Cloud and Application Security Specialist

Lingatech Inc.

Middletown, PA

JOB DETAILS
SKILLS
ARM (Advanced RISC Machine), Access Control, Analysis Skills, Applications Security, Authentication, Automation, Benchmarking, Best Practices, CCSP - Cisco Certified Security Professional, CISSP - Certified Information Systems Security Professional, Cloud Applications, Cloud Architecture, Cloud Computing, Cloud Storage, CompTIA Security+, Computer Science, Computer Security, Cryptography, Forensic Science, Government, Identify Issues, Identity Data Management, Incident Response, Information Technology & Information Systems, Information/Data Security (InfoSec), Infrastructure as a Service (IaaS), Internet Security, Loss Prevention, Microsoft Active Directory, Microsoft Product Family, Microsoft Windows Azure, Network Administration/Management, Operations Processes, Platform as a Service (PaaS), Protocol Independent Multicast (PIM), Public Transport, Regulatory Compliance, Regulatory Requirements, Requirements Management, Risk Analysis, Risk Management, SQL (Structured Query Language), Security Analysis, Security Architecture, Security Attacks, Security Design, Software Development, Technical Leadership, Technical Writing, U.S. National Institute of Standards and Technology (NIST)
LOCATION
Middletown, PA
POSTED
1 day ago

Job Overview

We are seeking a Cloud and Application Security Specialist to design, implement, and maintain security controls across a Microsoft Azure cloud environment supporting mission-critical enterprise systems. This role is responsible for securing Azure infrastructure, cloud-native applications, identity services, and data while ensuring compliance with security standards, governance frameworks, and industry best practices. The ideal candidate is an experienced cloud security professional with expertise in Azure security technologies, threat detection, identity management, and cloud governance.

Job Duties

Azure Security Engineering

  • Design, implement, and maintain security controls across Microsoft Azure environments, including Infrastructure-as-a-Service (IaaS), Platform-as-a-Service (PaaS), networking, storage, databases, and identity services.
  • Develop and enforce Azure security baselines, governance standards, and cloud security architecture requirements.
  • Implement and manage Azure Policy, Management Groups, Resource Locks, Role-Based Access Control (RBAC), Privileged Identity Management (PIM), and Conditional Access policies.
  • Support the development and maintenance of secure Azure Landing Zones and cloud governance frameworks.

Cloud Threat Detection and Response

  • Administer and optimize Microsoft Defender for Cloud, Microsoft Sentinel, Microsoft Entra ID Protection, and other Azure-native security tools.
  • Investigate cloud security alerts, suspicious activity, and indicators of compromise affecting Azure resources and workloads.
  • Support cloud-focused incident response activities, including containment, forensic analysis, and remediation.
  • Develop and enhance cloud monitoring, threat detection, and alerting capabilities to improve security visibility.

Cloud Security Assessments and Risk Management

  • Conduct security assessments of Azure resources to identify vulnerabilities, misconfigurations, and compliance gaps.
  • Evaluate security risks associated with cloud deployments and recommend mitigation strategies.
  • Support vulnerability management activities by reviewing cloud security findings and coordinating remediation efforts.
  • Perform security architecture reviews for new cloud services, applications, and infrastructure deployments.

Identity and Data Protection

  • Secure Microsoft Entra ID (Azure Active Directory), authentication services, and privileged access management solutions.
  • Implement and maintain least-privilege access models, identity governance controls, and multi-factor authentication (MFA) requirements.
  • Protect sensitive data through encryption, key management, data classification, and data loss prevention technologies.
  • Assist with securing cloud-native databases, storage accounts, and application services.

Collaboration, Governance, and Compliance

  • Develop and maintain cloud security standards, operational procedures, technical documentation, and implementation guides.
  • Support cybersecurity audits, compliance assessments, and regulatory requirements related to cloud environments.
  • Provide technical guidance and recommendations on Azure security architecture and cloud security best practices.
  • Collaborate with infrastructure, networking, and application development teams to ensure secure deployment and ongoing management of cloud resources.

Required Qualifications

  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Engineering, or a related technical field; or an equivalent combination of education and experience.
  • 3+ years of experience administering, engineering, or securing Microsoft Azure environments.
  • Strong understanding of Azure IaaS, PaaS, networking, identity management, storage services, and cloud security architecture.
  • Experience with Microsoft Defender for Cloud, Microsoft Sentinel, Microsoft Entra ID, Azure Policy, Azure RBAC, and cloud governance frameworks.
  • Knowledge of Zero Trust Architecture, the NIST Cybersecurity Framework, CIS Benchmarks, and cloud security best practices.
  • Strong analytical, troubleshooting, communication, and technical documentation skills.

Preferred Qualifications

  • Microsoft Certified: Azure Security Engineer Associate (AZ-500) certification.
  • Microsoft Certified: Azure Administrator Associate (AZ-104) certification.
  • CISSP, CCSP, Security+, CySA+, or equivalent cybersecurity certification.
  • Experience with Infrastructure as Code (Terraform, Bicep, ARM Templates), Azure Landing Zones, or cloud automation.
  • Experience securing Azure Kubernetes Service (AKS), Azure App Services, Azure SQL, and other cloud-native services.
  • Experience supporting public sector, transportation, or critical infrastructure environments.

About the Company

L

Lingatech Inc.