technical responsibilities
• experience securing azure cloud environments by implementing azure iaas solutions.
• set up and configure azure services like vnet, subnets, load balancers, app gateways
• ensure isolation between environments (dev, test, prod)
• implement nsgs, route tables, and custom dns, private link.
• setup and establish app gateway waf rules to handle inbound/outbound traffic.
• implement mechanisms to handle different security issue categories and scenarios
• implement and ensure security of azure services including key-vault, storage layers etc.
• conduct risk assessments and vulnerability analyses to identify potential threats and weaknesses.
• experience with scripting languages (., python, powershell, or bash) for security automation.
• familiarity with devsecops practices and tools like jenkins, ansible, or terraform.
• ensure compliance with industry standards and regulations such as gdpr, ccpa, hipaa, pci dss, and iso .
• conduct penetration testing, and system hardening activities to ensure the system is secured and meeting client expectations.
• create detailed documentation of security policies, incidents, and remediation steps.
• strong knowledge of data encryption, hashing, tokenization, and secure data transmission protocols
• preferably having certification in “microsoft certified: azure security engineer