A Cyber Security Engineer designs systems that protect the security of large databases, including databases with customer information and patient files. Examines client computer systems, identifies weak points in security, develops and implements new systems, monitors and responds to security issues.
Golden Corral Corporation - 3.5 Raleigh, NC Job Details 2 hours ago Qualifications Endpoint Security Cloud identity and access management (IAM) Azure IaaS Microsoft Exchange Azure PaaS Azure AD DNS SharePoint Vulnerability management UEM Cloud automation Microsoft 365 support VPN management Automation tools PowerShell Active Directory Identity & access management
Full Job Description Position Summary:
The Senior Cloud Security Engineer is a hands-on technical leader embedded within the Infrastructure team, responsible for securing enterprise systems across cloud, identity, endpoints, and network environments. This role serves as the primary security engineering resource supporting Microsoft Azure, identity services (Entra ID), Microsoft 365, and enterprise infrastructure, combining architecture, engineering, and operational responsibilities. The engineer will design and implement security controls, respond to threats, and partner with infrastructure peers to ensure systems are secure, resilient, and aligned with business and compliance requirements.
Duties and Responsibilities:
Cloud & Infrastructure Security Engineering Design, implement, and maintain secure Microsoft Azure environments across IaaS and PaaS workloads Configure and manage Azure-native security controls, including identity integration (Entra ID), network security, and platform security baselines Implement Azure governance using policies, RBAC, and resource organization strategies Design and support secure networking configurations (VNets, NSGs, Private Endpoints, VPN) Partner with infrastructure engineers to ensure servers, endpoints, and network components are securely configured Support cloud and hybrid infrastructure initiatives with security-first design principles Implement Infrastructure as Code (IaC) for secure and repeatable deployments Identity & Microsoft 365 Security Secure identity using Microsoft Entra ID, including Conditional Access, MFA, and access governance Implement and maintain security controls across Microsoft 365 (Exchange Online, SharePoint, Teams, OneDrive) Manage email security practices, including SPF, DKIM, DMARC, and secure email gateways Support endpoint and device security integration using Microsoft Intune and related technologies Enable secure collaboration while balancing usability and risk Security Operations & Incident Response Owns endpoint and vulnerability security tooling, including EDR and vulnerability management platforms (e.g., SentinelOne, Qualys VMDR) Monitor, investigate, and respond to security events and alerts across cloud and on-prem environments including EDR platform (e.g., SentinelOne) Partner with internal teams and external providers (e.g., SIEM/SOC) to respond to detected threats Identify, prioritize, and drive remediation of vulnerabilities across cloud, infrastructure, and endpoint environments using vulnerability management platforms (e.g., Qualys VMDR) Participate in incident response, root cause analysis, and post-incident improvements Continuously improve detection, response, and operational security capabilities Governance, Compliance & Risk Management Implement and maintain security controls aligned with CIS, NIST, and Zero Trust frameworks Support third-party risk management activities using SaaS platforms (e.g., UpGuard), including vendor risk assessments, exposure identification and remediation coordination Lead the development, implementation, and ongoing maintenance of enterprise security baselines aligned to CIS Critical Security Controls, ensuring consistent enforcement across cloud, endpoint, and infrastructure platforms Support compliance initiatives (e.g., PCI or similar regulatory requirements) Perform risk assessments and recommend mitigation strategies Ensure consistent application of security standards across all infrastructure platforms Collaboration & Leadership Serve as the security subject matter expert within the Infrastructure team Provide mentorship and guidance to network and endpoint engineering peers Collaborate with vendors, partners, and service providers for security solutions and support Communicate risks, issues, and recommendations clearly to both technical and business stakeholders Identify opportunities to improve processes, tooling, and overall security posture
Competencies:
Broad, hands-on expertise across cloud, identity, endpoint, and network security Ability to balance operational responsibilities with long-term security improvements Strong collaboration across infrastructure disciplines (network, endpoint, cloud) Ability to translate business requirements into practical, secure solutions
Required Qualifications:
Bachelor's degree in Information Technology, Cybersecurity, or related field (or equivalent experience) 6+ years of IT experience with strong background in infrastructure and cloud technologies 3-5+ years of hands-on experience securing Microsoft Azure and Microsoft 365 environments Experience with Microsoft Entra ID, Conditional Access, and identity security principles Strong understanding of networking concepts (DNS, VPN, segmentation, secure connectivity) Experience with endpoint security and device management (e.g., Microsoft Intune) Proficiency with PowerShell and automation Experience with vulnerability remediation and security operations Strong analytical, troubleshooting, and communication skills
Preferred Qualifications:
Experience with securing the Microsoft stack (Endpoint, Identity, Cloud, Microsoft 365) Experience working with SIEM platforms or managed SOC providers Familiarity with Infrastructure as Code (Terraform, Bicep, ARM) Experience with Zero Trust architecture and modern security design Experience in regulated environments (e.g., PCI DSS) Azure certifications (AZ-104, AZ-500, or similar) Work Environment & Expectations Embedded within a lean Infrastructure team supporting enterprise and distributed locations Ability to work across multiple disciplines (network, endpoint, cloud) as needed Participation in on-call and incident response activities Occasional travel (5-10%) Technologies & Platforms Microsoft Azure (IaaS, PaaS) Microsoft Entra ID Microsoft 365 (Exchange Online, SharePoint, Teams, OneDrive) Microsoft Intune / Endpoint Management
SIEM / SOC
integrations Sentinel One Qualys VMDR Checkpoint Harmony Infrastructure as Code (Bicep, ARM, Terraform) Equal Opportunity Employer This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights (https://www.eeoc.gov/poster) notice from the Department of Labor.