Sr Azure Infrastructure & Security Engineer

WorkNovas LLC

  • Phoenix, AZ
  • 12 days ago

    Highlights

    Expect work across Defender for Cloud and Sentinel, Entra ID privileged access, network architecture (hub-spoke, Private Endpoints, Application Gateway/WAF, Traffic Manager), Azure Policy and governance, and producing written evidence for auditors as tasks are completed. Knows the Azure portal, Entra ID, Defender, Sentinel, and Azure Monitor / Activity Log well enough to locate and export audit evidence (configs, logs, screenshots, reports) on request.

    Numbers & Facts

    LocationPhoenix, AZ

    Description

    Sr Azure Infrastructure & Security Engineer

    Location: 5 days onsite in Phoenix,AZ

    Must-Have Qualifications

    • Candidates who have completed both AZ-305 and AZ-500 certification.
    • Strong Azure expertise is the primary requirement; industry background is not important.
    • Manufacturing experience is not required. Relevant certifications should provide the knowledge base needed to ramp up quickly.
    • Excellent communication skills are essential.
    • Professionalism, confidence, and strong stakeholder-facing presence are important.

    Candidate Profile

    • Seeking a highly task-oriented individual who can take work from assignment through completion with minimal oversight.
    • Must understand the underlying technology and architecture while also being execution-focused.
    • Should proactively seek additional work after completing assigned tasks.
    • Productivity and ability to independently drive deliverables will be evaluated quickly.

    Engagement Details

    • Knox will be closed from approximately December 15 through January. The consultant will generally have this period off, though some work may be required depending on project progress.
    • Compensation is flexible and aligned with market rates. Finding the right candidate is the priority.

    Scope of Work

    This is not tied to a single project. The consultant will support a variety of infrastructure and cloud initiatives, including:

    • Infrastructure modernization and refresh activities
    • Azure architecture and solution design
    • Security and compliance support related to the ongoing SOC 2 audit within Clay's environment
    • Task-based cloud engineering and architecture work
    • Oversight of a disaster recovery exercise scheduled for November
    • Monitoring and helping ensure MSP-led initiatives remain on track (Cloud IT MSP)
    • Designing and architecting cloud solutions, including the migration of Snowflake to Azure

    FORMAL JOB DESCRIPTION

    Work covers architecture, implementation, and tracking the assigned tasks to closure. During the SOC 2 audit the engineer will also gather evidence: when the auditor asks us to show X, we need someone who already knows where in Azure to go and can pull it quickly.

    Expect work across Defender for Cloud and Sentinel, Entra ID privileged access, network architecture (hub-spoke, Private Endpoints, Application Gateway/WAF, Traffic Manager), Azure Policy and governance, and producing written evidence for auditors as tasks are completed. This is not an advisory role; the engineer does the work.

    Must Have

    • 10+ years infrastructure engineering with 4+ years hands-on in Azure at a senior level; has personally done this kind of remediation before, not just designed it.
    • Azure Traffic Manager: has designed and implemented Traffic Manager profiles for multi-region failover in production.
    • Microsoft Defender for Cloud, Microsoft Sentinel, and Entra ID (PIM, Conditional Access, service principal hygiene).
    • Infrastructure as Code with Bicep or Terraform; comfortable in Azure CLI/PowerShell.
    • AZ-305 (Azure Solutions Architect Expert) or AZ-500 (Azure Security Engineer).
    • Knows the Azure portal, Entra ID, Defender, Sentinel, and Azure Monitor / Activity Log well enough to locate and export audit evidence (configs, logs, screenshots, reports) on request.
    • Self-directed; takes assigned tasks, tracks them in JIRA to closure, and communicates clearly with a product owner and a software manager.

    Nice To Have

    • Azure networking depth (VNets and peering, hub-spoke, Private Link, Application Gateway/WAF, NSGs)
    • SOC 2 or financial-services vendor assessment experience; SQL Server on Azure VMs / Azure SQL
    • .NET / App Service familiarity
    • Cloudflare DNS in front of Azure; Azure Well-Architected Framework reviews.

    Similar Jobs

    See more jobs