NCDOT - Cloud Security Architect - Expert

Expert Technology Services

  • Raleigh, NC
  • 3 days ago

    Highlights

    Utilize deep expertise in Azure security services and cloud networking security (Zero Trust, routing, segmentation, firewalls, DNS, PKI, IAM, secure landing zones). - Provide expert guidance on Azure-native security tools (e.g., Defender for Cloud, Sentinel, Azure Policy, Key Vault, Monitor, Log Analytics).

    Numbers & Facts

    LocationRaleigh, NC

    Description

    Job Summary (List Format):

    - Support the NCDOT Microsoft Azure cloud tenant build and configuration, focusing on security compliance for DMV Modernization efforts.
    - Serve as a Cloud Security Architect (Expert) leading security architecture, configuration, operations, and compliance assessment.
    - Act as a liaison between NCDIT, NCDOT DMV, and vendors to ensure secure Azure cloud environment delivery.
    - Design, implement, and maintain secure Azure architectures across identity, networking, data protection, logging/monitoring, and governance.
    - Develop and enforce Azure security standards, policies, and reference architectures aligned with organizational and regulatory requirements.
    - Lead threat modeling, risk assessments, and security reviews for the Azure environment.
    - Provide expert guidance on Azure-native security tools (e.g., Defender for Cloud, Sentinel, Azure Policy, Key Vault, Monitor, Log Analytics).
    - Utilize deep expertise in Azure security services and cloud networking security (Zero Trust, routing, segmentation, firewalls, DNS, PKI, IAM, secure landing zones).
    - Apply knowledge of compliance frameworks (NIST 800-53, NIST 800-171, PCI DSS, FIPS, state standards) and map security controls accordingly.
    - Design and evaluate secure multi-tenant architectures and enterprise governance models in Azure.
    - Integrate third-party security and monitoring solutions (e.g., Cloudflare, Palo Alto) with Azure.
    - Leverage automation and Infrastructure as Code (IaC) tools (ARM/Bicep, Terraform, GitHub/Azure DevOps pipelines, policy as code).
    - Translate security requirements into actionable technical guidance and configurations.
    - Create and maintain strong security documentation, including standards, baselines, and security plans.
    - Identify and execute options for security assessments of the Azure environment, producing detailed and executive reports.
    - Position requires on-site attendance on the first day for equipment collection and may require in-person presence for business needs.
    - Candidates must be local to the Triangle region of North Carolina.

    Similar Jobs

    See more jobs