Senior Cybersecurity & Cloud Specialist
About us
We're securing the Azure cloud and on-premises environments that support gold mining operations, remote sites, and corporate systems.
Our cybersecurity environment operates 24×7 across distributed environments, with a focus on continuous threat detection, incident response, identity security, platform hardening, automation, and operational resilience.
The Role
We're looking for a Senior Cybersecurity & Cloud Specialist (Azure) to secure the organization's Azure cloud and on-premises environments supporting gold mining operations, remote sites, and corporate systems.
This is a senior, hands-on role focused on cybersecurity and cloud technologies across distributed 24×7 operational environments. You'll work across threat detection and response, identity and access security, platform hardening, vulnerability management, automation, and security monitoring.
You'll investigate advanced cyber threats affecting cloud, on-premises, and remote mining environments, execute the full incident response lifecycle, manage Azure security services, and secure the systems and connectivity supporting mining operations.
Requirements
What You'll Do
- Operate and optimize Azure security services including Microsoft Defender for Cloud, Defender for Endpoint, Defender for Identity, and Azure Sentinel
- Identify and remediate security vulnerabilities and misconfigurations across Azure, hybrid, and on-premises environments
- Manage logging, monitoring, and alerting through Azure Monitor, Log Analytics, and Sentinel
- Lead investigations into advanced cyber threats and execute the full incident response lifecycle
- Conduct proactive threat hunting using Sentinel, KQL, and security telemetry
- Manage Azure AD / Entra ID access using RBAC and least-privilege principles
- Operate and enforce Conditional Access, MFA, and Privileged Identity Management (PIM)
- Secure and harden Windows and Linux systems, including logging, patching, and endpoint protection
- Support network security controls including firewalls, VPNs, routing, DNS, and secure connectivity between Azure and mine sites
- Develop security automation using PowerShell, Python, Logic Apps, Azure Automation, and KQL
- Create scripts and playbooks for incident response, log analysis, configuration validation, and detection tuning
- Support cybersecurity controls for mining-related systems, including fleet management, operational data platforms, and site communications
- Work closely with OT teams to monitor and secure the OT environment
What We're Looking For
- 10+ years of hands-on experience in IT infrastructure, including Windows/Linux systems, networking, and support of 24×7 operational environments, with involvement in incident response and high-availability systems
- 5+ years of hands-on experience in cloud environments, with a strong focus on Microsoft Azure, including cloud security operations and incident response
- Proven experience supporting and securing 24×7 operating environments, including systems requiring high availability and continuous operations
- Strong understanding of operating systems, network protocols, infrastructure, and security best practices
- Strong expertise with Microsoft Defender for Cloud, Defender for Endpoint, and Azure Sentinel
- Strong expertise with Azure AD / Entra ID, RBAC, Conditional Access, and PIM
- Strong knowledge of Azure monitoring, logging, and alerting tools
- Strong scripting and automation skills, particularly PowerShell, KQL, and Logic Apps
- Advanced knowledge of Windows and Linux operating systems
- Strong networking fundamentals, including TCP/IP, firewalls, VPNs, routing, and DNS
- Ability to analyze complex technical information and identify, diagnose, and resolve network and security-related issues
- Excellent communication skills for effective interaction with various teams and stakeholders
- Ability to provide training and guidance to team members and other departments
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field
- English language
Location & Work Style
Based in Bucharest, with the possibility of remote work and work at operational sites if required.
This role operates within a 24×7 operational environment and supports distributed environments, including remote mining sites.
The role reports to the Cybersecurity Lead and has 0 direct reports.

