
About the Role
Patch My PC is looking for a Cloud Security Engineer to strengthen and operate our Microsoft cloud security stack. This is a hands-on engineering role where you will build, tune, and maintain security controls while applying a red-team mindset to identify and mitigate risks.
Responsibilities
Cloud Security Engineering & Operations
- Design, deploy, and maintain Microsoft cloud security technologies (Purview, Defender for Cloud, Azure Log Analytics, Entra ID, PIM, Identity Governance).
- Engineer and improve technical security controls across Microsoft 365 and Azure.
- Automate recurring security and compliance tasks to reduce manual effort.
- Monitor security posture and drive continuous-improvement initiatives.
Data Protection & AI Governance
- Build and maintain Data Loss Prevention (DLP) policies.
- Monitor AI technology usage and implement technical guardrails to mitigate data exposure.
- Assess emerging AI-related threats.
Threat Assessment & Security Reviews
- Proactively identify weaknesses in systems, configurations, and processes.
- Conduct security reviews and control-effectiveness evaluations.
- Produce clear reports for leadership regarding risk assessments and remediation.
Monitoring & Incident Support
- Utilize Azure Log Analytics and KQL queries to detect suspicious activity.
- Support security investigations and incident response.
- Represent security and compliance in customer engagements and security reviews.
Required Skills
- 7+ years of hands-on experience with Microsoft cloud security technologies (Purview, Defender for Cloud, Entra ID, etc.).
- Solid understanding of cloud security principles and M365/Azure controls.
- Proficiency in KQL and automation (PowerShell, Graph API).
- Strong analytical, problem-solving, and communication skills.
- Ability to think from an attacker's perspective.
- Willingness to travel for customer-facing security discussions.
Nice to Have
- Microsoft security certifications (SC-200, SC-300, SC-400, AZ-500).
- Experience with compliance frameworks (ISO 27001, SOC 2, GDPR).
- Exposure to AI governance and security.
- Experience in a consulting capacity with Configuration Manager or Intune.
Timezone overlap
UTC-8β-5
Open to
US
Sign in to track applications and earn points.