Cloud Security Engineer
We are looking for a hands-on Cloud Security Engineer to own and continuously raise the security posture of a cloud environment based on Azure and Entra ID. You will work shoulder-to-shoulder with SOC, IT, Architecture, and Risk & Compliance teams. This is high-trust, high-ownership, and genuinely mission-driven security work.
What you do
Cloud & Identity Security (Azure & Entra ID).
- Own and harden the cloud estate with Defender for Cloud, Azure Policy, and secure landing-zone patterns
- Manage identity & access in Entra ID — Conditional Access, PIM, RBAC, secure app onboarding — enforcing least privilege
- Continuously assess posture and close gaps across cloud, identity, endpoints
Security Operations & Incident Response.
- Investigate and respond to alerts in Microsoft Sentinel, correlating events with KQL & Log Analytics
- Drive root-cause analysis and turn findings into stronger detections and controls
DevSecOps & Automation.
- Embed security into CI/CD pipelines and Infrastructure-as-Code (Terraform/Bicep) — shifting security left
- Automate recurring security tasks with PowerShell and policy-as-code
Risk, Compliance & Projects.
- Run assessments aligned to the ISMS and support audits across ISO 27001, NIS2, GDPR, and GxP/GMP
- Lead security initiatives (cloud hardening, monitoring, identity improvements) and coordinate pen-testing
What they ask
- 4–6 years in cloud / information security, with strong hands-on Azure & Entra ID
- Solid grounding in identity, security operations, and a pragmatic, risk-based mindset
- Comfortable partnering with both technical and non-technical stakeholders
Nice to have.
- Cloud security certifications — AZ-500, SC-200, SC-300
- DevSecOps / IaC experience and PowerShell automation
- CISSP / CISM, or regulated-industry (pharma / GxP)
How to apply
View the full assignment text and application details once your tailored application is ready.
Order a tailored application to view the full assignment and application details.
More context, less searching.
You get enough context to judge whether this job is relevant. The full brief, client details and next steps stay available inside the app.