Senior Security Analyst – Azure
Pune
What You Will Do
- Monitor, investigate, and respond to security events and incidents in the Azure cloud environment, including networking, applications, and data storage.
- Collaborate with DevOps to integrate security best practices into Azure-based CI/CD pipelines and infrastructure-as-code processes (e.g., ARM templates, Terraform).
- Develop, document, and enforce Azure security policies and best practices (e.g., role-based access control (RBAC), AzureAD, Azure Security Center).
- Automate security detection, response, and vulnerability management tasks within Azure environments.
- Conduct threat hunting activities to identify potential security risks within cloud-based infrastructure.
- Guide teams on how to implement secure cloud-native services, including secure API access, encryption, and identity management within Azure.
- Perform thread modelling, vulnerability assessments, and risk analysis for Azure resources and provide remediation recommendations.
- Support compliance initiatives such as SOC2, ISO 27001, FedRAMP, and GDPR, ensuring that Azure deployments meet necessary security standards and regulations.
- Improve security automation in Azure environments, leveraging tools like Azure Sentinel, Microsoft Defender, and Azure Security Center.
What You Will Bring
- 5-8 years of experience in cybersecurity, with a strong focus on Azure cloud security and DevOps environments.
- Extensive hands-on experience securing Azure cloud infrastructure, including knowledge of Azure AD, Azure Security Center, Azure Sentinel, and Microsoft Defender.
- Familiarity with Azure-native security features such as encryption at rest, key vault management, and secure access controls (RBAC).
- Strong experience with infrastructure-as-code (e.g., Terraform, Azure Resource Manager templates) and CI/CD pipeline security.
- Proficient with security tools like SIEM (Splunk, ELK), EDR solutions (CrowdStrike, SentinelOne), and cloud security posture management (CSPM) platforms.
- Experience in Thread Modelling for cloud native SAAS applications
- Understanding of compliance frameworks (SOC2, ISO 27001, FedRAMP, GDPR) and how they apply to Azure environments.
- Certifications such as Microsoft Certified: Azure Security Engineer Associate, OSCP, or similar are highly desirable.
What Will Make You Stand Out
- Experience with container security (Kubernetes, Docker) in Azure.
- Familiarity with Azure-specific security services like Azure Firewall, Azure Bastion, and Azure Key Vault.
- Knowledge of threat intelligence integration with Azure Sentinel and other SIEM tools.
- Experience in building and maintaining automated vulnerability scanning and remediation solutions in Azure.
BenefitsWe offer comprehensive benefits that are specific to each country. Your talent acquisition contact can provide you with a FAQ list for your country. Everyone at Resilinc is eligible for healthcare coverage, participation in the employee stock option program, retirement benefits, paid time off and learning and development opportunities.
Resilinc is well-funded (read more about our recent investment from Vista Equity Partners), profitable, and shows no signs of slowing down. We run lean, work fast, and pivot quickly to accommodate our customers in order to keep supply chains moving. For more information visit our website: Resilinc End-to-End Supply Chain Risk Management Solutions - Resilinc
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Analytics APIs Automation Azure CI/CD Cloud Compliance CrowdStrike CSPM DevOps Docker EDR ELK Encryption FedRAMP Firewalls GDPR ISO 27001 Kubernetes Monitoring OSCP Risk analysis Risk management SaaS Sentinel SIEM SOC 2 Splunk Terraform Threat intelligence Vulnerability management
Perks/benefits: Career development Equity / stock options Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.