{"id":1419688,"url":"https://alion.io/job/patch-my-pc-cloud-security-engineer","title":"Cloud Security Engineer","company":{"id":8206,"name":"Patch My PC","domain":"patchmypc.com","url":"https://alion.io/company/patch-my-pc","size_band":"51-200","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"Lever","truth_index":null},"role":"Security","role_family":"Security","seniority":"senior","employment_type":"full_time","work_mode":"remote","remote_scope":"stated_countries","remote_scope_basis":"board_field","remote_working_hours":null,"hiring_geo_confidence":"structured","locations":[],"countries":[],"hiring_countries":["US"],"hiring_countries_total":1,"salary":{"min":110000,"max":145000,"currency":"USD","period":"year","gross":null,"usd_annual":145000},"salary_estimate":null,"experience_years_min":7,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"Azure","optional":false},{"name":"DLP","optional":false},{"name":"Microsoft Defender","optional":false},{"name":"Microsoft Defender for Cloud","optional":false},{"name":"Microsoft Entra ID","optional":false},{"name":"PowerShell","optional":false},{"name":"GDPR","optional":true},{"name":"ISO 27001","optional":true},{"name":"SOC 2","optional":true}],"status":"live","first_seen_at":"2026-09-28T19:59:45Z","employer_posted_date":"2026-09-28","last_verified_at":"2026-09-28T21:57:28Z","board_verified":true,"closed_at":null,"days_open":0,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":0},"description":"About this Role:\nWe're hiring a Cloud Security Engineerto strengthen and operate our Microsoft cloud security stack. This is a hands-on engineering role: you'll build, tune, and maintain the security and compliance controls that protect organizational and customer data while bringing a red-team mindset to find weaknesses before attackers do.\nYou'll own the day-to-day engineering of our Microsoft Purview, Defender for Cloud, Entra, and Azure monitoring capabilities, translate technical risk into clear recommendations for leadership, and act as a trusted security advisor to internal teams and customers. This role sits at the intersection of security engineering, cloud operations, and governance, ideal for someone who likes to build controls, break assumptions, and measurably improve security posture.\nResponsibilities:\nCloud Security Engineering & Operations\nDesign, deploy, configure, and maintain Microsoft cloud security and compliance technologies, including Microsoft Purview, Microsoft Defender for Cloud, Azure Log Analytics, Microsoft Entra ID, Privileged Identity Management (PIM), and Identity Governance. \nEngineer and continuously improve technical security controls across Microsoft 365 and Azure. \nAutomate recurring security and compliance tasks to reduce manual effort and drift. \nMonitor security and compliance posture, and drive continuous-improvement initiatives with measurable outcomes. \nData Protection & AI Governance\nBuild, deploy, and maintain Data Loss Prevention (DLP) policies across the organisation. \nMonitor AI technology usage and engineer controls to mitigate data exposure, information leakage, and inappropriate use. \nAssess emerging AI-related threats and implement appropriate governance and technical guardrails. \nPartner with internal teams to ensure sensitive data is adequately protected. \nThreat Assessment & Security Reviews\nApply a red-team mindset to proactively identify weaknesses in systems, configurations, processes, and controls. \nConduct security reviews, exposure assessments, and control-effectiveness evaluations. \nProduce clear, concise reports for leadership covering findings, risk assessments, control gaps, and prioritized remediation recommendations. \nTrack remediation and support stakeholders in implementing corrective actions. \nMonitoring & Incident Support\nUse Azure Log Analytics and security tooling (e.g., KQL queries, alerting) to detect suspicious activity, trends, and compliance issues. \nSupport security investigations and incident response, including analysis, containment, and remediation recommendations. \nCustomer & Stakeholder Engagement \nRepresent security and compliance in customer calls covering governance, data protection, and control topics. \nSupport the compliance team on customer questionnaires, assessments, and security reviews. \nCommunicate technical concepts effectively to both technical and non-technical audiences. \nRequired Skills:\n7+ years of hands-on experience engineering and operating Microsoft cloud security technologies: Purview, Defender for Cloud, Azure Log Analytics, Entra ID, PIM, Identity Governance, and DLP. \nSolid understanding of cloud security principles and Microsoft 365 / Azure security controls. \nExperience investigating security risks and identifying control weaknesses. \nComfort writing queries (e.g., KQL) and automating tasks (PowerShell, Graph API, or similar) is a strong plus. \nWillingness and ability to travel. Tthis role may require travel to customers to discuss our security practices and showcase how our tooling improves their security posture. \nStrong analytical and problem-solving skills, with the ability to think from an attacker's perspective. \nExcellent written communication, able to produce professional reports and executive summaries. \nStrong presentation and customer-facing communication skills. \nAble to work independently in a remote setting while collaborating with distributed teams. \nNice to Have:\nMicrosoft security certifications (SC-200, SC-300, SC-400, AZ-500, or equivalent). \nExperience with compliance frameworks such as ISO 27001, SOC 2, GDPR, or similar. \nExperience with security governance, risk, and compliance (GRC) programmes. \nExposure to AI governance, security, or responsible-AI initiatives. \nExperience as a consultant in Configuration Manager, Intune and other related technologies. \nExperience at leading customer focused workshops. \nIdeal Candidate\nA hands-on cloud security engineer who enjoys building and tuning controls, finding weaknesses before attackers do, translating technical risk into business recommendations, and helping organizations, both ours and our customers mature their security posture. Equally comfortable in a config console, a log-analytics query, and a customer call.\nCompensation & Benefits:\nCompetitive Base Salary: $110,000 - $145,000 based on experience and location.\nBenefits:\n401k Match: Match 200% of contributions up to the first 5% of salary, resulting in a total potential match of 10%.\nMedical, Dental, and Vision Coverage: Patch My PC covers 99% of premiums for both team members and dependents.\nOther Benefits:\nFSA/HSA.\nFertility benefits.\nParental leave.\nPaid-time off (PTO).\nVolunteer leave.\nCharitable donation matching.\nTuition reimbursement.\nGym membership reimbursement.\nInternet stipend.\nPet insurance.\nLearn more about our benefits here: https://patchmypc.com/careers#we-care.","description_format":"text","description_chars":5408,"description_truncated":false,"requirements":{"experience_years_min":7,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":null,"security_clearance":false,"languages":[]},"benefits":["401k plan","Gym membership","Parental leave"],"hiring_locations":[{"name":"United States","iso":"US","kind":"country"}],"hiring_excludes":[],"relocation_offered":false,"industries":["Cloud Security","IT Service & Asset Management"],"lifecycle":[{"event":"open","at":"2026-09-28T21:57:28Z"}],"liveness":{"score":86,"band":"hot","label":"Hiring now","p_open":1,"p_active":0.86,"p_room":1,"age_days":0,"expected_fill_days":37,"reasons":["conf:2","win:early"],"computed_at":"2026-09-29T00:50:11Z"},"pay":{"stated_usd_annual":145000,"is_top_pay":false},"html_url":"https://alion.io/job/patch-my-pc-cloud-security-engineer","json_url":"https://alion.io/job/patch-my-pc-cloud-security-engineer.json","meta":{"generated_at":"2026-09-29T00:50:11Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":785,"day_limit":5000,"remaining_today":4215,"minute_limit":60,"resets_at":"2026-09-30T00:00:00Z"}}}