Sr. Azure Security Engineer

ATR, LLC

Washington, District of Columbia

JOB DETAILS
JOB TYPE
Full-time
SKILLS
ARM (Advanced RISC Machine), Access Control, Agile Programming Methodologies, Applications Security, Atlassian JIRA, Authentication, Bash Scripting, Business-to-Business (B2B), CISM - Certified Information Security Manager, CISSP - Certified Information Systems Security Professional, Change Management, Cloud Architecture, Cloud Computing, CompTIA Security+, Computer Security, Cryptography, DNS (Domain Name System), DoD Directive 8140, DoD Directive 8570, Documentation, Federal Government, Firewalls, Government, IAT - Information Assurance Technical, IP (Internet Protocol), IPsec (IP Security), Identity Federation, Information/Data Security (InfoSec), International Classification of Diseases (ICD), Internet Application, Internet Security, Leadership, Microsoft Product Family, Microsoft Windows Azure, Network Protocols, Network Security, Public Key Infrastructure (PKI), Python Programming/Scripting Language, Requirements Management, Scripting (Scripting Languages), Secret Clearance, Secure Coding, Security Analysis, Security Compliance, Security Information and Event Management (SIEM), Security Monitoring, Security Protocols, Software Development, Software Patches, State Government, System Architecture, Systems Administration/Management, Systems Analysis, U.S. National Institute of Standards and Technology (NIST), United States Department of Defense (DoD), VPN (Virtual Private Network), Willing to Travel, Windows PowerShell, eCommerce
LOCATION
Washington, District of Columbia
POSTED
2 days ago
Sr. Azure Security EngineerSr. Azure Security Engineer Duties and Responsibilities:Design, implement, and maintain secure cloud architectures within Azure Government Secret classified environmentsEnforce zero trust principles, role-based access control (RBAC), and identity federation (e.g., Azure AD B2B/B2C with CAC/PIV)Configure and manage security controls such as Microsoft Defender for Cloud, Key Vault, Azure Policy, NSGs, and Private EndpointsAutomate compliance and security operations using PowerShell, Terraform, or ARM templatesIntegrate SIEM/SOAR tools (e.g., Microsoft Sentinel for IL6) for continuous monitoring, logging, and incident responseConduct vulnerability assessments and implement remediations aligned to NIST 800-53, DoD STIGs, and JSIGCollaborate with mission owners, compliance teams, and developers to ensure secure DevSecOps pipelinesSupport Authority to Operate (ATO) processes by generating security documentation, control evidence, and supporting auditsNavigate federal systems through the authorization process to achieve and maintain Authority to Operate (ATO)Work with the ISSO, Program and DOC ITD IA teams to maintain the necessary security authorizationsDevelop comprehensive System Security Plans (SSPs) documenting all implemented NIST 800-53 controlsCoordinate security assessments with third-party assessorsManage Plans of Actions & Milestones (POA&Ms) for addressing identified vulnerabilitiesEnsure continuous monitoring plans meet agency requirementsPrepare authorization packages for government reviewMaintain ongoing compliance through change management processesServe as the liaison between technical teams and authorizing officialsTranslate security requirements into actionable tasksEnsure all documentation meets the rigorous standards required for federal information systemsInformation Security Analyst Requirements and Qualifications:Bachelor's degree in information systems security; master's degree or equivalent professional experience in information security is preferredActive Secret clearance5+ years in cloud security, including 2+ in Azure Government or DoD environmentsStrong knowledge of Azure-native security tools, IL6 data handling, and cloud networkingProficient in scripting (PowerShell, Python, or Bash) and Infrastructure as Code (ARM, Bicep, Terraform)Experiences with DoD SRG, FedRAMP High, JSIG, and ICD 503 compliance frameworksHands-on experience with classified enclaves, hardened images, and enclave-to-enclave connectivityComprehensive knowledge of corporate Systems/Solutions Architecture processes and trendsStrong leadership, organizational, and communication skillsSecret Clearance to startKnowledge of Agile software development processRequired Technical Skills:SCAP, STIG, Patching, eMASS, and related RMF toolsCybersecurity, Systems Administration, implementation of RMF tools and processesExperience with gaining an ATO for systems and working the systems through the assessment and authorization processExperience working with IP networking, networking protocols and understanding of security related technologies including encryption, IPsec, PKI, VPNs, firewalls, proxy services, DNS, electronic email and access-listExcellent communication skillsExperience working in Agile software development teamsExperience with secure development, coding and engineering practicesExperience with Cybersecurity, Information Security, and Information Technology Security processes, protocols, and proceduresExperience - 10 years of relevant experience - * may vary based on technical training, certification(s), or degreeExperience with Cloud SecurityExperience working with leading firewall, network scanning and authentication technologiesExperience working with internet, web, application and network security techniquesExperience in Agile methodologyExperience in Jira to support development team in agile environmentExperience working in Federal or State government environmentsAbility to work independently and remotelyCertification: Active DoD 8570 IAT Level II Certification (Security+, CISSP, CISM)Travel Required: Little to no travel anticipated (may be required upon customer request)Location: On-site 3 days a week at minimum

About the Company

A

ATR, LLC