Job has been saved to your Account Portal!

Sr. Azure Security Engineer

Job Description

  • Design and implement Azure security architectures aligned with FSI regulatory requirements including SOX, PCI-DSS, GLBA, and FFIEC guidelines
  • Lead Azure Security Center / Microsoft Defender for Cloud configuration, policy management, and continuous monitoring
  • Own and mature Azure Active Directory (Entra ID) security posture — PIM, Conditional Access, MFA, identity governance, and privileged identity management
  • Architect and enforce Azure Policy, Blueprints, and Management Group structures to ensure least-privilege and compliant deployments
  • Lead implementation and management of Azure Sentinel SIEM/SOAR — develop custom detection rules, playbooks, and automation workflows
  • Drive network security design: NSGs, Azure Firewall, DDoS protection, Private Endpoints, and hub-spoke architectures
  • Perform threat modeling, risk assessments, and security reviews for new Azure workloads and platform changes
  • Manage secrets, keys, and certificate lifecycle via Azure Key Vault; ensure HSM integration for regulated workloads
  • Lead response to cloud-native security incidents, conducting root cause analysis and driving remediation
  • Collaborate with DevSecOps teams to embed security into CI/CD pipelines (GitHub Actions, Azure DevOps)
  • Produce executive-level reporting on cloud security KPIs, control effectiveness, and risk posture
  • Mentor junior engineers and contribute to team capability building and knowledge sharing
  • Qualification

  • 7+ years of information security experience, with 4+ years focused on Azure cloud security in a regulated industry
  • Deep technical expertise across core Azure security services: Defender for Cloud, Sentinel, Entra ID, Key Vault, Firewall, NSGs, Policy
  • Strong understanding of financial services compliance frameworks: PCI-DSS, SOX, GLBA, FFIEC, NIST CSF
  • Proficiency in scripting and automation: PowerShell, Python, Bicep/ARM templates, Terraform
  • Experience with zero-trust architecture implementation in enterprise Azure environments
  • Solid understanding of PKI, cryptographic standards, and secrets management
  • Bachelor's degree in Computer Science, Information Security, or equivalent practical experience
  •  Preferred Qualifications
  • Microsoft Certified: Azure Security Engineer Associate (AZ-500) — required
  • Microsoft Certified: Security Operations Analyst (SC-200) — strongly preferred
  • Additional certifications: CISSP, CISM, CCSP, CEH
  • Experience with DORA, MAS TRM, or OCC guidelines
  • Familiarity with multi-cloud security strategies and cross-cloud SIEM integrations
  • Prior experience in investment banking, retail banking, or insurance environments
  • About The Global Business Services

    A dynamic offshore hub based in the Philippines, serving as a vital extension of its parent organization’s operations. As an internal support center, it delivers high-impact services across multiple departments, including technology, compliance, finance, and operations, supporting various lines of business.

    Sr. Azure Security Engineer

    Global Business Services

    Taguig

    Visit Profile

    Salary

    100,000-150,000/month

    Position Level

    Staff

    Job Level

    Experienced Hire

    Job Type

    Full Time

    Hiring Until

    11/30/2026