Prominent ยท 21 hours ago
Azure Cloud Security Architect
Prominent is looking for an Azure Cloud Security Architect for a contract to hire. The successful candidate will design, build, and deploy technology initiatives to secure a key government client's cloud environment.
Responsibilities
Assist in strategic planning and architecture to secure enterprise information
Identify network and application security requirements
Implement and test security controls and procedures
Collaborate with other teams to embed security into the entire lifecycle
Integrate DevSecOps principles and automation into the pipeline
Qualification
Required
5+ years firsthand working with multiple Azure security tools and platforms such as Entra ID, Sentinel, Defender, Monitor, Key-Vault, or similar in other platforms
5+ years managing security policies and initiatives in Azure
Identity Access and Management (IDAM) concepts, multifactor authentication, SSO/Federation
Privileged Access Management (PAM) and Privileged Identity Management (PIM) key concepts
Demonstrated ability to Define, Design, and configure the Azure security platforms, and function as an overall lead managing end to end security on the Azure GovCloud regions
Experience automating security baselines and policy enforcement in enterprise Azure environments
Experience automating 'Policy-As-Code' using Terraform and ARM templates, with a focus on reusable module design, policy enforcement, and secure CI/CD integration
Demonstratable understanding of Information Security and Risk Management capabilities related to cloud computing across Windows and Linux, with demonstrated direct experience with the following domains: Identity, Credential and Access Management (ICAM), Authentication and Authorization including SSO and Identify Federation, Zero-Trust Model, Defense-In-Depth, Governance and Compliance, Securing Data, Securing the Operating System, Protecting the Network Layer, Continuous Diagnostics and Mitigation, Alerting, Audit Trail, and Incident Response, Cloud Core Platform: Compute, Storage, Networking
Preferred
Prior experience supporting federal, defense, or highly regulated commercial clients helpful along with the following skills: Familiarity with compliance frameworks such as FedRAMP, CMMC, FISMA and NIST 800-53
Certifications: CISSP, CCSP, Azure/AWS/Google Training and Certification
Crowdstrike Falcon EDR for Azure
Experience with secure baseline configurations (CIS Benchmarks, DISA STIGs) for Azure environments
Managing/maintaining FISMA compliance for a government information system in accordance with requirements from NIST
Demonstrated experience collaborating directly with external clients, business leadership, and auditors
Direct technical background, to include familiarity with servers, network devices, and security systems