{"schemaVersion":"jobsearcher.job.v1","id":"4c2eca237a033c2bb5b12165","url":"https://jobsearcher.com/jobs/4c2eca237a033c2bb5b12165","canonicalUrl":"https://jobsearcher.com/jobs/4c2eca237a033c2bb5b12165","title":"Senior Cloud Security Engineer","description":"Senior Cloud Security Engineer - direct hire - 100% remote\nA hands-on technical leader embedded within the Infrastructure team, responsible for securing enterprise systems across cloud, identity, endpoints, and network environments.\nThis role serves as the primary security engineering resource supporting Microsoft Azure, identity services (Entra ID), Microsoft 365, and enterprise infrastructure, combining architecture, engineering, and operational responsibilities. The engineer will design and implement security controls, respond to threats, and partner with infrastructure peers to ensure systems are secure, resilient, and aligned with business and compliance requirements.\nDuties and Responsibilities:\nCloud & Infrastructure Security Engineering\nDesign, implement, and maintain secure Microsoft Azure environments across IaaS and PaaS workloads\nConfigure and manage Azure-native security controls, including identity integration (Entra ID), network security, and platform security baselines\nImplement Azure governance using policies, RBAC, and resource organization strategies\nDesign and support secure networking configurations (VNets, NSGs, Private Endpoints, VPN)\nPartner with infrastructure engineers to ensure servers, endpoints, and network components are securely configured\nSupport cloud and hybrid infrastructure initiatives with security-first design principles\nImplement Infrastructure as Code (IaC) for secure and repeatable deployments\nIdentity & Microsoft 365 Security\nSecure identity using Microsoft Entra ID, including Conditional Access, MFA, and access governance\nImplement and maintain security controls across Microsoft 365 (Exchange Online, SharePoint, Teams, OneDrive)\nManage email security practices, including SPF, DKIM, DMARC, and secure email gateways\nSupport endpoint and device security integration using Microsoft Intune and related technologies\nEnable secure collaboration while balancing usability and risk\nSecurity Operations & Incident Response\nOwns endpoint and vulnerability security tooling, including EDR and vulnerability management platforms (e.g., SentinelOne, Qualys VMDR)\nMonitor, investigate, and respond to security events and alerts across cloud and on-prem environments including EDR platform (e.g., SentinelOne)\nPartner with internal teams and external providers (e.g., SIEM/SOC) to respond to detected threats\nIdentify, prioritize, and drive remediation of vulnerabilities across cloud, infrastructure, and endpoint environments using vulnerability management platforms (e.g., Qualys VMDR)\nParticipate in incident response, root cause analysis, and post-incident improvements\nContinuously improve detection, response, and operational security capabilities\nGovernance, Compliance & Risk Management\nImplement and maintain security controls aligned with CIS, NIST, and Zero Trust frameworks\nSupport third-party risk management activities using SaaS platforms (e.g., UpGuard), including vendor risk assessments, exposure identification and remediation coordination\nLead the development, implementation, and ongoing maintenance of enterprise security baselines aligned to CIS Critical Security Controls, ensuring consistent enforcement across cloud, endpoint, and infrastructure platforms\nSupport compliance initiatives (e.g., PCI or similar regulatory requirements)\nPerform risk assessments and recommend mitigation strategies\nEnsure consistent application of security standards across all infrastructure platforms\nCollaboration & Leadership\nServe as the security subject matter expert within the Infrastructure team\nProvide mentorship and guidance to network and endpoint engineering peers\nCollaborate with vendors, partners, and service providers for security solutions and support\nCommunicate risks, issues, and recommendations clearly to both technical and business stakeholders\nIdentify opportunities to improve processes, tooling, and overall security posture\nCompetencies:\nBroad, hands-on expertise across cloud, identity, endpoint, and network security\nAbility to balance operational responsibilities with long-term security improvements\nStrong collaboration across infrastructure disciplines (network, endpoint, cloud)\nAbility to translate business requirements into practical, secure solutions\nPay: $127,709.41 - $140,000.00 per year\nWork Location: Remote","company":"Calibro","rawCompany":"calibro","city":"Remote","state":"OR","isRemote":false,"isActive":false,"createdAt":"2026-08-03T18:12:23.468Z","occupations":[{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1212.00","title":"Information Security Analysts","slug":"information-security-analysts"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541513","title":"Computer Facilities Management Services","slug":"computer-facilities-management-services"},{"code":"541519","title":"Other Computer Related Services","slug":"other-computer-related-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Senior Cloud Security Engineer","description":"Senior Cloud Security Engineer - direct hire - 100% remote\nA hands-on technical leader embedded within the Infrastructure team, responsible for securing enterprise systems across cloud, identity, endpoints, and network environments.