Azure Cloud Engineer
Job Description & How to Apply Below
We are hiring an Azure Cloud Engineer to own the design, deployment, security, and day‑to‑day operation of our Microsoft Azure environment. You will keep our cloud secure, scalable, highly available, cost‑efficient, and audit‑ready across ISO
27001, NIAF, CIS Benchmarks, and ITILv4 governance.
- Cloud infrastructure architecture – design, provision, configure, and manage Azure cloud infrastructure including virtual machines, virtual networks, storage accounts, databases, containers, backup services, and platform services; manage Azure subscriptions, management groups, resource groups, policies, naming conventions, tagging standards, and landing zone components; implement scalable and resilient cloud architectures aligned with business and technical requirements; administer hybrid connectivity including VPN, Express Route, virtual network peering, private endpoints, DNS, and secure routing;
maintain documentation, diagrams, configuration baselines, and operational runbooks. - Security governance – implement cloud security controls aligned with ISO
27001, NIAF, CIS Benchmarks, and internal policies; configure and enforce IAM, RBAC, Conditional Access, MFA, Privileged Identity Management, and least‑privilege access; enforce encryption for data at rest and in transit; configure Microsoft Defender for Cloud, Defender Suite, Microsoft Sentinel, Azure Policy, and security baselines; continuously monitor for misconfigurations, risks, and non‑compliance; manage EntraID integration with Azure resources, applications, and hybrid identity services;
conduct periodic access reviews; monitor elevated access activities and investigate privilege misuse or anomalies. - Monitoring & operations – configure Azure Monitor, Log Analytics, Application Insights, Network Watcher, and service health alerts; integrate cloud logs and security events with Microsoft Sentinel and other SIEM/SOC monitoring platforms; monitor performance, availability, security events, resource utilization, and compliance status; create operational dashboards, compliance reports, capacity reports, and security posture reports; investigate alerts related to suspicious activity, failed authentication, policy violations, network exposure, and configuration drift;
coordinate with the SOC team to respond to cloud security incidents and threat exposure findings. - Cost resilience – monitor Azure consumption, resource utilization, reservations, and cost trends; remediate unused, under‑utilized, oversized, or non‑compliant resources; apply cost optimization strategies including right‑sizing, reserved instances, savings plans, storage tiering, automation, and lifecycle policies; implement Azure Backup, Azure Site Recovery, Recovery Services Vaults, backup policies, and recovery testing procedures.
- Compliance & change management – maintain cloud asset inventories, access review records, configuration baselines, vulnerability remediation records, and change documentation; ensure all cloud changes are documented, approved, tested, and implemented through ITIL‑aligned change management processes; maintain policies, procedures, standards, runbooks, and compliance dashboards related to cloud operations; work closely with application teams, developers, cybersecurity, infrastructure, SOC, and business units to deliver secure and reliable cloud services.
- 5+ years hands‑on experience in cloud administration, engineering, or operations with a strong focus on Microsoft Azure.
- Proven experience designing, deploying, and managing Azure infrastructure (compute, networking, storage, backup, monitoring, security).
- Solid grasp of Azure landing zones, subscriptions, management groups, Azure Policy, RBAC, and governance.
- Hands‑on with EntraID, Azure RBAC, Conditional Access, MFA, EntraPIM, and least‑privilege models.
- Experience in environments governed by ISO
27001, NIAF, CIS Benchmarks, and ITILv
4. - Hands‑on with Microsoft Defender for Cloud, Defender Suite, Microsoft Sentinel, Azure Monitor, Log Analytics, Fortinet, and Fresh service.
- Strong knowledge of cloud security, IAM, PAM, encryption, secure networking, vulnerability management, and compliance reporting.
- Experience with backup, DR, replication, failover testing, and resilience planning.
- Solid understanding of hybrid connectivity, firewalls, VPNs, private endpoints, DNS, and NSGs.
- Strong troubleshooting, documentation, and stakeholder‑communication skills.
- Bachelor's degree in IT, Computer Science, Cloud Computing, or a related field.
- Microsoft certifications: AZ‑104 (Azure Administrator), AZ‑305 (Azure Solutions Architect), AZ‑500 (Azure Security Engineer).
- ITILv4 certification.
- Experience with infrastructure‑as‑code (Bicep, ARM, or Terraform).
- Prior work in a regulated or government‑adjacent environment.
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×