This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
A Cloud Network Security Engineer is focused on Azure networking is responsible for designing and securing cloud-native network architectures that support highly available, automated, and mission‑critical workloads. They serve as a subject matter expert for Azure network security services, integrating telemetry and platform capabilities to enable cohesive monitoring, alerting, and analytics across the security ecosystem. This role drives operational excellence by automating deployments and workflows, proactively maintaining platform health, and responding to cloud-based network threats. The engineer continuously improves service quality using data‑driven insights and aligned cloud change-management practices.
Act as the SME for Azure network security services, advising engineers, developers, analysts, and penetration testers
Integrate Azure network services and logs with broader security platforms and cloud‑native big‑data systems to enable monitoring, alerting, and analytics
Operate and manage large‑scale cloud network security services, including incident investigation, threat response, and continuous service reliability improvements
Automate deployments, configuration updates, and operational workflows using scripting, infrastructure‑as‑code, and AI‑driven solutions
Maintain overall platform health through proactive troubleshooting, monitoring, telemetry analysis, and continuous improvement of cloud network coverage
Execute cloud service deployments and upgrades in alignment with change management processes while driving service quality through data‑driven insights
Requirements:
Doctorate in Cyber Security, Data Science, Mathematics, Computer Science, or related field
OR Master's Degree in Cyber Security, Data Science, Mathematics, Computer Science, or related field AND 3+ years experience in one or more of the following: Cloud security engineering (Azure, AWS, or GCP)
Cloud networking and network security (VNETs, firewalls, routing, segmentation, Zero Trust network controls)
Secure cloud architecture or zero‑trust design
Threat modeling for cloud-native services
Cloud identity & access management (IAM), RBAC, or conditional access
Cloud threat detection, anomaly detection, or behavioral analytics
Security monitoring and incident response for cloud environments
SIEM/SOAR for cloud logs and telemetry
Detection engineering for cloud platforms
Leveraging AI/ML for data analytics, cloud threat detection, and automated cloud, network or security tasks
OR Bachelor's Degree in Statistics, Mathematics, Computer Science, or related field AND 4+ years experience in one or more of the following: Cloud security engineering (Azure, AWS, or GCP)
Cloud networking and network security (VNETs, firewalls, routing, segmentation, Zero Trust network controls)
Secure cloud architecture or zero‑trust design
Threat modeling for cloud-native services
Cloud identity & access management (IAM), RBAC, or conditional access
Cloud threat detection, anomaly detection, or behavioral analytics
Security monitoring and incident response for cloud environments
SIEM/SOAR for cloud logs and telemetry
Detection engineering for cloud platforms
Leveraging AI/ML for data analytics, cloud threat detection, and automated cloud, network or security tasks
OR equivalent experience
Citizenship & Citizenship Verification: This position requires verification of U.S citizenship due to citizenship-based legal restrictions
This position will be required to pass the Microsoft Cloud Background Check upon hire/transfer and every two years thereafter
Nice to have:
5+ years experience securing cloud environments (Azure preferred, AWS/GCP acceptable)
Experience designing or reviewing secure cloud network architectures (VNETs, Private Endpoints, firewalls, segmentation, routing, DNS, Zero Trust network patterns)
Experience with cloud-native security controls including Microsoft Defender for Cloud, Defender for Identity, Defender for Endpoint, and Microsoft Entra ID
Hands-on experience with IaC security (Terraform, Bicep), CI/CD security, and DevSecOps pipelines
Experience with threat detection engineering, cloud telemetry analysis, or building detections for SIEM/SOAR platforms
Strong knowledge of network security fundamentals (firewalls, packet inspection, TLS/SSL, VPN, IPS/IDS, SASE, Zero Trust)
Experience with incident response in cloud or hybrid environments