The Azure Security Engineer is responsible for securing, administering, and maintaining the RRB Microsoft Azure environment. The role focuses primarily on Azure security engineering, identity and access management, vulnerability remediation, security monitoring, patch compliance, and operational support of Azure-hosted systems.
The engineer will work directly with infrastructure, network, Windows, Linux, and application teams to maintain a secure, stable, patched, and compliant Azure environment. This position does not serve as the organizational security lead but provides hands-on security engineering and Azure operational support.
Primary Responsibilities
Azure Security Engineering
Design, implement, and maintain security controls across the Microsoft Azure environment.
Administer and secure Microsoft Entra ID.
Configure and maintain Conditional Access policies, multifactor authentication, authentication controls, and identity protection settings.
Implement and manage Role-Based Access Control and least-privilege access.
Administer Privileged Identity Management and privileged account access.
Support identity governance, access reviews, and account lifecycle management.
Configure and maintain Azure Policy, security baselines, resource locks, and governance controls.
Review Azure subscriptions, resource groups, virtual machines, storage accounts, networking components, and platform services for security risks and configuration weaknesses.
Vulnerability Management and Patching
Review vulnerability findings affecting Azure-hosted Windows and Linux systems.
Coordinate and perform remediation of identified vulnerabilities.
Plan, schedule, and execute operating system patching using Azure Update Manager and related enterprise tools.
Monitor patch status and compliance across Azure virtual machines and hybrid systems.
Validate successful patch deployment and resolve failed or incomplete patching activities.
Coordinate maintenance windows, system reboots, validation testing, and rollback activities.
Track remediation status and maintain evidence for security reviews and audits.
Support timely resolution of configuration findings, unsupported software, missing updates, and security baseline deviations.
Azure Environment Administration
Administer Azure subscriptions, resource groups, virtual machines, storage accounts, virtual networks, and supporting cloud resources.
Deploy, configure, maintain, and troubleshoot Azure virtual machines.
Support Azure networking components, including VNets, subnets, NGs, private endpoints, DNS, load balancers, and connectivity services.
Manage Azure Backup, recovery configurations, and system restoration activities.
Monitor resource health, availability, capacity, and performance.
Support Azure Arc and hybrid infrastructure management where applicable.
Maintain cloud resource inventories, configurations, tagging, and lifecycle documentation.
Troubleshoot Azure infrastructure, access, identity, networking, and system issues.
Security Monitoring and Incident Response
Monitor security alerts through Microsoft Defender for Cloud, Microsoft Sentinel, Microsoft Defender XDR, Azure Monitor, and related tools.
Investigate security alerts, suspicious activity, access anomalies, and configuration risks.
Support incident response, containment, remediation, recovery, and post-incident documentation.
Review logs, alerts, identity events, and system activity to identify potential security issues.
Coordinate with internal security and infrastructure teams during security incidents.
Support root-cause analysis and corrective action planning.
Compliance and Documentation
Support federal cybersecurity compliance requirements, security assessments, audits, continuous monitoring, and POA&M remediation.