{"schemaVersion":"jobsearcher.job.v1","id":"c3141e6cbe7d2da9eda74f13","url":"https://jobsearcher.com/jobs/c3141e6cbe7d2da9eda74f13","canonicalUrl":"https://jobsearcher.com/jobs/c3141e6cbe7d2da9eda74f13","title":"Cloud Security Engineer","description":"Company Overview\n\nEvery firm has a culture – the values, beliefs, methodology, attitudes and standards that reflect an organization’s DNA. But the truly inspiring firms – the game-changers, the industry leaders and the disruptors – have cultures that propel them to innovate and stand out. At Brown Advisory, we aim to be one of those inspired firms. Over the years, we have purposefully built and nurtured our client-first culture.\nBrown Advisory is an independent investment management and strategic advisory firm committed to delivering a combination of first-class performance, strategic advice and the highest level of client service. The firm’s clients—including individuals, families, family offices, endowments, foundations, charities, institutions, consultants, and financial intermediaries—are served by over 1,000 colleagues worldwide, all of whom are equity owners of the firm.\nBrown Advisory is currently seeking a pragmatic and hands-on Cloud Security Engineer to strengthen the firm's Azure security posture and help mature secure cloud operations. This blended role is designed for a security professional who can operate across cloud configuration, SaaS security, application integration, and security tooling without losing sight of business enablement.\nAs part of a lean Information Security team within a mid-sized financial services organization, this individual will partner closely with Infrastructure, Engineering, Enterprise Applications, third-party developers, and Risk partners. The role will help ensure that Brown Advisory-hosted applications, cloud services, and SaaS platforms are configured securely, monitored effectively, and integrated into the firm's broader security control environment.\nBlended Role Coverage\nPrimary emphasis: Cloud Security Engineer with a specific focus on secure Azure management, application hosting, and cloud control maturity.\nBlended coverage: Application Security / DevSecOps Analyst, SaaS security administration, cloud tool operations, SIEM integration support, and third-party application-development security guidance.\nDuties and Responsibilities\nOwn day-to-day security engineering for Azure environments, including secure configuration, cloud control hardening, logging, monitoring, and remediation follow-through.\nPartner with Infrastructure and Engineering teams to implement Azure security baselines, secure networking patterns, key management practices, storage protections, and workload guardrails.\nSupport Microsoft Defender for Cloud, Azure Policy, Entra-adjacent cloud controls, conditional access inputs, and other Microsoft security capabilities as part of the broader cloud security stack.\nReview Brown Advisory-hosted applications and third-party-developed cloud solutions for secure architecture, authentication, authorization, logging, data protection, and operational readiness.\nConfigure and improve security controls for SaaS platforms such as Salesforce, Box, Microsoft 365, and other business-critical cloud applications.\nSupport limited DevSecOps activities, including static and dynamic application-security testing coordination, vulnerability triage, and practical remediation guidance for internal and third-party development teams.\nIntegrate cloud, SaaS, and application telemetry into SIEM and detection workflows, and partner with Security Operations on actionable alerting and response procedures.\nMaintain sanctioned application lists, cloud security standards, exception records, and implementation documentation in partnership with GRC and technology owners.\nExecute immediate remediation actions where appropriate and coordinate more complex fixes across platform, application, and vendor teams.\nDevelop clear reporting on cloud security posture, open risks, remediation progress, and control maturity for security and technology leadership.\nPreferred Qualifications\nBachelor's degree in cyber security, computer science, engineering, information systems, or a relevant field, or equivalent professional experience.\n4-8 years of experience in information security, cloud security, infrastructure security, application security, or a related technical discipline.\nHands-on experience securing Microsoft Azure environments; financial services or other regulated-industry experience preferred.\nAbility to work independently in a lean team while coordinating across technology, vendor, risk, and business stakeholders.\nMicrosoft Azure security certifications, CISSP, CCSP, or other relevant professional designations preferred.\nTechnical Skills\nAzure security architecture, Defender for Cloud, Azure Policy, logging, monitoring, and secure configuration practices.\nMicrosoft 365 security and compliance concepts, including integration points with Entra ID, Purview, Defender, and conditional access.