· Design and implement Azure security controls across identity, networking, and workloads, including native Azure services and security features.
· Operate and maintain Defender for Cloud, Microsoft Sentinel, and related security posture and monitoring tools.
· Design, implement, and continuously refine Conditional Access, MFA, and Zero Trust identity patterns.
· Embed security controls into cloud platform standards and Infrastructure‑as‑Code pipelines, ensuring security is repeatable and auditable.
· Partner with Cloud Engineers to ensure secure cloud architectures are implemented consistently across environments.
· Partner with Infrastructure Security Engineers to align cloud‑native controls with network and infrastructure security enforcement.
· Monitor security posture, review alerts, and participate in incident response related to cloud security events.
· Identify gaps in cloud security controls and drive remediation through improved design, automation, or policy enforcement.
· Produce and maintain security documentation, metrics, and evidence to support leadership reporting and regulatory requirements.
· Participate in post‑incident reviews and root‑cause analysis to strengthen cloud security posture over time.