Cloud Security Engineer

Brown Advisory Incorporated

Baltimore (MD)

On-site

USD 140,000 - 150,000

Full time

13 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical
Dental
Vision
Wellness program participation
Financial wellness program
Gym membership discounts
401(k)

Job summary

Brown Advisory in Baltimore, MD is seeking a Cloud Security Engineer focused on secure Azure management, application hosting, and cloud control maturity. You’ll own day-to-day security engineering for Azure environments and work with Infrastructure and Engineering teams to implement baselines and guardrails.

The role covers SaaS security configuration for Salesforce, Box, and Microsoft 365; DevSecOps support; SIEM integration; risk reporting to security and technology leadership.

Qualifications

  • Bachelor's degree or equivalent in cyber security, CS, engineering, or information systems.
  • 4–8 years of information security, cloud security, or related experience.
  • Hands-on experience securing Microsoft Azure environments; regulated industries preferred.
  • Ability to work independently in a lean team with cross-functional coordination.

Responsibilities

  • Own day-to-day security engineering for Azure environments, including baselines, logging, monitoring, and remediation.
  • Partner with Infrastructure and Engineering to implement baselines, secure networking, key management, and workload guardrails.
  • Support Defender for Cloud, Azure Policy, Entra-adjacent controls, and related capabilities.
  • Review hosted applications and third-party cloud solutions for secure architecture and data protection.
  • Configure security controls for SaaS platforms (Salesforce, Box, Microsoft 365).
  • Coordinate DevSecOps testing, vulnerability triage, and remediation guidance.
  • Integrate telemetry into SIEM and support incident response handoff.
  • Develop reporting on cloud security posture and remediation progress.

Skills

Azure security
Cloud security
SIEM integration
Vulnerability triage
Secure SDLC
Communication skills
Team collaboration

Education

Bachelor's degree in cyber security, CS, engineering, information systems, or related field

Tools

Azure Defender for Cloud
Azure Policy
Entra ID
Microsoft 365 security
SIEM tooling

Job description

Company Overview

Every firm has a culture – the values, beliefs, methodology, attitudes and standards that reflect an organization’s DNA. But the truly inspiring firms – the game-changers, the industry leaders and the disruptors – have cultures that propel them to innovate and stand out. At Brown Advisory, we aim to be one of those inspired firms. Over the years, we have purposefully built and nurtured our client-first culture. Brown Advisory is an independent investment management and strategic advisory firm committed to delivering a combination of first-class performance, strategic advice and the highest level of client service. The firm’s clients—including individuals, families, family offices, endowments, foundations, charities, institutions, consultants, and financial intermediaries—are served by over 1,000 colleagues worldwide, all of whom are equity owners of the firm.

Blended Role Coverage

Primary emphasis: Cloud Security Engineer with a specific focus on secure Azure management, application hosting, and cloud control maturity. Blended coverage: Application Security / DevSecOps Analyst, SaaS security administration, cloud tool operations, SIEM integration support, and third-party application-development security guidance.

Duties and Responsibilities
  • Own day-to-day security engineering for Azure environments, including secure configuration, cloud control hardening, logging, monitoring, and remediation follow-through.
  • Partner with Infrastructure and Engineering teams to implement Azure security baselines, secure networking patterns, key management practices, storage protections, and workload guardrails.
  • Support Microsoft Defender for Cloud, Azure Policy, Entra-adjacent cloud controls, conditional access inputs, and other Microsoft security capabilities as part of the broader cloud security stack.
  • Review Brown Advisory-hosted applications and third-party-developed cloud solutions for secure architecture, authentication, authorization, logging, data protection, and operational readiness.
  • Configure and improve security controls for SaaS platforms such as Salesforce, Box, Microsoft 365, and other business-critical cloud applications.
  • Support limited DevSecOps activities, including static and dynamic application-security testing coordination, vulnerability triage, and practical remediation guidance for internal and third-party development teams.
  • Integrate cloud, SaaS, and application telemetry into SIEM and detection workflows, and partner with Security Operations on actionable alerting and response procedures.
  • Maintain sanctioned application lists, cloud security standards, exception records, and implementation documentation in partnership with GRC and technology owners.
  • Execute immediate remediation actions where appropriate and coordinate more complex fixes across platform, application, and vendor teams.
  • Develop clear reporting on cloud security posture, open risks, remediation progress, and control maturity for security and technology leadership.
Preferred Qualifications
  • Bachelor's degree in cyber security, computer science, engineering, information systems, or a relevant field, or equivalent professional experience.
  • 4-8 years of experience in information security, cloud security, infrastructure security, application security, or a related technical discipline.
  • Hands-on experience securing Microsoft Azure environments; financial services or other regulated-industry experience preferred.
  • Ability to work independently in a lean team while coordinating across technology, vendor, risk, and business stakeholders.
  • Microsoft Azure security certifications, CISSP, CCSP, or other relevant professional designations preferred.
Technical Skills
  • Azure security architecture, Defender for Cloud, Azure Policy, logging, monitoring, and secure configuration practices.
  • Microsoft 365 security and compliance concepts, including integration points with Entra ID, Purview, Defender, and conditional access.
  • SaaS security administration for platforms such as Salesforce, Box, and other enterprise cloud applications.
  • Static and dynamic application-security testing concepts, vulnerability triage, and secure SDLC practices.
  • SIEM integration patterns, alert tuning, security telemetry, and operational handoff to incident response teams.
  • Strong written communication skills for standards, procedures, exception documentation, and leadership reporting.
  • Demonstrates curiosity and a continuous improvement mindset by identifying opportunities to enhance processes, improve efficiency, and thoughtfully leverage new technologies and tools, including AI-enabled productivity solutions.
Personal Attributes
  • Take ownership and move initiatives forward without constant oversight.
  • Balance technical depth, process discipline, and sound business judgment.
  • Approach risk management pragmatically rather than theoretically.
  • Thrive in collaborative, high-accountability environments.
  • Communicate clearly with technical and non-technical colleagues.
  • Bring an entrepreneurial mindset to building and improving security capabilities.

