Senior Cloud Security Engineer
Company | Lantern Care |
---|---|
Location | Dallas, TX, USA |
Salary | $Not Provided – $Not Provided |
Type | Full-Time |
Degrees | |
Experience Level | Senior |
Requirements
- 7+ years of experience in information security, with 5+ years focused on cloud security in Microsoft Azure.
- Deep expertise in Azure AD, conditional access, PIM, cloud-native IAM, Azure Firewall, and Network Security Groups.
- Strong command authentication protocols (SAML, OIDC, OAuth2) and federated identity solutions.
- Proficiency in infrastructure-as-code (Terraform, Bicep, or ARM templates).
- Scripting and automation skills using PowerShell, Python, or Azure CLI.
- Familiarity with cloud security operations, detection, and response.
- Understanding of compliance frameworks like HIPAA, HITRUST, and NIST 800-53 and CSF.
Responsibilities
- Architect and implement secure Azure environments, focusing on services like Azure AD, Key Vault, Intune, Defender for Cloud, and Purview.
- Develop and manage IAM policies, ensure proper role-based access control and privileged identity management.
- Maintain strong familiarity with Azure Entra ID, as well as compute, network, and strong in Azure.
- Collaborate with cross-functional teams to integrate security best practices into our CI/CD pipelines and DevOps processes.
- Develop and implement a comprehensive set of security technologies and processes, data protection, cryptography, and key management.
- Monitor and respond to security incidents, leveraging our SIEM tools to maintain a robust security posture.
- Develop and fine-tune search queries for effective data analysis.
- Ensure compliance with healthcare regulations, including HIPAA, HITRUST, HITECH, through regular audits and assessments.
- Mentor junior engineer, fostering a culture of security awareness and continuous improvement.
Preferred Qualifications
- Microsoft certifications (e.g., AZ-500, SC-300)
- Experience with container security (AKS) and securing microservices.
- Exposure to third-party identity providers (e.g., Okta, Ping), and multi-cloud environments.