\nSaaS security administration for platforms such as Salesforce, Box, and other enterprise cloud applications.\nStatic and dynamic application-security testing concepts, vulnerability triage, and secure SDLC practices.\nSIEM integration patterns, alert tuning, security telemetry, and operational handoff to incident response teams.\nStrong written communication skills for standards, procedures, exception documentation, and leadership reporting.\nDemonstrates curiosity and a continuous improvement mindset by identifying opportunities to enhance processes, improve efficiency, and thoughtfully leverage new technologies and tools, including AI-enabled productivity solutions\nPersonal Attributes\nTake ownership and move initiatives forward without constant oversight.\nBalance technical depth, process discipline, and sound business judgment.\nApproach risk management pragmatically rather than theoretically.\nThrive in collaborative, high-accountability environments.\nCommunicate clearly with technical and non-technical colleagues.\nBring an entrepreneurial mindset to building and improving security capabilities.\nApplicants must be authorized to work in the United States without the need for current or future employer-sponsored work authorization (e.g., H-1B , O-1, F-1 (OPT), TN, or any other non-immigrant visa classifications that require employer support or sponsorship).\nMD Salary: $140-$150k. Commensurate with experience and location. Does not include bonus or long term incentive eligibility (if applicable).\nBenefits\n\nAt Brown Advisory we offer a competitive compensation package, including full benefits.\n\nMedical\nDental\nVision\nWellness program participation incentive\nFinancial wellness program\nFitness event fee reimbursement\nGym membership discounts\nColleague Assistance Program\nTelemedicine Program (for those enrolled in Medical)\nAdoption Benefits\nDaycare late pick-up fee reimbursement\nBasic Life & Accidental Death & Dismemberment Insurance\nVoluntary Life & Accidental Death & Dismemberment Insurance\nShort Term Disability\nPaid parental leave\nGroup Long Term Disability\nPet Insurance\n401(k) (50% employer match up to IRS limit, 4 year vesting)\nBrown Advisory is an Equal Employment Opportunity Employer.","company":"Brown Advisory","rawCompany":"brown advisory","city":"Baltimore","state":"MD","isRemote":false,"isActive":false,"createdAt":"2026-08-08T11:46:10.173Z","occupations":[{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1212.00","title":"Information Security Analysts","slug":"information-security-analysts"},{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"523940","title":"Portfolio Management and Investment Advice","slug":"portfolio-management-and-investment-advice"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Cloud Security Engineer","description":"Company Overview\n\nEvery firm has a culture – the values, beliefs, methodology, attitudes and standards that reflect an organization’s DNA. But the truly inspiring firms – the game-changers, the industry leaders and the disruptors – have cultures that propel them to innovate and stand out. At Brown Advisory, we aim to be one of those inspired firms. Over the years, we have purposefully built and nurtured our client-first culture.\nBrown Advisory is an independent investment management and strategic advisory firm committed to delivering a combination of first-class performance, strategic advice and the highest level of client service. The firm’s clients—including individuals, families, family offices, endowments, foundations, charities, institutions, consultants, and financial intermediaries—are served by over 1,000 colleagues worldwide, all of whom are equity owners of the firm.\nBrown Advisory is currently seeking a pragmatic and hands-on Cloud Security Engineer to strengthen the firm's Azure security posture and help mature secure cloud operations. This blended role is designed for a security professional who can operate across cloud configuration, SaaS security, application integration, and security tooling without losing sight of business enablement.\nAs part of a lean Information Security team within a mid-sized financial services organization, this individual will partner closely with Infrastructure, Engineering, Enterprise Applications, third-party developers, and Risk partners. The role will help ensure that Brown Advisory-hosted applications, cloud services, and SaaS platforms are configured securely, monitored effectively, and integrated into the firm's broader security control environment.\nBlended Role Coverage\nPrimary emphasis: Cloud Security Engineer with a specific focus on secure Azure management, application hosting, and cloud control maturity.\nBlended coverage: Application Security / DevSecOps Analyst, SaaS security administration, cloud tool operations, SIEM integration support, and third-party application-development security guidance.\nDuties and Responsibilities\nOwn day-to-day security engineering for Azure environments, including secure configuration, cloud control hardening, logging, monitoring, and remediation follow-through.