Azure Security Engineer

Zeektek

Sacramento (CA)

On-site

USD 140,000 - 170,000

Full time

1 hour ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Zeektek is seeking an Azure Security Engineer to secure an enterprise Azure environment and guide security across migrations from on‑prem. You will implement security controls, drive threat modeling, and partner with IT and engineering to embed security in system design.

Must have hands-on experience with Entra ID, Intune, and Defender for Cloud/Azure Security Center, plus strong skills in RBAC and Conditional Access.

Qualifications

  • 7+ years of progressive information security experience with Azure.
  • Hands-on experience securing Azure cloud environments and enterprise infrastructure.
  • Strong experience with Entra ID, Intune, and Defender for Cloud/Azure Security Center.
  • Strong experience with cloud security controls, identity and access management (RBAC, Conditional Access).
  • Experience with vulnerability management and incident response.
  • Ability to translate risk into actionable recommendations and collaborate across IT teams.

Responsibilities

  • Designs, implements, and manages security controls across the Azure cloud environment.
  • Supports cloud migration and deployment processes with security embedded in architecture.
  • Maintains cloud security baselines, guardrails, and configuration standards.
  • Configures Microsoft Defender for Cloud and Azure Security Center to monitor posture and alerts.
  • Acts as cloud security SME, supporting design reviews and threat modeling.
  • Partners with IT, security, and business teams to embed security into system design.

Skills

Azure Security
Entra ID
Intune
Microsoft Defender for Cloud
Azure Security Center
RBAC
Conditional Access
PowerShell
Vulnerability management
Incident response

Tools

PowerShell

Job description

We have a permanent direct hire role for an Azure Security Engineer with Microsoft Defender, Entra and intune experience.

  • Designs, implements, and manages security controls across the organization's Azure cloud environment, ensuring secure configurations, access controls, and compliance with company standards.
  • Supports the organization's transition from on-prem infrastructure to Azure by embedding security into architecture, migration, and deployment processes.
  • Establishes and maintains cloud security baselines, guardrails, and configuration standards (identity, networking, and data protection).
  • Configures and manages Microsoft Defender for Cloud and Azure Security Center to monitor posture, secure score, and alerts.
  • Acts as the organization's cloud security SME, supporting IT and engineering teams through design reviews, threat modeling, and security validation.
  • Partners with infrastructure, application, and data teams to integrate security into system design and project delivery.
  • Identifies and remediates security gaps in Azure and hybrid architectures.
  • Implements and manages secure identity and access controls using Entra ID and related technologies (RBAC, Conditional Access, least privilege principles).
  • Supports the design and implementation of identity strategies across cloud and on-prem environments.
  • Manages and enhances device compliance and endpoint security using Microsoft Intune, including compliance policies and conditional access enforcement.
  • Develops and enhances threat detection capabilities across Azure and enterprise environments using Microsoft-native telemetry.
  • Participates in incident response activities, including investigation, containment, and post-incident reviews.
  • Builds and maintains automation workflows for security monitoring, alerting, and response.
  • Improves security processes through scripting and integration with existing tools and platforms.
  • Develops and tracks KPIs and metrics to measure cloud security posture and program effectiveness.
  • Supports security audits and helps ensure compliance with applicable regulatory frameworks.
  • Develops and maintains cloud-specific security standards, procedures, and documentation.
  • Contributes to vulnerability management and risk remediation efforts across cloud and enterprise systems.
  • Works closely with IT, security, and business stakeholders to align security initiatives with organizational goals.
  • Serves as the organization's primary point of contact for cloud security given the company's size, including managing relevant vendor relationships (a plus, not required).
  • Provides guidance on emerging cloud threats, risks, and best practices.
  • Supports disaster recovery and business continuity planning for cloud systems.
  • Other duties as assigned.

Qualifications

  • 7+ years of progressive experience in information security or systems engineering, with hands-on experience securing Azure cloud environments and enterprise infrastructure.
  • Strong technical experience with Entra ID, Intune, and Microsoft Defender for Cloud / Azure Security Center.
  • Strong technical experience with cloud security controls, identity and access management (RBAC, Conditional Access), endpoint security, and device compliance.
  • Proven ability to collaborate across IT operations, engineering, and business teams to embed security into system design, implementation, and ongoing operations.
  • Experience with vulnerability management, incident response, and threat detection.
  • Strong analytical and problem-solving skills with the ability to translate risk into actionable recommendations.
  • Experience supporting cloud migrations or transformation initiatives.
  • Experience with scripting or automation (PowerShell preferred).
  • Leadership experience or vendor relationship management is a plus, given this role acts as the primary cloud security resource for the company.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Azure Security Engineer - Entra/Intune/Defender Permanent Job Hybrid 3 days a week pn site in Sacramento 2 days a week remote
Azure Security Engineer - Entra/Intune/Defender Permanent Job Hybrid 3 days a week pn site in Sacramento 2 days a week remote

Zeektek • Sacramento (CA)

Hybrid
USD 150,000 - 190,000
Senior Cloud Security Engineer
Senior Cloud Security Engineer

Heath • Houston (TX)

Hybrid
USD 120,000 - 150,000
Medical, Dental, Vision Benefits
401k
PTO
+1
Systems Security Administrator
Systems Security Administrator

Confidential Company • Dallas (TX)

On-site
USD 80,000 - 100,000
Azure Security Engineer - 173594
Azure Security Engineer - 173594

Piper Companies • Raleigh (NC)

Hybrid
USD 120,000 - 165,000
Medical coverage
Dental coverage
Vision coverage
+1
Azure Application Security Engineer
Azure Application Security Engineer

Tech Talent Link, Inc • Portland (OR)

On-site
USD 100,000 - 130,000
Azure Cloud Engineer – Cybersecurity
Azure Cloud Engineer – Cybersecurity

EdgeByte Solutions • Northern (KY)

Hybrid
USD 75,000 - 150,000
Azure Cloud Security
Azure Cloud Security

WONESE • Atlanta (GA)

On-site
USD 82,656 - 117,096
Cloud Security Engineer
Cloud Security Engineer

Greenberg Traurig, LLP • Charlotte (NC)

Hybrid
USD 100,000 - 130,000
Azure Enterprise Architect/Engineer
Azure Enterprise Architect/Engineer

Prominent • Berkeley Heights (NJ)

Hybrid
Mid-Level Cybersecurity Engineer – Azure & AWS Cloud
Mid-Level Cybersecurity Engineer – Azure & AWS Cloud

Isccorp Us • Falls Church (VA)

On-site
USD 90,000 - 115,000