27 Sep
|
Digisme
|
Chennai
Role & responsibilities:
- Manage and monitor Microsoft Azure security controls across production environments.
- Administer Microsoft Entra ID security, MFA, Conditional Access, Azure RBAC and privileged access.
- Implement and maintain least-privilege access and conduct periodic access reviews.
- Monitor and improve Microsoft Defender for Cloud Secure Score and remediate security recommendations.
- Manage security monitoring and incident detection using Microsoft Sentinel and Defender.
- Investigate security alerts, suspicious activities and potential security incidents.
- Coordinate security incident containment, recovery and Root Cause Analysis (RCA).
- Review and secure Azure VMs, Azure SQL/SQL Server, Storage Accounts, Key Vaults, VNets, NSGs, Firewall/WAF and Private Endpoints.
- Identify Internet-exposed resources and reduce unnecessary public access.
- Manage and monitor OS security patching and patch compliance using Azure Update Manager.
- Perform vulnerability assessment, track remediation and escalate critical/high-risk findings.
- Monitor database security controls including encryption, auditing, firewall configuration and privileged access.
- Ensure Azure Storage security, encryption, access controls and appropriate SAS/key management.
- Manage Azure Key Vault security, secrets/certificate access and rotation controls.
- Monitor Azure Recovery Services Vault and backup security, including retention, soft delete, immutability and restore readiness.
- Implement and maintain Azure Policy and cloud security baselines.
- Ensure security logging and audit trails are appropriately configured and retained.
- Conduct periodic security reviews of NSGs, firewall rules, privileged accounts and cloud configurations.
- Support ISO 27001, SOC 2 and customer security/compliance assessments.
- Coordinate penetration testing and remediation of identified vulnerabilities.
- Maintain security documentation, incident records, risk registers and audit evidence.
- Prepare monthly security reports covering incidents, vulnerabilities, patch compliance, privileged access, Secure Score and outstanding security risks.
- Work closely with Infrastructure, DBA, DevOps and Development teams to ensure identified security issues are remediated within agreed timelines.
Preferred candidate profile:
- Hands-on experience administering and securing Microsoft Azure environments.
- Solid knowledge of Microsoft Entra ID, Azure RBAC, MFA and Conditional Access.
- Experience with Microsoft Defender for Cloud.
- Experience with Microsoft Sentinel / SIEM.
- Good understanding of Azure VMs, VNets, NSGs, Azure Firewall/WAF and Private Endpoints.
- Knowledge of Azure SQL / SQL Server security.
- Experience with Azure Storage, Key Vault and Recovery Services Vault.
- Understanding of vulnerability management and security patch management.
- Knowledge of cloud security principles, least privilege and Zero Trust concepts.
- Familiarity with incident response, security monitoring and Root Cause Analysis.
- Understanding of ISO 27001 and SOC 2 security controls is preferred.
- Ability to work with Infrastructure, Development, DBA and DevOps teams on security remediation.
Preferred Certifications:
- Microsoft Certified: Azure Security Engineer Associate
- Microsoft Azure Administrator certification
- Microsoft Security Operations Analyst certification
- Other relevant cloud/security certifications will be an advantage.
What We Are Looking For: A hands-on security professional who can identify risks, implement appropriate Azure security controls, continuously monitor the environment, coordinate remediation and respond effectively to security incidents.
This is an operational cloud-security role requiring both technical capability and strong ownership of security outcomes.
📌 Azure Security Administrator (Chennai)
🏢 Digisme
📍 Chennai