\nPartner with Infrastructure and Engineering teams to implement Azure security baselines, secure networking patterns, key management practices, storage protections, and workload guardrails.\nSupport Microsoft Defender for Cloud, Azure Policy, Entra-adjacent cloud controls, conditional access inputs, and other Microsoft security capabilities as part of the broader cloud security stack.\nReview Brown Advisory-hosted applications and third-party-developed cloud solutions for secure architecture, authentication, authorization, logging, data protection, and operational readiness.\nConfigure and improve security controls for SaaS platforms such as Salesforce, Box, Microsoft 365, and other business-critical cloud applications.\nSupport limited DevSecOps activities, including static and dynamic application-security testing coordination, vulnerability triage, and practical remediation guidance for internal and third-party development teams.\nIntegrate cloud, SaaS, and application telemetry into SIEM and detection workflows, and partner with Security Operations on actionable alerting and response procedures.\nMaintain sanctioned application lists, cloud security standards, exception records, and implementation documentation in partnership with GRC and technology owners.\nExecute immediate remediation actions where appropriate and coordinate more complex fixes across platform, application, and vendor teams.\nDevelop clear reporting on cloud security posture, open risks, remediation progress, and control maturity for security and technology leadership.\nPreferred Qualifications\nBachelor's degree in cyber security, computer science, engineering, information systems, or a relevant field, or equivalent professional experience.\n4-8 years of experience in information security, cloud security, infrastructure security, application security, or a related technical discipline.\nHands-on experience securing Microsoft Azure environments; financial services or other regulated-industry experience preferred.\nAbility to work independently in a lean team while coordinating across technology, vendor, risk, and business stakeholders.\nMicrosoft Azure security certifications, CISSP, CCSP, or other relevant professional designations preferred.\nTechnical Skills\nAzure security architecture, Defender for Cloud, Azure Policy, logging, monitoring, and secure configuration practices.\nMicrosoft 365 security and compliance concepts, including integration points with Entra ID, Purview, Defender, and conditional access.\nSaaS security administration for platforms such as Salesforce, Box, and other enterprise cloud applications.\nStatic and dynamic application-security testing concepts, vulnerability triage, and secure SDLC practices.\nSIEM integration patterns, alert tuning, security telemetry, and operational handoff to incident response teams.\nStrong written communication skills for standards, procedures, exception documentation, and leadership reporting.\nDemonstrates curiosity and a continuous improvement mindset by identifying opportunities to enhance processes, improve efficiency, and thoughtfully leverage new technologies and tools, including AI-enabled productivity solutions\nPersonal Attributes\nTake ownership and move initiatives forward without constant oversight.\nBalance technical depth, process discipline, and sound business judgment.\nApproach risk management pragmatically rather than theoretically.\nThrive in collaborative, high-accountability environments.\nCommunicate clearly with technical and non-technical colleagues.\nBring an entrepreneurial mindset to building and improving security capabilities.\nApplicants must be authorized to work in the United States without the need for current or future employer-sponsored work authorization (e.g., H-1B , O-1, F-1 (OPT), TN, or any other non-immigrant visa classifications that require employer support or sponsorship).\nMD Salary: $140-$150k. Commensurate with experience and location. Does not include bonus or long term incentive eligibility (if applicable).\nBenefits\n\nAt Brown Advisory we offer a competitive compensation package, including full benefits.\n\nMedical\nDental\nVision\nWellness program participation incentive\nFinancial wellness program\nFitness event fee reimbursement\nGym membership discounts\nColleague Assistance Program\nTelemedicine Program (for those enrolled in Medical)\nAdoption Benefits\nDaycare late pick-up fee reimbursement\nBasic Life & Accidental Death & Dismemberment Insurance\nVoluntary Life & Accidental Death & Dismemberment Insurance\nShort Term Disability\nPaid parental leave\nGroup Long Term Disability\nPet Insurance\n401(k) (50% employer match up to IRS limit, 4 year vesting)\nBrown Advisory is an Equal Employment Opportunity Employer.","datePosted":"2026-08-08T11:46:10.173Z","dateModified":"2026-08-08T11:46:10.173Z","hiringOrganization":{"@type":"Organization","name":"Brown Advisory","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Baltimore","addressRegion":"MD","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"c3141e6cbe7d2da9eda74f13"},"url":"https://jobsearcher.com/jobs/c3141e6cbe7d2da9eda74f13"}}