
Senior Security Systems Engineer (Azure)
Primary stack
Nice to have's
Job description
About the Position
We are seeking a Senior Security Systems Engineer (Azure) to implement and run security controls across Azure, Microsoft Entra ID and endpoints. You will harden configurations, remediate vulnerabilities and validate controls in a lean team building security foundations from the ground up. This is hands-on engineering, not a pure design role.
Responsibilities
- Configure and maintain Microsoft Entra ID controls including Conditional Access, Multi-factor authentication (MFA) and privileged access workflows
- Implement and tune Azure security controls including Microsoft Defender for Cloud, Azure Firewall and network segmentation
- Manage endpoint security baselines using Microsoft Intune and Microsoft Defender XDR
- Apply hardening standards, detect configuration drift and drive remediation to restore compliance
- Triage and remediate vulnerability findings from Tenable Nessus, Microsoft Defender and security reviews within agreed service levels
- Partner with Engineering to embed security configuration into infrastructure builds and change activities
- Provide technical escalation for control-level issues raised by Security Operations and external SOC or MDR partners
- Maintain clear documentation, standard operating procedures (SOPs) and control validation evidence in Confluence
Requirements
- Hands-on experience implementing security controls across Azure, identity and endpoint environments
- Strong knowledge of Microsoft Entra ID including Conditional Access, Privileged Identity Management (PIM) and Multi-factor authentication (MFA)
- Practical background with Microsoft Defender for Cloud, Microsoft Intune and endpoint protection tooling
- Experience configuring network security controls such as Azure Firewall and segmentation patterns
- Working knowledge of vulnerability management including Tenable Nessus findings triage, remediation and verification
- Familiarity with CIS Controls v8 or comparable hardening and baseline frameworks
- Ability to troubleshoot control failures, validate effectiveness and document outcomes clearly
- Confidence working in a small team with direct exposure to build, run, improvement and change review activities
Nice to Have
- Hands-on exposure to Microsoft Sentinel or Microsoft Defender XDR detections and response workflows
- Experience supporting audit evidence collection, regulatory mapping or governance reporting
- Microsoft certifications such as SC-100, SC-300 or AZ-500
We Offer
- Opportunity to work with cutting-edge technologies in a hybrid work environment
- Collaborate with a dedicated team to build robust security foundations
- Professional growth and development opportunities
About the Company
EPAM Systems is a global software engineering and product development company. We partner with the world’s leading brands to deliver innovative solutions and drive digital transformation.
© EPAM. This job description was sourced from the employer's public career page. TheJob is not the employer — we index the posting and route candidates to the source. All content rights and hiring decisions belong to the employer.
EPAM helps organizations innovate their business processes and rethink the way they manage their businesses so they can remain competitive in this new digital age.