{"id":1101502,"url":"https://alion.io/job/guidepoint-security-azure-security-engineer-remote-anywhere-in-the-u-s-","title":"Azure Security Engineer- Remote (Anywhere in the U.S.)","company":{"id":3625,"name":"GuidePoint Security","domain":"guidepointsecurity.com","url":"https://alion.io/company/guidepoint-security","size_band":"201-500","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"Greenhouse","truth_index":{"grade":"A","score":87,"open_postings":17,"ghost_share":0,"stale_share":0.529,"repost_share":0,"time_to_fill_p50_days":48,"computed_at":"2026-09-25T05:45:01Z"}},"role":"Security","role_family":"Security","seniority":"senior","employment_type":null,"work_mode":"remote","remote_scope":"stated_countries","remote_scope_basis":"posting_text","remote_working_hours":null,"hiring_geo_confidence":"inferred","locations":[],"countries":[],"hiring_countries":["US"],"hiring_countries_total":1,"salary":null,"salary_estimate":{"min_usd":108000,"max_usd":217000,"period":"year","method":"global_role_seniority_cell","sample_n":1098},"experience_years_min":5,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"AI Agents","optional":false},{"name":"Azure","optional":false},{"name":"Azure AKS","optional":false},{"name":"Bicep","optional":false},{"name":"CI/CD","optional":false},{"name":"Embeddings","optional":false},{"name":"FinOps","optional":false},{"name":"Least Privilege","optional":false},{"name":"LLM Guardrails","optional":false},{"name":"Machine Learning","optional":false},{"name":"Microsoft Defender","optional":false},{"name":"Microsoft Defender for Cloud","optional":false},{"name":"Microsoft Entra ID","optional":false},{"name":"OpenAI","optional":false},{"name":"Platform Engineering","optional":false},{"name":"PowerShell","optional":false},{"name":"Prompt Engineering","optional":false},{"name":"Python","optional":false},{"name":"RAG","optional":false},{"name":"Semantic Search","optional":false},{"name":"Semantic Search","optional":false},{"name":"Terraform","optional":false},{"name":"Zero Trust","optional":false},{"name":"Kubernetes","optional":true}],"status":"live","first_seen_at":"2026-09-21T21:01:29Z","employer_posted_date":"2026-09-21","last_verified_at":"2026-09-26T00:03:02Z","board_verified":true,"closed_at":null,"days_open":4,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":4},"description":"GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation’s top organizations, such as Fortune 500 companies and U.S. government agencies, to identify threats, optimize resources and integrate best-fit solutions that mitigate risk.\nGeneral Description \nWe are looking for a skilled Azure Security Engineer to support our GuidePoint Microsoft Cloud Security Practice. This role will engage in the development of customer facing Azure security engineering services while providing “Wow Them” service to clients and/or internal customers or co-workers.\nThe Azure Security Engineer is responsible for designing, implementing, and securing our customers Azure infrastructure. Azure Security Engineers operate primarily in a remote customer facing role with a focus on integrating cloud security technologies into either an existing or new environment while providing expertise in cloud computing to drive business efficiency and innovation. Azure Security Engineers evaluate existing cloud infrastructure and provide recommendations and or implement improvements to strengthen the cloud security posture of the environment. Azure Security Engineers demonstrate strong working knowledge across Azure Commercial and Azure Gov Cloud tenants, subscription management, landing zones, networking, security, and infrastructure through implementation of Microsoft Azure best practices and infrastructure as code (IaC). Azure Security Engineers work with cloud infrastructure team members as needed to provide secure configurations within the Microsoft Azure infrastructure. As a subject matter expert (SME), the Azure Security Engineer also brings deep, hands-on expertise across the broader Azure platform-including AI platform engineering with Azure AI Foundry and enterprise API management and governance with Azure API Management (APIM)-and serves as the technical authority for architecting, securing, and operationalizing these workloads for customers.\nAbout the Cloud Practice\nThe Cloud Practice is responsible for providing advisory services as well as secure implementations specific to security tooling with the intent of protecting the customers' identities, endpoints, data, applications, and cloud infrastructure by designing, deploying, and operationalizing Cloud Solution Providers native security solutions. We focus specifically on ensuring cloud security, data security, identity and access management, as well as threat protection has been implemented following best practices across the organization.\nOur team of Microsoft specialists focus on deploying Microsoft security, compliance, and identity solutions to protect identities, devices, data, apps, and infrastructure. We partner with other internal Teams and resources to ensure the overall goals of the clients are achieved and align with industry standards and best practices.