A complete application in a minute — tailored resume and cover letter, ready to send.
Nava Public Benefit Corp. is seeking a Security Engineer to design and implement a secure Azure cloud environment for a large government modernization effort.
This role focuses on identity management, monitoring, policy enforcement, and secure cloud architecture in collaboration with cloud architects, engineers, and client stakeholders. Responsibilities include implementing IAM models, Defender for Cloud, Azure Policy guardrails, centralized logging, and secure CI/CD practices.
Nava is a consultancy and public benefit corporation working to make government services simple and effective. Since 2015, federal, state, and local agencies have trusted Nava to help solve highly scrutinized technology modernization challenges.
As a client services company, we guide agencies constrained by legacy systems to a future with sharp user experiences built on secure, reliable, fault-tolerant cloud infrastructure. We bill for our time, offering our expertise and problem-solving approach to help our government partners enhance their digital products and services. People are at the heart of our work, from members of the public who rely on benefit programs to government agency staff. Through human-centered design and modern engineering best practices, we help our government partners understand user needs and deliver on their missions more effectively. This focus gives everyone at Nava the opportunity to do work that is meaningful, impactful, and deeply connected to public good.
This role is open for multiple levels and titles. Final title/compensation will be determined by how your interview weighs against our core competencies during your interview cycle
We are seeking a Security Engineer to support the design and implementation of a secure Azure cloud environment for a large-scale government modernization effort. This role will focus on establishing strong security and compliance foundations, including identity and access management, monitoring, and policy enforcement across the tenant. The Security Engineer will partner closely with cloud architects, engineers, and client stakeholders to define and implement security best practices aligned with federal and state requirements.
Experience with Azure cloud security, including Microsoft Entra ID and Defender for Cloud
Strong knowledge of Identity and Access Management (IAM), including RBAC and privileged access controls
Familiarity with security and compliance frameworks (e.g., HIPAA, state security standards, ATO processes)
Experience implementing cloud security monitoring, logging, and incident detection
Knowledge of Azure Policy and governance guardrails for enforcing security standards
Experience with key management and secrets handling (e.g., Azure Key Vault)
Understanding of secure network architecture and connectivity (including hybrid/on-prem integrations)
Experience supporting Infrastructure-as-Code (IaC) and secure CI/CD pipeline practices
Ability to define and document security architecture, standards, and operational runbooks
Strong collaboration skills to work with engineers, architects, and stakeholders on security design and remediation
$135,900 - $153,000 USD
Legal authorization to work in the United States
Ability to meet any other requirements for government contracts for which candidates are hired
Work authorization that doesn’t require visa sponsorship, now or in the future
May be subject to a government background check or security clearance, depending on the contract
We have fully remote options if you reside in one of the following states:
If you are not living in one of the states listed above, unfortunately, you will not be considered for a position at this time.
Sign up for our newsletter to find out about career opportunities, new partnerships, and news from the broader civic tech community.
Please contact the recruiting team at recruiting@navapbc.com if you would like to request any form of reasonable accommodation during the application or interviewing process.
We participate in E-Verify. Upon hire, we will provide the federal government with your Form I-9 information to confirm that you are authorized to work in the U.S. This role requires you to work from the contiguous United States.
Nava is committed to providing equal employment opportunities without discrimination or harassment on the basis of race, gender and/or gender identity or expression, color, creed, religion, religious creed, age, national origin, ethnicity, disability, veteran or military status, sex, sexual orientation, reproductive health autonomy, pregnancy, childbirth, and medical conditions related to pregnancy or childbirth, genetic information, domestic violence victim status, marital status, citizenship status, or any other characteristic protected by law. Nava prohibits any such discrimination or harassment. This policy applies to all employees, applicants, contractors, and temporary workers of Nava.