Чтобы адаптировать резюме под вакансию или составить сопроводительное письмо, загрузи резюме
описание
The role focuses on securing Azure and Microsoft cloud environments at enterprise scale. It uses AI-powered tools and agentic workflows to improve security engineering activities, embeds security throughout the delivery lifecycle, and supports the secure adoption of AI technologies.
задачи
Provide technical leadership and subject matter expertise in securing Azure and Microsoft cloud environments at enterprise scale
Design, implement, and improve security architecture across Azure, Microsoft 365, Microsoft Entra ID, and hybrid and multi-cloud environments, with Azure as the primary cloud platform
Work across cloud security domains, including CSPM/CNAPP, identity and access management, privileged access management, data protection and DLP, Microsoft Defender, SIEM/SOAR and automated incident response, business continuity and disaster recovery, DevSecOps and IaC security, container, Kubernetes, API and microservice security, compliance, governance, policy-as-code, and secure cloud landing zones
Plan, design, and implement security controls for cloud workloads, applications, infrastructure, and data
Collaborate with engineering, infrastructure, development, DevOps, database, operations, and compliance teams to embed security into the full delivery lifecycle
Support the implementation and continuous improvement of Zero Trust architecture, secure authentication, conditional access, least privilege, and identity protection
Develop and maintain automation scripts, workflows, and security tooling using PowerShell, Python, Azure CLI, Logic Apps, Azure Functions, KQL, REST APIs, and related technologies
Use AI-powered tools and agentic workflows to improve security findings triage and prioritization, log analysis and alert enrichment, incident investigation, configuration reviews, compliance evidence collection, security documentation, vulnerability and misconfiguration analysis, and knowledge base and runbook automation
Design or integrate AI agents and AI-assisted automations using modern AI platforms and frameworks, with appropriate security, privacy, and governance controls
Define guardrails for data protection, access control, prompt security, model usage, auditability, and human-in-the-loop processes to support secure AI adoption
Train and support team members on cloud security practices, security processes, and AI-assisted automation approaches
требования
Bachelor’s degree in Computer Science, Information Security, or Engineering, or equivalent practical experience
Hands-on experience with Microsoft Azure services
Strong understanding of cloud security concepts, Azure architecture, and enterprise-scale cloud environments
Practical experience with Microsoft Entra ID/Azure Active Directory, Microsoft Defender for Cloud, and Microsoft Defender XDR
Expertise in Microsoft Sentinel, Microsoft Purview, and Microsoft Intune
Proficiency in Conditional Access, Identity Protection, and Privileged Identity Management
Competency in Key Vault, Azure Policy, and Azure Monitor/Log Analytics
Strong engineering background with Microsoft infrastructure and cloud solutions, including Active Directory, Microsoft Entra ID, Microsoft 365, Exchange Online, and hybrid identity
Security engineering experience in at least one business or technology domain
Experience participating in at least several production projects
Understanding of the software development lifecycle, DevOps/DevSecOps practices, cloud security assessment methodologies, and secure-by-design principles
Ability to work closely with developers, business analysts, QA engineers, architects, project managers, infrastructure, and operations teams
Ability to follow, maintain, and improve defined security processes
Practical understanding of AI-assisted productivity and automation beyond basic chatbot use, including building or configuring AI agents, automating repetitive security or engineering tasks, integrating LLMs with tools, APIs, documents, or workflows, prompt engineering and structured prompting, creating AI-assisted runbooks, scripts, queries, or documentation, and securely using AI tools with awareness of sensitive data handling and access control
Good communication skills and ability to explain security risks, technical decisions, and remediation plans to technical and non-technical stakeholders
Будет плюсом: scripting, automation, or software development with PowerShell, Python, Bash, Azure CLI, Terraform, or Bicep; SIEM/SOAR platforms, especially Microsoft Sentinel, KQL, Logic Apps, and security automation playbooks; CNAPP/CSPM/CWPP/CIEM tools; IaC and policy-as-code tools; familiarity with compliance or security frameworks; container and Kubernetes security; AI/LLM platforms or frameworks; AI security risks and governance; security and AI-related certifications