Find Jobs
Find Jobs Near You – Available Work in Your Location
Skip to job details
Configure, administer, and optimize cloud security solutions, including Microsoft Defender for Cloud, Microsoft Defender for Endpoint, Microsoft Defender for Cloud Apps (CASB), and related technologies.
Conduct security assessments of cloud resources, applications, Azure Kubernetes Service (AKS), and containerized workloads to identify vulnerabilities, misconfigurations, excessive permissions, and other security risks.
Perform vulnerability management activities, including prioritizing findings, coordinating remediation efforts, and validating corrective actions.
Configure and enhance cloud security monitoring, threat detection, investigation, response, and automation capabilities using Microsoft Sentinel (SIEM), Kusto Query Language (KQL), and related technologies.
Collaborate with Cloud, Compliance, and other internal teams to ensure cloud services are designed, deployed, and maintained in accordance with security best practices, organizational standards, and industry hardening standards such as CIS Benchmarks and DISA STIGs.
Respond to customer security inquiries, assessments, and questionnaires by gathering, validating, and communicating information regarding security controls, cloud technologies, and security practices.
Develop and maintain technical documentation, procedures, dashboards, alerts, and reporting to improve security visibility and operational effectiveness.
Support internal and external audits by gathering evidence, validating control adherence, and demonstrating compliance with organizational, customer, and regulatory requirements.
Support incident response activities by investigating suspicious, anomalous, or unauthorized activity within cloud environments and participating in security investigations. Required Education and ExperienceBS/BA in Cybersecurity, Computer Science, Engineering, or technology-related field (or equivalent work experience).3+ years of experience securing cloud-based infrastructure, services and technologies.
Experience identifying, analyzing, and mitigating security risks within cloud environments.
Experience applying cloud security principles to secure cloud platforms, including Microsoft Azure, through secure configuration, least-privilege access, data protection, threat detection and response, and security hardening aligned with industry standards.
Experience deploying, administering, and using security technologies such as Microsoft Defender, SIEM, CASB, vulnerability management, and related security functionsWorking knowledge of Azure Log Analytics, Kusto Query Language (KQL), PowerShell, Bash, and REST APIs.
Working knowledge of identity and access management concepts, including Microsoft Entra ID, role-based access control (RBAC), authentication, authorization, and least-privilege access.
Working knowledge of Windows and Linux operating systems.
Familiarity with incident response, incident management, and change management processes.
Preferred Education and ExperienceExperience working for a Cloud Service Provider (CSP), Managed Service Provider (MSP), Software-as-a-Service (SaaS) provider, or similarly regulated cloud environment.5+ years of experience with Microsoft Azure, including securing cloud-native technologies, Azure Kubernetes Service (AKS), and containerized workloads.
Understanding of security controls and compliance frameworks such as NIST 800-53, Fed
Understanding of identity and access management (IAM) concepts, technologies, and protocols including Microsoft Entra ID, Okta, SAML, OAuth, and OpenID Connect (OIDC).Experience with Infrastructure as Code (IaC) technologies and deployment practices, such as ARM, Bicep, Terraform, and Azure DevOps pipelines.
Working knowledge of network security principles, networking protocols (e.g., TCP/IP, DNS, TLS), and firewall technologies.
Familiarity with Agile, Scrum, and DevSecOps methodologies.
Relevant cybersecurity certifications (e.g., AZ-500, AZ-104, SC-200, SC-300, SC-100, Security+, Cloud+, or equivalent). Knowledge, Skills, and AbilitiesStrong analytical and problem-solving skills.
Excellent written, verbal, and presentation communication skills.
Ability to effectively communicate technical information to diverse audiences, including technical and non-technical stakeholders.
Demonstrated initiative, accountability, and attention to detail.
Effective prioritization and organizational skills in a fast-paced environment.
Adaptability to changing technologies, priorities, and business needs.
Commitment to continuous learning and professional development.
Who... For full info follow application link.
OS
OneStream Software
Cloud Security Engineer
Career Insights for Cyber Security Engineer
See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.
Scorecard
Based on national data
Review key factors to help you decide if this role fits your goals. How is this calculated?
What they do
A Cyber Security Engineer designs systems that protect the security of large databases, including databases with customer information and patient files. Examines client computer systems, identifies weak points in security, develops and implements new systems, monitors and responds to security issues.
$108,925 / year median in the U.S.