\nRoles and Responsibilities: \nDesign Azure cloud solutions with a secure-by-design approach\nCollaborate with customer IT teams to implement and secure cloud resources, implement configurations based on security policies, standards, and best practices\nDevelop and implement scalable and resilient cloud architecture solutions within Azure Commercial or Azure Gov Cloud environments\nDevelop and implement migration strategies for local on premises hosted environments to Azure cloud tenants\nWork with customers to secure Microsoft Entra ID\nCreate and implement migration plans for each Azure infrastructure service, system, and/or application that will be deployed to Azure as part of a migration project\nCreate architectural and data flow diagrams for Azure environments\nDevelop and deploy infrastructure as code (IaC) using tools like Terraform, Azure Resource Manager (ARM) templates, Bicep, and PowerShell\nEnsure systems, applications, and data meet high availability design principles and/or are replicated to meet organizational requirements for disaster and business recovery\nAnalyze and ensure that proper monitoring and alerting systems are in place for systems, services, and applications in customer Azure environments\nEvaluate and recommend Azure services based on business requirements and industry best practices\nCollaborate with software developers, system administrators, and other stakeholders to integrate Azure solutions into either new or existing systems and applications\nEnsure seamless interoperability between on-premises and cloud environments\nImplement and enforce security requirements to protect Azure-based systems and data\nServe as the subject matter expert (SME) for Azure AI Foundry, architecting, deploying, and securing generative AI and machine learning workloads, including model catalog selection, model deployments, AI agents, and prompt flow orchestration\nDesign and implement enterprise-grade Retrieval-Augmented Generation (RAG) and grounding solutions using Azure AI Foundry, Azure AI Search, and integrated customer data sources\nEstablish Responsible AI, content safety, evaluation, and guardrail practices for AI workloads to ensure alignment with governance, data protection, and regulatory requirements\nSecure Azure AI Foundry workloads through network isolation (private endpoints), managed identities, customer-managed keys, and least-privilege access controls\nServe as the subject matter expert (SME) for Azure API Management (APIM), designing and operating secure, scalable API gateways, products, versions, and revisions across Azure Commercial and Azure Gov Cloud environments\nAuthor and manage APIM policies for authentication and authorization (OAuth 2.0, JWT validation, mutual TLS), rate limiting, caching, request/response transformation, and backend routing\nDesign and implement APIM as a GenAI gateway in front of Azure AI Foundry and Azure OpenAI endpoints, including token-based rate limiting, semantic caching, load balancing across model deployments, and centralized monitoring of AI consumption\nIntegrate APIM with Microsoft Entra ID, Application Gateway / Web Application Firewall (WAF), private networking, and self-hosted gateways to enforce Zero Trust and secure hybrid connectivity\nEstablish API governance, lifecycle management, developer portal experiences, and end-to-end observability (logging, metrics, and diagnostics) for customer API estates\nDefine and maintain Azure Governance policies including Subscription Management, Cost Management, Security, Resource Consistency, Identity Baseline, Deployment Acceleration, etc.\nEnsure compliance of architectural and engineering policies, standards, and procedures\nStays current with emerging cloud technologies and trends and advise on the adoption of new Azure features and services\nWorks closely with development teams to support DevOps practices and implement continuous integration and continuous deployment (CI/CD) pipelines\nLeads technical discussions and presentations for internal teams as well as customers\nRecommends strategies to streamline Azure native technologies for effectiveness and efficiency, considering client needs.\nConsistently produce work product in conformance with GuidePoint Security standards\nApproaches problem solving collectively with senior staff and internal and external clients to achieve a mutually beneficial result\nParticipates in the development of the Microsoft Cloud team’s strategic plans, training materials and tools\nEffectively trains and mentors staff on new and emerging Azure specific technologies\nDemonstrate ability to author professional documentation that serve as customer deliverables and internal standard operating procedures and delivery playbooks\nPerforms other duties and responsibilities as required\nRequired Experience and Education: \nBachelor’s Degree and 5 years of experience building or managing cloud environments in medium to large companies\nProfessional certification in Azure, such as Azure Solutions Architect Expert or similar preferred\nStrong understanding of cloud computing