Cloud Security Architect *This is a hybrid position requiring 3 days/week onsite. *Local to the Triangle (Raleigh/Durham/Chapel Hill, NC) area only, please. *We are not considering Corp-to-Corp (C2C) arrangements for this position.
Description:
Our client is seeking a candidate to support their Microsoft Azure cloud tenant build and configuration specifically focusing on security compliance design implementation operations and assessment in support of Modernization efforts.
The candidate will need to come on-site on the first day to collect equipment.
All candidates must be local to the Triangle region of North Carolina.
This position may require on-site attendance when business needs warrant in-person participation such as scheduled meetings or other task-specific activities.
The role is for a Cloud Security Architect - Expert that will support the ongoing Modernization, Microsoft Azure cloud infrastructure, build security compliance, design security compliance, configuration and security compliance, assessment, and reporting.
The primary focus is to lead in security architecture configuration operations and compliance assessment of the environment and be a bridge between multiple agencies and vendors in the delivery of a Microsoft Azure cloud environment that meets security regulatory organizational industry security compliance requirements and compliance reporting balanced with functional requirements.
The complexity of these responsibilities are essential to support the build of the Azure tenant so that client systems can be placed in the cloud securely and meet compliance requirements.
Required Skills/Knowledge/Experience:
Design and maintain secure Azure architectures across identity, networking, data protection, logging/monitoring, and governance., Required 5 Years
Develop and enforce Azure security standards, policies, and reference architectures aligned to organizational and regulatory requirements., Required 5 Years
Lead threat modeling, risk assessments, and security reviews for the Azure cloud environment and NCDMV Modernization efforts., Required 5 Years
Provide expert guidance on Azure-native security tooling (e.g., Defender for Cloud, Sentinel, Azure Policy, Key Vault, Monitor, Log Analytics), Required 5 Years
Deep expertise with Azure security services, Required 5 Years
Strong understanding of cloud networking security: Zero Trust, routing, segmentation, firewalls, DNS, PKI, IAM, and secure landing zone architectures., Required 5 Years
Knowledge of compliance frameworks and mapping security controls (NIST 800 53, NIST 800 171, PCI DSS, FIPS, state security standards)., Required 5 Years
Experience designing and evaluating secure multi-tenant architectures and enterprise governance models in Microsoft Azure., Required 5 Years
Expertise integrating third party solutions (Cloudflare, Palo Alto, etc.) with Azure security and monitoring., Required 5 Years
Proficiency with automation and IaC: ARM/Bicep, Terraform, GitHub/Azure DevOps pipelines, and policy as code., Required 5 Years
Ability to translate security requirements into actionable architectural and technical guidance and configurations., Required 5 Years
Strong documentation skills for security standards, baselines, and system security plans., Required 5 Years
Experience and strong skills in identifying options for security assessments of the Azure environment and producing detailed and executive summary sec, Required 5 Years
Proper email communication will only be done to and from @astyra.com email addresses. Please ensure you are communicating with approved Astyra recruiters by checking this point when receiving offers and messages from us. Please ensure you are communicating within these guidelines and proper channels for the quickest possible interview consideration!
#AC
Numbers & Facts
Location
Raleigh, NC
Skills
ARM (Advanced RISC Machine)unmatched
Architectural Servicesunmatched
Automationunmatched
Calendar Managementunmatched
Cloud Architectureunmatched
Cloud Computingunmatched
Computer Securityunmatched
DNS (Domain Name System)unmatched
DevOpsunmatched
Documentationunmatched
Federal Information Processing Standards (FIPS)unmatched
Firewallsunmatched
GitHubunmatched
Information/Data Security (InfoSec)unmatched
Machine Toolunmatched
Microsoft Infrastructureunmatched
Microsoft Windows Azureunmatched
Network Routingunmatched
Network Securityunmatched
Operational Auditunmatched
Options Analysisunmatched
PCI-DSSunmatched
Public Key Infrastructure (PKI)unmatched
Regulationsunmatched
Regulatory Complianceunmatched
Regulatory Requirementsunmatched
Risk Analysisunmatched
Security Analysisunmatched
Security Architectureunmatched
Security Complianceunmatched
Security Designunmatched
Security Monitoringunmatched
Technical Leadershipunmatched
Threat Modelingunmatched
Threat and risk analysis (TRA)unmatched
U.S. National Institute of Standards and Technology (NIST)unmatched
🎯
Be found by employers
5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.
Level up your application
Professional resume templates
Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.