Job Summary
Key Responsibilities (L3 Scope)
1) Incident Command & Threat Response
Act as Incident Commander for P1/P2 cloud security events—coordinate triage, containment, eradication, and post-incident RCA with actionable remediations.
Lead advanced investigations using Microsoft Sentinel (KQL), Defender for Cloud, Defender for Endpoint/Identity, and network telemetry.
Build & maintain incident playbooks (Logic Apps), SOAR automations, and purple-team validation.
2) Security Architecture & Hardening at Scale
Define and enforce secure landing zones and Zero Trust controls across VNets, subscriptions, and management groups.
Own hardening of App Gateway/WAF, Azure Firewall, NSG/ASG, Private Endpoints, Key Vault, AKS, App Services, Storage, SQL/MI, Cosmos DB, Service Bus, Event Hub.
Drive network segmentation, TLS strategy, certificate lifecycle, and secrets governance.
3) Governance, Compliance & Risk Management
Design and govern Azure Policy & Initiatives, RBAC, and Blueprint/Bicep baselines across environments (Dev/QA/Prod).
Map and evidence compliance against ISO 27001, NIST 80053/CSF, CIS Azure, and customer contractual controls.
Own posture metrics (Secure Score, policy compliance, audit findings closure) and quarterly risk reviews.
4) Identity Security & Privileged Access
Architect robust Entra ID controls: Conditional Access, MFA, device compliance, PIM, access reviews, justintime access.
Ensure secure integration with on-prem AD, B2B/B2C, and federation scenarios; prevent privilege escalation paths.
5) Automation, IaC & Observability
Champion security-as-code using Bicep/Terraform, GitHub Actions/Azure DevOps, PowerShell, Azure CLI, Policy-as-Code.
Build operational dashboards (Sentinel Workbooks, Azure Monitor) and alert hygiene (noise reduction, precision tuning).
6) Leadership, Stakeholder & Vendor Management
Mentor L1/L2 engineers; run runbooks/playbooks, training, and capability uplift.
Engage architecture, networking, DevOps, product, and CISO stakeholders; present to senior leadership on risk and posture.
Govern vendors/MSPs/SaaS security integrations and SLAs.
7) Continuous Improvement & Program Maturity
Define and track KPIs/OKRs: MTTD/MTTR, Secure Score delta, policy drift rate, critical vuln SLA, false-positive rate.
Lead tabletop exercises, BCP/DR security validation, and post-incident lessons-learned with systemic fixes.
Drive threat modeling for new workloads and critical architecture changes.
Certifications (Preferred)
AZ500, SC200, SC300, AZ305 (or equivalent)
Bonus: CISSP, CISM, CCSK/CCSP, KCNA/CKS for container security
Nice-to-Have
Exposure to multi-cloud (AWS/GCP) security controls and CASB/MCAS
Experience with DevSecOps (SAST/DAST/Secrets scanning, IaC scanning, policy gating in CI/CD)
Data security: DLP, Purview, Defender for Cloud Apps
Key Responsibilities
2. Analyze Client Requirements And Oversee The Support TeamâS Performance In Meeting Client Expectations, Leveraging Data-Driven Insights To Drive Service Improvements In Lan/Wan Operations.
3. Lead And Mentor The Project Team By Fostering Transparent Communication Of Project Goals And Utilizing Best Practices In Lan/Wan Support Methodologies.
4. Innovate And Implement New Ideas For Process Development In Lan/Wan Environments, Contributing To Overall Organizational Progress And Efficiency.
5. Provide Tailored Solutions That Meet Customer Needs In The Context Of Lan/Wan Infrastructure, Driving Business Results Through Effective Problem Resolution And Service Delivery.
Skill Requirements
2. Strong problem-solving skills and the ability to analyze and optimize business processes.
3. Excellent communication and interpersonal skills for effective team leadership and client interaction.
4. Familiarity with management reporting tools and techniques to enhance operational transparency.
5. Excellent hands-on experience on the following products:
6. Cisco Catalyst 6500 and other Catalyst Series switches
7. Cisco Nexus 7K/5K/2K Series of switches
8. Cisco Routers 3800, 3900, 7600 Series
9. Cisco IOS Software
10. Wireless LAN technologies � Cisco or Aruba
11. WAN Acceleration/optimization � Cisco WAAS or Riverbed
12. Load balancers � Symbol, F5 BigIP LTM/GTM/Juniper or Cisco ACE/GSS
13. Firewalls-Cisco ASA Firewall, Juniper SSL VPN
14. Network Management � HPOV, NNM, SolarWinds, ORION etc.
Other Requirements
2. Excellent communication and presentation skills. Must be able to clearly communicate with the customer and be able to present solutions to customers at CIO, CXO level
3. Must be open for 24x7 environment