Cloud Security Architect
*This is a hybrid position requiring 3 days/week onsite.
*Local to the Triangle (Raleigh/Durham/Chapel Hill, NC) area only, please.
*We are not considering Corp-to-Corp (C2C) arrangements for this position.
Description:
- Our client is seeking a candidate to support their Microsoft Azure cloud tenant build and configuration specifically focusing on security compliance design implementation operations and assessment in support of Modernization efforts.
- The candidate will need to come on-site on the first day to collect equipment.
- All candidates must be local to the Triangle region of North Carolina.
- This position may require on-site attendance when business needs warrant in-person participation such as scheduled meetings or other task-specific activities.
- The role is for a Cloud Security Architect – Expert that will support the ongoing Modernization, Microsoft Azure cloud infrastructure, build security compliance, design security compliance, configuration and security compliance, assessment, and reporting.
- The primary focus is to lead in security architecture configuration operations and compliance assessment of the environment and be a bridge between multiple agencies and vendors in the delivery of a Microsoft Azure cloud environment that meets security regulatory organizational industry security compliance requirements and compliance reporting balanced with functional requirements.
- The complexity of these responsibilities are essential to support the build of the Azure tenant so that client systems can be placed in the cloud securely and meet compliance requirements.
Required Skills/Knowledge/Experience:
- Design and maintain secure Azure architectures across identity, networking, data protection, logging/monitoring, and governance., Required 5 Years
- Develop and enforce Azure security standards, policies, and reference architectures aligned to organizational and regulatory requirements., Required 5 Years
- Lead threat modeling, risk assessments, and security reviews for the Azure cloud environment and NCDMV Modernization efforts., Required 5 Years
- Provide expert guidance on Azure-native security tooling (e.g., Defender for Cloud, Sentinel, Azure Policy, Key Vault, Monitor, Log Analytics), Required 5 Years
- Deep expertise with Azure security services, Required 5 Years
- Strong understanding of cloud networking security: Zero Trust, routing, segmentation, firewalls, DNS, PKI, IAM, and secure landing zone architectures., Required 5 Years
- Knowledge of compliance frameworks and mapping security controls (NIST 800 53, NIST 800 171, PCI DSS, FIPS, state security standards)., Required 5 Years
- Experience designing and evaluating secure multi-tenant architectures and enterprise governance models in Microsoft Azure., Required 5 Years
- Expertise integrating third party solutions (Cloudflare, Palo Alto, etc.) with Azure security and monitoring., Required 5 Years
- Proficiency with automation and IaC: ARM/Bicep, Terraform, GitHub/Azure DevOps pipelines, and policy as code., Required 5 Years
- Ability to translate security requirements into actionable architectural and technical guidance and configurations., Required 5 Years
- Strong documentation skills for security standards, baselines, and system security plans., Required 5 Years
- Experience and strong skills in identifying options for security assessments of the Azure environment and producing detailed and executive summary sec, Required 5 Years
Proper email communication will only be done to and from @astyra.com email addresses. Please ensure you are communicating with approved Astyra recruiters by checking this point when receiving offers and messages from us. Please ensure you are communicating within these guidelines and proper channels for the quickest possible interview consideration!
#AC
