2 months ago
Manila, PhilippinesSenior
Responsibilities
- Architect and implement Azure security architectures aligned with financial-services regulatory requirements.
- Configure and manage Defender for Cloud, Azure Sentinel, Entra ID, Azure Policy, Blueprints, and Management Groups.
- Own identity security controls including PIM, Conditional Access, MFA, identity governance, and privileged identity management.
- Design network security using NSGs, Azure Firewall, DDoS protection, Private Endpoints, and hub-spoke architectures.
- Manage secrets, keys, certificates, and HSM integration through Azure Key Vault.
- Conduct threat modeling, risk assessments, security reviews, and cloud-native incident response.
- Develop Sentinel detection rules, playbooks, automation workflows, and root-cause remediation plans.
- Embed security into CI/CD pipelines using GitHub Actions and Azure DevOps.
- Produce executive-level reporting on cloud security KPIs, control effectiveness, and risk posture.
- Mentor junior engineers and contribute to team capability building and knowledge sharing.
Requirements
- 7+ years of information security experience, including 4+ years focused on Azure cloud security in a regulated industry.
- Deep technical expertise with Defender for Cloud, Sentinel, Entra ID, Key Vault, Azure Firewall, NSGs, and Azure Policy.
- Strong understanding of PCI-DSS, SOX, GLBA, FFIEC, and NIST CSF frameworks.
- Proficiency with PowerShell, Python, Bicep/ARM templates, and Terraform for scripting and automation.
- Experience implementing zero-trust architecture in enterprise Azure environments.
- Understanding of PKI, cryptographic standards, and secrets management.
- Bachelor's degree in Computer Science, Information Security, or equivalent practical experience.
- Microsoft Certified: Azure Security Engineer Associate (AZ-500) certification is required.
- Microsoft Certified: Security Operations Analyst (SC-200) is strongly preferred.
- Additional preferred certifications include CISSP, CISM, CCSP, and CEH.
- Preferred experience includes DORA, MAS TRM, or OCC guidelines, multi-cloud security, cross-cloud SIEM integrations, and financial-sector environments.
Benefits
- Employment offers are contingent on passing credit, criminal background, pre-employment medical, and drug screenings.
- Equal Employment Opportunity employer with reasonable accommodations available for qualified individuals.
