Posted in

Senior Cloud Security Engineer

Senior Cloud Security Engineer

CompanyLantern Care
LocationDallas, TX, USA
Salary$Not Provided – $Not Provided
TypeFull-Time
Degrees
Experience LevelSenior

Requirements

  • 7+ years of experience in information security, with 5+ years focused on cloud security in Microsoft Azure.
  • Deep expertise in Azure AD, conditional access, PIM, cloud-native IAM, Azure Firewall, and Network Security Groups.
  • Strong command authentication protocols (SAML, OIDC, OAuth2) and federated identity solutions.
  • Proficiency in infrastructure-as-code (Terraform, Bicep, or ARM templates).
  • Scripting and automation skills using PowerShell, Python, or Azure CLI.
  • Familiarity with cloud security operations, detection, and response.
  • Understanding of compliance frameworks like HIPAA, HITRUST, and NIST 800-53 and CSF.

Responsibilities

  • Architect and implement secure Azure environments, focusing on services like Azure AD, Key Vault, Intune, Defender for Cloud, and Purview.
  • Develop and manage IAM policies, ensure proper role-based access control and privileged identity management.
  • Maintain strong familiarity with Azure Entra ID, as well as compute, network, and strong in Azure.
  • Collaborate with cross-functional teams to integrate security best practices into our CI/CD pipelines and DevOps processes.
  • Develop and implement a comprehensive set of security technologies and processes, data protection, cryptography, and key management.
  • Monitor and respond to security incidents, leveraging our SIEM tools to maintain a robust security posture.
  • Develop and fine-tune search queries for effective data analysis.
  • Ensure compliance with healthcare regulations, including HIPAA, HITRUST, HITECH, through regular audits and assessments.
  • Mentor junior engineer, fostering a culture of security awareness and continuous improvement.

Preferred Qualifications

  • Microsoft certifications (e.g., AZ-500, SC-300)
  • Experience with container security (AKS) and securing microservices.
  • Exposure to third-party identity providers (e.g., Okta, Ping), and multi-cloud environments.