technologies, business drivers, and emerging computing trends\nProficient in Azure services, including but not limited to Entra ID, Azure Virtual Networks / Machines, Azure App Services, Azure Kubernetes Service, Azure Key Vault, Azure Private Link/Private Endpoint\nSubject matter expert (SME)-level proficiency in Azure AI Foundry, including model catalog and model deployment, AI agents, prompt flow, Retrieval-Augmented Generation (RAG) architectures, evaluations, and Responsible AI / content safety controls\nSubject matter expert (SME)-level proficiency in Azure API Management (APIM), including gateway architecture, policy authoring, API security and versioning, developer portal, self-hosted gateways, and use of APIM as a GenAI / AI gateway (token limiting, semantic caching, and load balancing) in front of Azure AI Foundry and Azure OpenAI endpoints\nExperience with Azure OpenAI and generative AI solution patterns, including prompt engineering, embeddings, and vector / semantic search (e.g., Azure AI Search)\nHands-on experience with containerization and orchestration using Azure Kubernetes Service (AKS), Azure Container Registry (ACR), and Azure Container Apps\nWorking knowledge of Azure observability and operations tooling, including Azure Monitor, Log Analytics, Application Insights, and Microsoft Defender for Cloud\nFamiliarity with the Azure Well-Architected Framework and Cloud Adoption Framework (CAF) landing zones\nProficiency with scripting and automation using PowerShell, Azure CLI, and at least one general-purpose language such as Python for AI and API integration\nExperience designing Zero Trust architectures and implementing security controls for AI and API workloads\nExperience with FinOps and Azure cost management practices, including governance of AI token consumption and API usage costs\nRelevant certifications such as Azure AI Engineer Associate (AI-102), Azure Security Engineer Associate (AZ-500), or Azure Network Engineer Associate (AZ-700) are a plus\nMust pass either the Cloud Security Alliance Certificate of Cloud Security Knowledge (CCSK) or the (ISC)2 Certified Cloud Security Professional within 6 months of joining the team.\nExperience with cloud security, networking, and disaster recovery best practices\nStrong knowledge of infrastructure as code (IaC) tools such as Azure Resource Manager (ARM) templates or Terraform\nExperience with network security best practices and configurations\nStrong troubleshooting skills and attention to detail\nStrong written and verbal communication skills\nAbility to solve technical, managerial, or operational problems and evaluate options based on relevant information, resources, well-rounded experience, and knowledge\nDemonstrated ability to communicate clearly and concisely, both orally and in writing, and lead presentations, training courses, and effective working sessions\nEmbraces emerging technologies, including AI tools, to work smarter, solve problems, and drive better business outcomes.\nTravel Requirements:\nUp to 10 % travel\nPhysical Requirements:\nSedentary work\nSubstantial movement of the wrists, hands, and/or fingers for a minimum of 8 hours a day\nRequired to have close visual acuity to view computer terminal and/or extensive reading for a minimum of 8 hours a day\nWe use Greenhouse Software as our applicant tracking system and Zoom Scheduler for HR screen request scheduling. At times, your email may block our communication with you. Please be sure to check your SPAM folder so that you don't miss updates on your application.\n\nWhy GuidePoint?\n GuidePoint Security is a rapidly growing, profitable, privately-held value added reseller that focuses exclusively on Information Security. Since its inception in 2011, GuidePoint has grown to over 1,300 employees, established strategic partnerships with leading security vendors, and serves as a trusted advisor to...","description_format":"text","description_chars":13432,"description_truncated":true,"requirements":{"experience_years_min":5,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":{"level":"bachelor","optional":false},"security_clearance":false,"languages":[]},"benefits":["Dental insurance","Flexible time off","Health insurance","Retirement plans"],"hiring_locations":[{"name":"United States","iso":"US","kind":"country"}],"hiring_excludes":[],"relocation_offered":false,"industries":["Artificial Intelligence","Cybersecurity","Information Security"],"lifecycle":[{"event":"open","at":"2026-09-21T23:10:44Z"}],"liveness":{"score":63,"band":"ok","label":"Likely open","p_open":1,"p_active":0.632,"p_room":1,"age_days":3,"expected_fill_days":48,"reasons":["conf:0","stale_co","velocity","win:early"],"computed_at":"2026-09-25T05:45:01Z"},"pay":null,"html_url":"https://alion.io/job/guidepoint-security-azure-security-engineer-remote-anywhere-in-the-u-s-","json_url":"https://alion.io/job/guidepoint-security-azure-security-engineer-remote-anywhere-in-the-u-s-.json","meta":{"generated_at":"2026-09-26T01:33:44Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":1537,"day_limit":5000,"remaining_today":3463,"minute_limit":60,"resets_at":"2026-09-27T00:00:00Z"}}}