Leave us your email address and we'll send you all the new jobs according to your preferences.

Cloud Security Engineer

Posted 12 days 20 hours ago by Jobtailor

Permanent
Full Time
Other
Dublin, Ireland
Job Description
Responsibilities
  • Support DOCOsoft's cloud security operations and enhance the security posture of Azure-hosted environments.
  • Administer and optimize Microsoft Defender (Cloud, Identity, Endpoint) and Azure-native security tools.
  • Manage identity and access using Conditional Access, Entra ID Governance, and PIM.
  • Maintain hardening standards across Azure resources (Key Vault, Storage, App Services, VMs, networking).
  • Improve Azure Secure Score in line with internal policies and ISO 27001.
  • Support secure design and review of Azure PaaS/IaaS workloads.
  • Advise on network security, API protection, encryption, segmentation, and Zero Trust.
  • Conduct threat modelling to embed security-by-design.
  • Integrate security into CI/CD pipelines and GitHub workflows.
  • Assess Terraform/Bicep IaC and enforce policy-as-code (Azure Policy, GitHub Advanced Security).
  • Implement automated guardrails to reduce misconfigurations and strengthen compliance.
  • Identify and remediate cloud vulnerabilities with engineering.
  • Support internal/external audits and maintain documentation and compliance evidence.
  • Enhance monitoring with Azure Monitor, Log Analytics, and Sentinel.
  • Develop KQL queries, dashboards, and detection rules; investigate alerts, manage incidents, and maintain cloud-specific incident response playbooks.
Requirements
  • Bachelor's degree in Computer Science engineering, or related field.
  • 4+ years in MS Azure cloud engineering with at least 2 years in MS Azure security engineering roles
  • Strong hands on experience with Azure security tools (Defender for Cloud, Sentinel, Entra ID, Key Vault, Azure Firewall, WAF, NSGs).
  • Proficiency in Kusto Query Language (KQL) for Log analysis, threat hunting, and developing security detections in Sentinel and Log Analytics.
  • Understanding of Azure networking, identity, encryption, and cloud governance.
  • Experience with IaC security for Bicep (Terraform acceptable) and DevSecOps practices.
  • Desirable Certifications: AZ 500, SC 200, SC 100
  • Knowledge of OWASP Top 10, secure coding, and secure API practices.
  • Strong documentation, analytical, and communication skills.
  • Familiarity with ISO 27001, ISO 22301 SOC 2, GDPR, and cloud security best practices.
Email this Job