JOBSEARCHER

AI Security Cloud Engineer

Role: AI Security Cloud EngineerLocation: Warren NJ (100% Onsite)ContractCategorySkillDescription from the JDCustomer PriorityIdentity & Access ManagementMicrosoft Entra IDAdminister and harden Microsoft Entra ID: app registrations and Enterprise Application permissions, consent governance, service principals and managed identities, credential and secret hygiene, and least-privilege scoping.MandatoryModern AuthenticationSecure and govern modern authentication flows across the estate: OIDC, OAuth 2.0 with PKCE, JWT validation and handling, and mTLS.Good to HaveConditional AccessDesign, implement, and continuously tune Conditional Access policies.Good to HavePrivileged Access SecurityMFA enforcement, Privileged Identity Management (PIM) / just-in-time elevation, role minimization, and break-glass procedures.MandatoryApp Registrations & Enterprise ApplicationsApp registrations and Enterprise Application permissions, consent governance, service principals and managed identities, credential and secret hygiene, and least-privilege scoping.Good to HaveCloud SecuritySecurity Findings RemediationOwn the full lifecycle of security findings and recommendations through triage, remediation, verification, and closure.MandatoryRecurrence PreventionRoot-cause recurring issues and implement systemic fixes using policy-as-code, automated guardrails, and secure baselines.MandatoryMicrosoft Defender for CloudDrive secure-score improvement, remediate recommendations, and manage cloud security posture (CSPM).MandatoryAzure PolicyBuild and enforce guardrails using Azure Policy; maintain secure-by-default baselines and detect or remediate configuration drift.Good to HaveSecurity GovernanceContribute to standards, control definitions, exception handling, and audit evidence.MandatoryCloud & SaaS Admin Portal SecuritySecure all cloud and SaaS administrative portals, including Azure, Microsoft 365 admin, identity providers, and additional cloud platforms in use.MandatoryTerraform for IaCTerraform & Secure IaC BaselinesBuild and enforce guardrails using Terraform; maintain secure-by-default infrastructure-as-code baselines and detect or remediate configuration drift.OptionalAI SecurityAI Workloads, Services & AgentsApply security controls to AI workloads, services, and AI agents.MandatoryAI Identities, Permissions & RiskAgent and workload identities, tool and permission scoping, data-exposure and prompt-injection risk, and emerging AI security best practices.