Remote job
Senior Azure Cloud Security Engineer
Job details
About this role
Role overview A remote, senior-level role focused on strengthening the Azure network and identity security of a cloud-native fintech platform that serves institutional fixed-income clients across the US, Europe, and Latin America. The position combines hands-on engineering with client-facing security leadership, owning Azure architecture, deepening zero-trust posture, and supporting enterprise onboarding and audit work.
Responsibilities - Own Azure network architecture, including Firewall Premium, NSGs, Private Link, VNet peering, and hub-spoke or VWAN topology. - Drive zero-trust improvements across identity, network, and access layers. - Deliver infrastructure changes through Infrastructure as Code (Terraform, Bicep, or ARM) via Git-based workflows and PR review. - Read and modify CI/CD pipeline definitions (GitHub Actions or Azure DevOps YAML) for network and identity work. - Participate in client security reviews, enterprise onboarding, and regulatory audit support alongside engineering leadership.
Requirements - 6+ years in cloud infrastructure or security engineering, with at least 3 years focused on Azure. - Deep expertise with Azure Firewall Premium, NSGs, Private Link, VNet peering, and hub-spoke or VWAN topologies. - Strong working knowledge of Entra ID, Conditional Access, Privileged Identity Management, and managed identities. - Proven experience integrating external identity providers (Okta, Ping Identity, Auth0) with Entra ID via SAML, OIDC, or OAuth 2.0. - Hands-on IaC delivery and day-to-day Git workflow including branching, merging, and code review. - Advanced English (C1+) with the ability to participate in client meetings and security reviews, plus experience working in agile, distributed DevOps teams.
Nice to have - Background supporting regulated or audited environments such as fintech. - Prior involvement in enterprise client onboarding or security questionnaire processes.