Job Openings
Cyber Security Architect (Azure Cloud Security)
About the job Cyber Security Architect (Azure Cloud Security)
Job Title: Cyber Security Architect (Azure Cloud Security)
Location: Sylmar, CA (Day 1 Onsite)
Job Type: Contract
Key Responsibilities:
- Azure Security Implementation:
- Design and implement security controls for AKS Cluster, Active Directory, MFA, APIs, and Azure AD B2C.
- Apply zero trust architecture principles and implement mTLS and Azure Managed Identities.
- Secure both control plane and data plane in Azure environments.
- Threat Modeling and Risk Management:
- Conduct threat modeling using frameworks like STRIDE (Spoofing, Tampering, Repudiation, Information Disclosure, Denial of Service, Elevation of Privilege).
- Perform security risk analysis using CVSS 3.0/3.1 and evaluate residual risks.
- Develop and maintain a Security Risk Management Plan, Traceability Matrix, and Security Risk Management Report.
- Security Monitoring and Documentation:
- Monitor security at both platform and application levels.
- Document system designs, threats, and mitigation strategies, including screenshots and detailed reports.
- Create a Cybersecurity Bill of Materials (CBOM) and ensure compliance with security standards.
- Threat Modeling Process:
- Identify critical assets, decompose applications, and map threats using STRIDE.
- Rate risks using appropriate tools and generate comprehensive reports.
Required Skills and Qualifications:
- Technical Expertise:
- In-depth knowledge of Azure security services, including AKS, Active Directory, MFA, and ADB2C.
- Strong understanding of zero trust architecture, mTLS, and Azure Managed Identities.
- Familiarity with control plane and data plane security implementation.
- Threat Modeling and Risk Management:
- Proficiency in threat modeling methodologies (e.g., STRIDE).
- Experience with CVSS 3.0/3.1 for risk scoring and analysis.
- Documentation and Reporting:
- Ability to create high-quality security documents, including CBOMs, traceability matrices, and risk reports.
- Soft Skills:
- Strong analytical and problem-solving abilities.
- Excellent attention to detail and organizational skills.
- Ability to work independently and manage multiple tasks effectively.
Key Tools and Frameworks:
- Azure Security Tools
- STRIDE Model
- CVSS 3.0/3.1
- Traceability Matrix Tools