Technical Skills
- Azure Expertise:
- In-depth knowledge of Azure services, including but not limited to:
- Azure Security Center
- Azure Defender
- Azure Key Vault
- Azure Policy
- Azure Sentinel (SIEM)
- Azure Active Directory (Azure AD)
- Security and Vulnerability Tools:
- Proficiency with vulnerability scanning and management tools like Qualys, Tenable Nessus, or Rapid7.
- Experience with Azure-native security tools for threat detection and remediation.
- Infrastructure Hardening:
- Strong knowledge of security best practices for securing virtual machines, storage accounts, AKS, and network components.
- Familiarity with zero-trust architecture principles and implementation in Azure.
- Automation & Scripting:
- Advanced skills in scripting languages such as PowerShell, Azure CLI, Python, or other automation tools to remediate vulnerabilities and improve operational efficiency.
- Experience in integrating security checks into CI/CD pipelines.
Certifications (Preferred or Mandatory)
- Azure Cloud Certifications:
- Microsoft Certified: Azure Administrator Associate (AZ-104)
- Microsoft Certified: Azure Security Engineer Associate (AZ-500)
- Microsoft Certified: Cybersecurity Architect Expert (SC-100)
- Security Certifications:
- Certified Information Systems Security Professional (CISSP)
- Certified Ethical Hacker (CEH)
- CompTIA Security+
- GIAC certifications (e.g., GCIH, GSEC, or GCED)
Other Requirements
- Familiarity with regulatory and compliance standards, such as ISO 27001, SOC 2, GDPR, or HIPAA.
- Experience in performing and supporting audits related to cloud security.
- Proven ability to stay current with evolving cloud and cybersecurity trends.