Overview:
Role
We are seeking a skilled Cloud Engineer (Security Focus) with expertise in Azure and strong foundations in system administration. In this role, you will design, secure, and manage cloud infrastructures while embedding security practices into every layer of our environments.
As part of our modernization efforts in the AEC industry, you will ensure that our infrastructure is not only scalable and performant, but also resilient against evolving cyber threats.
You will collaborate closely with R&D, and Product Management to enforce enterprise-grade standards for compliance, monitoring, and security automation across cloud and hybrid systems.
Key Responsibilities
* Design, implement, and manage secure cloud infrastructure on Azure, ensuring compliance, scalability, and resilience.
* Collaborate with Security, Development, and DevOps teams to embed security controls in infrastructure design and CI/CD pipelines.
* Implement cloud security best practices: IAM governance, encryption, vulnerability management, network segmentation, and zero-trust access.
* Integrate and manage security monitoring tools (Azure Security Center, Microsoft Defender for Cloud, Sentinel, AWS GuardDuty, etc.) to detect and respond to threats.
* Automate security operations with tools like Terraform, Ansible, or custom scripts (Python, PowerShell).
* Support incident response and forensic investigations for cloud and hybrid systems.
* Ensure compliance with industry standards (ISO 27001, SOC 2, GDPR) and implement auditing/logging frameworks.
* Work on legacy-to-cloud migrations, ensuring security baselines are met during transitions.
* Provide technical guidance on securing AEC-specific applications (BIM, CAD) running in cloud or hybrid environments.
Key Metrics
* Security Posture: Reduced vulnerabilities and improved compliance scores.
* Incident Response Time: Speed of detecting and mitigating threats.
* Access Control: Proper enforcement of least privilege and zero-trust.
* Cost & Performance: Securely optimizing cloud costs without sacrificing security.
* Resilience: Cloud and hybrid environments resistant to attacks and outages.
Responsibilities:
* 3-5 years managing Azure (and hybrid) environments.
* 2+ years of security-focused experience
* Proven knowledge of cloud security principles: IAM, encryption, vulnerability management, SIEM/SOAR, firewalls, and threat detection.
* Experience integrating security in CI/CD pipelines
* Proficiency in scripting (Python, PowerShell, Bash) for security automation.
* Familiarity with incident response frameworks and security standards
* Strong collaboration skills across IT, Security, and Development teams.
* Fluent English, with ability to document security and compliance processes.
Nice to Have
* Hands-on experience with Microsoft Sentinel, Defender for Cloud, or other SIEM/SOAR platforms.
* Knowledge of Kubernetes security
* Multi-cloud security exposure (Azure + AWS).
* Familiarity with AEC industry software and its security implications.
Qualifications:
* Bachelor's degree in Computer Science, Engineering, or related field.
Nice to Have:
* Certifications: Azure Solutions Architect or similar.
Share this job:
Share this Job