\nThis role serves as the primary security engineering resource supporting Microsoft Azure, identity services (Entra ID), Microsoft 365, and enterprise infrastructure, combining architecture, engineering, and operational responsibilities. The engineer will design and implement security controls, respond to threats, and partner with infrastructure peers to ensure systems are secure, resilient, and aligned with business and compliance requirements.\nDuties and Responsibilities:\nCloud & Infrastructure Security Engineering\nDesign, implement, and maintain secure Microsoft Azure environments across IaaS and PaaS workloads\nConfigure and manage Azure-native security controls, including identity integration (Entra ID), network security, and platform security baselines\nImplement Azure governance using policies, RBAC, and resource organization strategies\nDesign and support secure networking configurations (VNets, NSGs, Private Endpoints, VPN)\nPartner with infrastructure engineers to ensure servers, endpoints, and network components are securely configured\nSupport cloud and hybrid infrastructure initiatives with security-first design principles\nImplement Infrastructure as Code (IaC) for secure and repeatable deployments\nIdentity & Microsoft 365 Security\nSecure identity using Microsoft Entra ID, including Conditional Access, MFA, and access governance\nImplement and maintain security controls across Microsoft 365 (Exchange Online, SharePoint, Teams, OneDrive)\nManage email security practices, including SPF, DKIM, DMARC, and secure email gateways\nSupport endpoint and device security integration using Microsoft Intune and related technologies\nEnable secure collaboration while balancing usability and risk\nSecurity Operations & Incident Response\nOwns endpoint and vulnerability security tooling, including EDR and vulnerability management platforms (e.g., SentinelOne, Qualys VMDR)\nMonitor, investigate, and respond to security events and alerts across cloud and on-prem environments including EDR platform (e.g., SentinelOne)\nPartner with internal teams and external providers (e.g., SIEM/SOC) to respond to detected threats\nIdentify, prioritize, and drive remediation of vulnerabilities across cloud, infrastructure, and endpoint environments using vulnerability management platforms (e.g., Qualys VMDR)\nParticipate in incident response, root cause analysis, and post-incident improvements\nContinuously improve detection, response, and operational security capabilities\nGovernance, Compliance & Risk Management\nImplement and maintain security controls aligned with CIS, NIST, and Zero Trust frameworks\nSupport third-party risk management activities using SaaS platforms (e.g., UpGuard), including vendor risk assessments, exposure identification and remediation coordination\nLead the development, implementation, and ongoing maintenance of enterprise security baselines aligned to CIS Critical Security Controls, ensuring consistent enforcement across cloud, endpoint, and infrastructure platforms\nSupport compliance initiatives (e.g., PCI or similar regulatory requirements)\nPerform risk assessments and recommend mitigation strategies\nEnsure consistent application of security standards across all infrastructure platforms\nCollaboration & Leadership\nServe as the security subject matter expert within the Infrastructure team\nProvide mentorship and guidance to network and endpoint engineering peers\nCollaborate with vendors, partners, and service providers for security solutions and support\nCommunicate risks, issues, and recommendations clearly to both technical and business stakeholders\nIdentify opportunities to improve processes, tooling, and overall security posture\nCompetencies:\nBroad, hands-on expertise across cloud, identity, endpoint, and network security\nAbility to balance operational responsibilities with long-term security improvements\nStrong collaboration across infrastructure disciplines (network, endpoint, cloud)\nAbility to translate business requirements into practical, secure solutions\nPay: $127,709.41 - $140,000.00 per year\nWork Location: Remote","datePosted":"2026-08-03T18:12:23.468Z","dateModified":"2026-08-03T18:12:23.468Z","hiringOrganization":{"@type":"Organization","name":"Calibro","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Remote","addressRegion":"OR","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"4c2eca237a033c2bb5b12165"},"url":"https://jobsearcher.com/jobs/4c2eca237a033c2bb5b12165"}}