Cloud Security Engineer
Listed on 2026-09-29
-
IT/Tech
Cybersecurity, Network Security, Systems Engineer, Cloud Computing: Infrastructure & Operations
Work Arrangement: Hybrid – 2 days onsite / 3 days remote, with the ability to transition to 5 days onsite if required by the client
.
Work Arrangement: Hybrid – 2 days onsite / 3 days remote, with the ability to transition to 5 days onsite if required by the client
.
East Bay Systems is a cybersecurity and IT consulting firm supporting Federal civilian agencies. Our work spans Security Engineering, SOC operations, Cloud Security, GRC, Cybersecurity Program Management, and Continuous Monitoring.
Position SummaryEast Bay Systems is seeking a Senior Cloud Security Engineer to join an established cybersecurity engineering team supporting a complex Federal hybrid-cloud environment.
This is a hands-on role for an experienced engineer who can quickly contribute across cloud security, networking, logging, security tools, and automation. The engineer will support Azure, AWS, on-premises, and hybrid environments; troubleshoot complex technical issues; improve existing security configurations and integrations; and participate in architecture and SOC technology assessments.
The ideal candidate is comfortable working independently on senior-level technical assignments while collaborating with Security Engineering, SOC, Cloud, Dev Sec Ops , GRC, and Federal stakeholders.
Key Responsibilities Cloud & Network Security- Support Azure, AWS, on-premises, and hybrid security environments.
- Configure and troubleshoot Azure VNets, subnets, route tables, NSGs, Azure Firewall, load balancers, Application Gateway, VPNs, and related services.
- Apply strong knowledge of routing, DNS, TCP/IP, segmentation, traffic flows, and firewall controls.
- Support firewall rule reviews, access-control changes, network hardening, and secure cloud configurations.
- Participate in cloud and network security architecture reviews and recommend practical improvements.
- Configure, support, and optimize Microsoft Sentinel.
- Develop and maintain analytics rules, detections, dashboards/workbooks, alerts, and automation.
- Onboard and troubleshoot log sources using Syslog, CEF, agents, APIs, native connectors, and custom ingestion methods.
- Support centralized logging across cloud, network, endpoint, server, application, and security platforms.
- Configure and troubleshoot RHEL/Linux Syslog or rsyslog forwarding to Sentinel.
- Identify logging and monitoring gaps that affect detection, incident response, and Continuous Monitoring.
- Support Extra Hop or comparable NDR technology.
- Administer and troubleshoot Cisco WSA.
- Support Crowd Strike, Microsoft Defender XDR, Forescout, and related security technologies.
- Integrate security tools with Sentinel and enterprise monitoring platforms.
- Develop and support Azure Logic Apps, Power Shell, REST APIs, JSON, and scripts for security automation and integration.
- Participate in reviews of SOC tool configurations, integrations, coverage, and effectiveness.
- Support Microsoft Entra , Conditional Access, PIM, RBAC, managed identities, and cloud IAM controls.
- Apply Zero Trust and least-privilege principles.
- Support FISMA, NIST RMF, NIST SP 800-53, FedRAMP, and Continuous Monitoring activities.
- Assist with technical control implementation, assessments, audits, and POA&M remediation.
- Work with GRC and ISSO teams to translate compliance requirements into technical solutions.
- Bachelor’s degree in Computer Science, Computer Engineering, IT, Cybersecurity, or a related technical field.
- 8+ years of cybersecurity, cloud security, network security, or security engineering experience.
- 5+ years of hands-on Azure and/or AWS security experience.
- Strong Azure networking knowledge, including VNets,…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).