We're a founder-led global consulting company in the cybersecurity market, operating across Australia, Asia, and the UK. Our reputation is built on breaking away from traditional consulting models, embracing a direct and fresh approach that puts clients at the centre of everything we do. Our mission is simple: to be our clients' most trusted security partner by delivering impactful outcomes that build resilience, enable innovation, and improve competitiveness.
Our vision is to be the world's most trusted security partner, enabling organisations to protect today and prepare for tomorrow. We exist to secure organisations, empowering them to thrive in a digital world.
We live by our values: we are brave, we raise the bar, we tell it how it is, we own the outcome, and we care for all.
The Role
We are looking for an experienced Azure Cloud Security professional to support our Cloud Modernisation project over a six-month engagement.
What You'll Do
- Assess and improve our Azure security posture using Microsoft Defender for Cloud, optimising Secure Score, protecting workloads, and maintaining continuous security assessment across hybrid and multi-cloud environments.
- Design and secure network boundaries and traffic flow, applying Azure Landing Zone Architecture, the Cloud Adoption Framework, VNet architecture, Network Security Groups, Azure Premium Firewall, Azure WAF, Private Link and Private Endpoints, Azure Bastion, DDoS Protection,
and hub-and-spoke or Virtual WAN topologies.
- Design, implement, and enforce Azure Policies and Initiatives to maintain regulatory compliance, enforce tagging and naming standards, and support governance at scale through Management Groups and Landing Zones.
- Manage identity and access controls using Entra, Azure RBAC, PIM, and Conditional Access policies for workloads and managed identities, ensuring appropriate control over access to cloud resources.
What You'll Need
- Hands-on expertise in Azure Security Posture Management, including Microsoft Defender for Cloud, Secure Score optimisation, workload protection, and continuous security assessment.
- Deep knowledge of Azure network security, including Landing Zone Architecture, the Cloud Adoption Framework, VNet architecture, NSGs, Azure Premium Firewall, Azure WAF, Private Link/Private Endpoints, Azure Bastion, DDoS Protection, and hub-and-spoke or Virtual WAN topologies.
- Proficiency in Azure Policy and Governance, including designing, implementing, and enforcing Azure Policies and Initiatives across Management Groups and Landing Zones.
- Robust command of IAM tools, including Entra, Azure RBAC, PIM, Conditional Access policies, and managed identities.
- Familiarity with Azure Key Vault, encryption at rest and in transit, and alignment with frameworks such as CIS Benchmarks, NIST, or ISO 27001 would be highly valuable.
#J-18808-Ljbffr
📌 Azure Security Architect (Sydney)
🏢 Sekuro
📍 Sydney