
Security Engineer III (Azure Security Engineer) - IS Cybersecurity & Risk Management
- Seattle, WA
- $130,000-175,000 per year
- Permanent
- Full-time
- 18,000 trained professionals
- 350+ locations worldwide across 60+ countries
- Fortune 500
- Globally unified systems
- Design, implement, and maintain security solutions in Microsoft Azure.
- Conduct security assessments and reviews of Azure environments, making recommendations that satisfy cybersecurity standards.
- Develop and enforce security standards, guidelines and procedures.
- Collaborate with the Cyber Defense team and support incident response for Azure-related security events.
- Collaborate with development teams to integrate security best practices into CI/CD pipelines.
- Work with Azure admin team to integrate cybersecurity standards when deficiencies are identified, working together to provide paved paths for internal customers.
- Actively follow security trends, threats, and technologies.
- Responsible for drafting support documentation, technical standards, and operational processes for an existing and evolving application delivery environment.
- Assist in establishing, optimizing, and enhancing regulatory and compliance processes.
- Continuously learns and evolves skill set to remain current with cloud native application delivery best practices and methods.
- Completes technical security deliverables on assigned projects.
- Downtown Seattle
- Federal Way
- Lynnwood
- Bellevue (Factoria)
- At least 10 years combined experience as individual contributor in an IT discipline with a minimum of 5 years in Cybersecurity specifically and 5 years minimum working in public cloud.
- Awareness of a broad set of Azure IaaS, PaaS and SaaS offerings, so that you can engage DevOps teams implementing a variety of services.
- Strong knowledge of networking, firewalls, VPNs, Azure RBAC, SSO with SAML and/or OIDC, managing Azure service principals, understanding Graph API permissions, and other security technologies.
- Using third party tools to monitor vulnerabilities in deployed Azure resources.
- Designing, deploying, operating and supporting Azure environments using Azure Portal, Azure CLI and Terraform.
- Managing Git repositories using Gitlab or GitHub and using pipelines to run tests and deploy changes to environments.
- Operating knowledge of Azure networking, Azure firewalls, network security groups, virtual WAN and common troubleshooting techniques.
- Possess troubleshooting skills in the areas of cloud security, cloud networking and Azure private DNS.
- Familiarity with the Cloud Adoption Framework and ability to express critical thinking around its application in mature technology organizations.
- Demonstrable experience with any form of threat modeling.
- Working experience of regularly writing scripts or other automation using a common language such as shell or Python
- Inquisitive and questioning nature with the goal of collaborating to find solutions.
- Easily adapt to changing requirements and priorities.
- Proficient documentation skills.
- Strong communication and teamwork abilities.
- Pairing your hunger to learn the newest cloud native tools with the capabilities and stack of the overall organization.
- Bachelor's degree in Information Security, Information Technology, Information Systems Management, Computer Science, Engineering, or related field.
- Professional experience in a technical engineering position involving infrastructure design technologies, data management and interchange, system design and / or development for complex applications.
- Ability to translate complex business and functional requirements into structured high quality implementations using any variety of common approaches.
- Experience operating in GCP or AWS.
- Experience deploying or maintaining Azure-based Palo Alto next generation firewalls.
- Relevant certifications such as Azure Security Engineer Associate, CISSP, CISM, or similar are highly desirable.
- Paid vacation
- Holidays (10)
- Flexible Days (2)
- Paid Sick Time (accrual rate of 1 hour of sick time per 30 hours paid)
- 401(k) Retirement Savings Plan with employer match
- Employee Stock Purchase Plan (ESPP)
- Medical, Prescription Drug, Dental & Vision Coverage
- Health Savings Account (HSA)
- Life and Disability Insurance
- Paid Parental Leave (additional eligibility criteria)
- Dependent Care Flexible Spending Account (DC FSA)
- Commuter Benefit
- Employee Assistance Program (EAP)
- Training and Personnel Development Program
- Educational Assistance and Reimbursement
- Position is full time (40 hours per week) Monday through Friday