FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Senior Cloud Platform Security Engineer
Greenbox Capital. Own and continuously improve Greenbox Capital’s Azure platform .
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in managing and securing Azure cloud infrastructure, with a strong focus on implementing infrastructure-as-code practices and maintaining compliance with industry standards. Capable of translating complex security requirements into actionable technical controls while ensuring high availability and cost management.
Highest-signal resume keywords
Azure Platform ManagementInfrastructure-As-Code Using TerraformCloud Security OperationsMicrosoft Entra ID ManagementSOC 2 Compliance Experience
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Azure SubscriptionsNetworkingRBACAzure PolicyVulnerability RemediationIncident ResponseBackup And RecoveryCost ManagementData GovernanceDisaster Recovery Testing
Soft Skills
Clear CommunicationOrganizationAdaptabilityIndependent Decision-MakingGrowth Mindset
Tools & Technologies
TerraformBicepMicrosoft PurviewAzure Security CenterCloud Security Posture Management
Certifications & Qualifications
Azure Security Engineer AssociateCybersecurity Architect ExpertSecurity Operations Analyst AssociateAzure Solutions Architect Expert
Industry Keywords
NIST Cybersecurity FrameworkGLBA Safeguards RuleFinancial ServicesRegulated EnvironmentAI Workload Security
Tech Stack
Tools & technologiesAzureCloudCyber SecurityDNSFirewallsTerraform
About the role
Key responsibilities & impact- Own and continuously improve Greenbox Capital’s Azure platform
- Design, configure, operate, and maintain Azure subscriptions, management groups, networking, compute, storage, platform services, and shared infrastructure
- Establish standards for environment separation, naming, tagging, approved services, secure configuration, and change management
- Design and maintain Microsoft Entra ID, MFA, Conditional Access, PIM, RBAC, managed identities, access reviews, and emergency-access procedures
- Apply least-privilege and separation-of-duties principles across cloud, SaaS, administrative, and non-human identities
- Own network segmentation, private connectivity, firewalls, DNS security, secure ingress/egress, and secrets management
- Operate cloud-security posture management, vulnerability remediation, configuration monitoring, logging, detection, and threat-response capabilities
- Build alerts and dashboards and coordinate containment, recovery, evidence preservation, and corrective action during security events
- Develop and maintain infrastructure using Terraform, Bicep, or comparable infrastructure-as-code practices
- Establish reusable modules, peer review, automated testing, deployment controls, and configuration-drift management
- Translate GLBA Safeguards Rule, SOC 2, NIST Cybersecurity Framework, customer commitments, and internal policies into technical controls
- Maintain evidence, support audits and customer security reviews, and address control gaps
- Partner with Data & AI leadership on data and AI governance controls, including discovery, classification, lineage, retention, DLP, access governance, and approved AI-service controls
- Help secure AI and agent-based workloads through data boundaries, privileged-action controls, logging, monitoring, human approval, and incident response
- Own cloud budgets, alerts, tagging standards, forecasting inputs, and recurring optimization recommendations
- Evaluate Azure-native and third-party capabilities based on effectiveness, effort, maintenance, licensing cost, and architectural fit
- Maintain at least 99.9% availability for critical platform services within operational control
- Support Sev-1/2 response expectations and validate disaster recovery at least twice annually
- Drive at least 95% of production infrastructure toward infrastructure-as-code management
- Maintain at least 98% resource-tagging compliance and improve cost visibility
Requirements
What you’ll need- Seven or more years of hands-on cloud infrastructure or security engineering experience
- Production Azure environment ownership and demonstrated senior-level responsibility
- Strong experience with Azure subscriptions, management groups, networking, Microsoft Entra ID, RBAC, Azure Policy, monitoring, backup and recovery, security controls, and cost management
- Infrastructure-as-code experience using Terraform, Bicep, ARM templates, or comparable tooling
- Source control and automated deployment practices
- Experience with cloud security operations, vulnerability remediation, logging and detection, incident response, access governance, and disaster-recovery testing
- Working knowledge of Microsoft Purview or comparable data-governance capabilities
- Experience translating control requirements into technical designs, operating procedures, evidence, and measurable results
- Strong documentation experience, including runbooks, architecture diagrams, standards, risk statements, and executive-level updates
- Ability to coordinate with internal teams, auditors, managed-service providers, and technology vendors
- Experience in financial services or another regulated environment using SOC 2, NIST Cybersecurity Framework, or similar frameworks is preferred
- Experience securing AI, machine-learning, large-language-model, or agent-based workloads in production is preferred
- Relevant Microsoft certifications are preferred, including Azure Security Engineer Associate, Cybersecurity Architect Expert, Security Operations Analyst Associate, or Azure Solutions Architect Expert
- Strong judgment, independent risk-based decision-making, clear communication, organization, adaptability, and a growth mindset
Benefits
Comp & perks- Competitive pay
- Flexible PTO
- Fully remote within the U.S.
- Flexible work aligned to Eastern Time hours
- Full benefits package: health, dental, and vision insurance