+2% projected growth
Job Description
Description Cloud Security EngineerLocation:
Remote, USAEmployment Type:
Full-TimeBenefits Offered:
Vision, Medical, Life, Dental, 401KGross annual base salary:USD 86,000
- 112,000Additional variable compensation and benefits may apply. Total compensation is based on experience, skills, and location using objective, job-related criteria. SummaryWe are seeking a Cloud Security Engineer to join our Information Security team and play a key role in protecting and continuously improving the security posture of OneStream's cloud environment, including Microsoft Azure and Microsoft 365. This position is responsible for helping safeguard OneStream's cloud services, corporate information, and customer data by identifying and mitigating risk through proactive security monitoring, threat detection, vulnerability management, secure configuration, and cloud security governance. This role works closely with cross-functional teams to help ensure cloud technologies and services are deployed and operated securely in alignment with business and security objectives. Primary Duties and ResponsibilitiesDesign, implement, and continuously improve security controls and configuration baselines across Microsoft Azure and Microsoft 365, aligned with industry standards and frameworks.Configure, administer, and optimize cloud security solutions, including Microsoft Defender for Cloud, Microsoft Defender for Endpoint, Microsoft Defender for Cloud Apps (CASB), and related technologies.
Conduct security assessments of cloud resources, applications, Azure Kubernetes Service (AKS), and containerized workloads to identify vulnerabilities, misconfigurations, excessive permissions, and other security risks.
Perform vulnerability management activities, including prioritizing findings, coordinating remediation efforts, and validating corrective actions.
Configure and enhance cloud security monitoring, threat detection, investigation, response, and automation capabilities using Microsoft Sentinel (SIEM), Kusto Query Language (KQL), and related technologies.
Collaborate with Cloud, Compliance, and other internal teams to ensure cloud services are designed, deployed, and maintained in accordance with security best practices, organizational standards, and industry hardening standards such as CIS Benchmarks and DISA STIGs.
Respond to customer security inquiries, assessments, and questionnaires by gathering, validating, and communicating information regarding security controls, cloud technologies, and security practices.
Develop and maintain technical documentation, procedures, dashboards, alerts, and reporting to improve security visibility and operational effectiveness.
Support internal and external audits by gathering evidence, validating control adherence, and demonstrating compliance with organizational, customer, and regulatory requirements.
Support incident response activities by investigating suspicious, anomalous, or unauthorized activity within cloud environments and participating in security investigations. Required Education and ExperienceBS/BA in Cybersecurity, Computer Science, Engineering, or technology-related field (or equivalent work experience).3+ years of experience securing cloud-based infrastructure, services and technologies.
Experience identifying, analyzing, and mitigating security risks within cloud environments.
Experience applying cloud security principles to secure cloud platforms, including Microsoft Azure, through secure configuration, least-privilege access, data protection, threat detection and response, and security hardening aligned with industry standards.
Experience deploying, administering, and using security technologies such as Microsoft Defender, SIEM, CASB, vulnerability management, and related security functionsWorking knowledge of Azure Log Analytics, Kusto Query Language (KQL), PowerShell, Bash, and REST APIs.
Working knowledge of identity and access management concepts, including Microsoft Entra ID, role-based access control (RBAC), authentication, authorization, and least-privilege access.
Working knowledge of Windows and Linux operating systems.
Familiarity with incident response, incident management, and change management processes.
Preferred Education and ExperienceExperience working for a Cloud Service Provider (CSP), Managed Service Provider (MSP), Software-as-a-Service (SaaS) provider, or similarly regulated cloud environment.5+ years of experience with Microsoft Azure, including securing cloud-native technologies, Azure Kubernetes Service (AKS), and containerized workloads.
Understanding of security controls and compliance frameworks such as NIST 800-53, Fed
RAMP, SOC 1, SOC 2, ISO
27001, or similar standards.Understanding of identity and access management (IAM) concepts, technologies, and protocols including Microsoft Entra ID, Okta, SAML, OAuth, and OpenID Connect (OIDC).Experience with Infrastructure as Code (IaC) technologies and deployment practices, such as ARM, Bicep, Terraform, and Azure DevOps pipelines.
Working knowledge of network security principles, networking protocols (e.g., TCP/IP, DNS, TLS), and firewall technologies.
Familiarity with Agile, Scrum, and DevSecOps methodologies.
Relevant cybersecurity certifications (e.g., AZ-500, AZ-104, SC-200, SC-300, SC-100, Security+, Cloud+, or equivalent). Knowledge, Skills, and AbilitiesStrong analytical and problem-solving skills.
Excellent written, verbal, and presentation communication skills.
Ability to effectively communicate technical information to diverse audiences, including technical and non-technical stakeholders.
Demonstrated initiative, accountability, and attention to detail.
Effective prioritization and organizational skills in a fast-paced environment.
Adaptability to changing technologies, priorities, and business needs.
Commitment to continuous learning and professional development.
Who... For full info follow application link.