Find Jobs
Find Jobs Near You – Available Work in Your Location
Security Engineer
Job Description
We are seeking a Security Engineer to join the IT Operations team and help strengthen security as the organization expands its Microsoft Azure cloud environment. This is a full-time, net-new position based in Belgrade, Maine, where you will work alongside an existing Security Engineer as part of a two-person security team. A major focus will be helping determine what should move to the cloud, what should remain on-premises, and how to securely architect the environment moving forward. Responsibilities Serve as the primary Azure and cloud security subject matter expert. Help develop the organization's overall cloud security architecture and strategy. Assess existing systems and help determine which workloads should move to Azure versus remain on-premises. Design and implement security controls for Azure environments. Support the organization's ongoing migration and adoption of Microsoft Azure. Help secure a new Microsoft Fabric data environment as workloads and data are moved into Azure. Manage and improve identity and access security using Microsoft Entra ID / Azure Active Directory. Implement security best practices around Azure networking, permissions, data, applications, and infrastructure. Monitor cloud security posture and identify vulnerabilities or configuration risks. Partner with the organization's CrowdStrike provider / SOC to address security alerts, vulnerabilities, and incidents. Help maintain PCI compliance and ensure cloud environments continue to meet PCI security requirements. Develop cloud security policies, standards, and documentation. Work closely with the existing Security Engineer, Systems Administrator, and other members of the IT Operations team. Qualifications Required 5+ years of experience in IT security, cybersecurity, cloud security, or security engineering. Strong hands-on experience with Microsoft Azure security. Experience designing or securing cloud infrastructure and cloud migrations. Strong understanding of Microsoft Entra ID / Azure Active Directory, IAM, RBAC, MFA, and Conditional Access. Experience with Azure security tools such as Microsoft Defender for Cloud, Microsoft Sentinel, Azure Policy, and Azure Key Vault. Understanding of Azure networking and network security, including VNets, NSGs, Azure Firewall, VPNs, Private Link, and network segmentation. Experience assessing security risks and recommending appropriate cloud security controls. Understanding of hybrid cloud environments and securing integrations between on-premises and Azure infrastructure. Experience working with SIEM, endpoint security, SOC, or managed security providers. Knowledge of PCI DSS compliance and security requirements. Strong communication skills and the ability to work collaboratively with infrastructure and operations teams. Preferred Familiarity with CrowdStrike.