
- Familiarity with Cloud Security Posture Management (CSPM) solutions
- Basic understanding of CI/CD processes and associated security controls
- Strong analytical, troubleshooting, and problem‑solving skills
- Fluent in English (C1 or above), with excellent written and verbal communication skills
Responsibilities
- Support business and technology projects by providing Azure cloud security expertise throughout the project lifecycle
- Design, implement, and continuously improve secure Azure Landing Zones
- Implement and validate security controls for Azure IaaS and PaaS services
- Define, maintain, and promote Azure security baselines and hardening standards
- Support the implementation of Azure identity and access management controls, including RBAC, managed identities, and privileged access models
- Implement and troubleshoot network security controls across Azure environments
- Conduct cloud security assessments and architecture reviews to validate security requirements
- Support the design and implementation of secure Azure cloud architectures
- Identify cloud security risks and recommend mitigation strategies
- Secure CI/CD pipelines by implementing and promoting security controls across development and deployment processes
- Collaborate with Infrastructure, Networking, Platform, and DevOps teams to integrate security into cloud environments
- Monitor cloud security posture and support remediation activities generated through CSPM findings
- Configure and maintain Azure Policies to enforce governance and security requirements
- Support compliance initiatives and cloud governance programs across Azure subscriptions
- Analyze cloud configurations, identify security weaknesses, and support remediation efforts
- Stay informed of evolving cloud security threats, vulnerabilities, and industry best practices
Nice to Have
- Experience implementing or supporting Azure Landing Zones in enterprise environments
- Hands‑on experience with Azure Policy and CSPM platforms
- Experience securing Azure Virtual Machines, Storage Accounts, Databases, App Services, Containers, and AKS environments
- Knowledge of DevSecOps methodologies and secure cloud deployment practices
- Experience performing cloud security assessments and architecture reviews
- Understanding of cloud risk management, compliance frameworks, and remediation processes
- Knowledge of infrastructure automation and security validation in CI/CD pipelines
- Industry certifications such as:
- Microsoft Certified: Azure Fundamentals (AZ-900)
- Microsoft Certified: Azure Administrator Associate (AZ-104)
- Microsoft Certified: Azure Security Engineer Associate (AZ-500)
- Experience with Microsoft Defender for Cloud and Azure security monitoring tools
Additional Information
Location: Lisbon (hybrid). Minimum of 3 days per week onsite in Alfragide.
Travel: Flexibility to travel within Europe for project activities and stakeholder engagements