Applicants must be authorized to work in the United States without the need for current or future employer-sponsored work authorization (e.g., H-1B , O-1, F-1 (OPT), TN, or any other non-immigrant visa classifications that require employer support or sponsorship).

MD Salary: $140-$150k. Commensurate with experience and location. Does not include bonus or long term incentive eligibility (if applicable).

Benefits
  • Medical
  • Dental
  • Vision
  • Wellness program participation incentive
  • Financial wellness program
  • Fitness event fee reimbursement
  • Gym membership discounts
  • Colleague Assistance Program
  • Telemedicine Program (for those enrolled in Medical)
  • Adoption Benefits
  • Daycare late pick-up fee reimbursement
  • Basic Life & Accidental Death & Dismemberment Insurance
  • Voluntary Life & Accidental Death & Dismemberment Insurance
  • Short Term Disability
  • Paid parental leave
  • Group Long Term Disability
  • Pet Insurance
  • 401(k) (50% employer match up to IRS limit, 4 year vesting)

Brown Advisory is an Equal Employment Opportunity Employer.

Brown Advisory is an independent investment management and strategic advisory firm committed to delivering a combination of first-class performance, strategic advice and the highest level of client service. The firm’s clients—including individuals, families, family offices, endowments, foundations, charities, institutions, consultants, and financial intermediaries—are served by over 1,000 colleagues worldwide, all of whom are equity owners of the firm.

Brown Advisory is an independent investment management and strategic advisory firm committed to delivering a combination of first-class performance, strategic advice and the highest level of client service. The firm’s clients—including individuals, families, family offices, endowments, foundations, charities, institutions, consultants, and financial intermediaries—are served by over 1,000 colleagues worldwide, all of whom are equity owners of the firm.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cloud Security Engineer
Cloud Security Engineer

Brown Advisory • Washington

On-site
USD 154,000 - 165,000
Medical
Dental
Vision
+3
Cloud Security Engineer
Cloud Security Engineer

Brown Advisory • Baltimore (MD)

On-site
USD 140,000 - 150,000
Medical
Dental
Vision
+14
Identity and Access Security Engineer
Identity and Access Security Engineer

Brown Advisory Incorporated • Baltimore (MD)

On-site
USD 110,000 - 135,000
Medical
Dental
Vision
+1
Enterprise Software Developer
Enterprise Software Developer

Brown Advisory Incorporated • Baltimore (MD)

On-site
USD 110,000 - 130,000
Medical
Dental
Vision
+2
Enterprise Network and Cloud Engineer
Enterprise Network and Cloud Engineer

Brown Advisory Incorporated • Baltimore (MD)

Hybrid
USD 105,000 - 130,000
Medical
Dental
Vision
+4
Cyber GRC Specialist
Cyber GRC Specialist

Brown Advisory • Baltimore (MD)

On-site
USD 95,000 - 125,000
Medical
Dental
Vision
+11
Cyber GRC Specialist
Cyber GRC Specialist

Brown Advisory • Washington

On-site
USD 105,000 - 127,000
Medical
Dental
Vision
+1
Cloud Security Engineer
Cloud Security Engineer

Greenberg Traurig, LLP • Charlotte (NC)

Hybrid
USD 100,000 - 130,000
Azure Cloud Security Engineer — DevSecOps & SaaS Security
Azure Cloud Security Engineer — DevSecOps & SaaS Security

Brown Advisory • Baltimore (MD)

On-site
USD 140,000 - 150,000
Medical
Dental
Vision
+14
Security Engineering Manager
Security Engineering Manager

CFC- Chatham Financial Corporation • Kennett Square

On-site
USD 155,000 - 180,000
Health insurance
Life and disability insurance
401(k)
+2