Job Description
Job Description
Senior Cybersecurity Engineer – AI Security & Cloud Platforms
We are seeking a hands-on Senior Cybersecurity Engineer to lead the security engineering and operational oversight of enterprise AI platforms, Azure cloud infrastructure, and modern cybersecurity technologies. This individual will play a key role in designing, implementing, and maintaining security controls that protect highly sensitive business data while supporting secure adoption of AI technologies across the organization.
Key Responsibilities
AI Security & Platform Operations
- Administer and optimize enterprise AI security platforms including Harmonic Security, LayerX, AppOmni, or similar technologies.
- Develop and maintain security policies, alert tuning, detection logic, and platform integrations with identity, endpoint protection, and data loss prevention solutions.
- Collaborate with third-party vendors supporting enterprise AI environments while maintaining operational ownership, documentation, and incident readiness.
- Manage governance and security controls for enterprise AI platforms such as OpenAI ChatGPT Enterprise, Google Gemini Enterprise, and Anthropic Claude Enterprise.
- Oversee identity federation, SCIM provisioning, audit logging, compliance API integrations, and secure access to AI applications.
- Support and continuously improve the organization's vulnerability management program, including integration with monitoring and observability platforms such as Grafana.
- Develop and maintain AI governance standards, operational procedures, and secure intake processes for evaluating new AI use cases.
Cloud Security Engineering
- Manage and improve the organization's Microsoft Azure security posture across enterprise cloud environments.
- Secure Azure resources including Azure Virtual Desktop (AVD), FSLogix, Azure Front Door, API Management (APIM), Key Vault, Private Endpoints, storage, networking, and compute services.
- Design secure-by-default cloud architectures for new applications and infrastructure deployments.
- Develop and maintain Infrastructure-as-Code using Terraform, including reusable modules, state management, and deployment automation.
- Support DevOps and CI/CD pipelines while automating security controls and operational processes.
- Produce technical documentation, operational runbooks, and platform standards to support ongoing engineering efforts.
- Partner with infrastructure and application teams to ensure cloud-native and AI solutions are designed and deployed with security embedded throughout the development lifecycle.
Security Engineering & Detection
- Design, implement, and maintain detection content across Microsoft Sentinel, Microsoft Defender, Darktrace, Taegis, or comparable security platforms.
- Create, refine, and optimize security alerts, detection rules, and automated response workflows.
- Develop Conditional Access policies and identity security controls within Microsoft Entra ID.
- Participate in incident response, security investigations, and remediation efforts involving cloud and enterprise environments.
- Conduct architecture and security design reviews to validate that new technologies meet organizational security standards before production deployment.
- Support third-party security assessments, vendor due diligence activities, and broader cybersecurity initiatives as needed.
Required Qualifications
- 7–10 years of experience in cybersecurity engineering, cloud security, DevSecOps, or related security engineering disciplines.
- Extensive hands-on experience securing Microsoft Azure environments.
- Strong knowledge of Microsoft Entra ID, Conditional Access, Defender for Cloud, Microsoft Sentinel, Azure Policy, Azure networking, Key Vault, Private Endpoints, and core Azure infrastructure services.
- Advanced Terraform experience, including reusable module development, Infrastructure-as-Code best practices, pipeline integration, and migration of manually deployed resources into code-based deployments.
- Experience working with AI security technologies including Harmonic Security, LayerX, Nightfall, AppOmni, or equivalent platforms.
- Understanding of prompt-level DLP, shadow AI detection, agentic workflows, and security considerations surrounding large language models (LLMs).
- Experience building and tuning detections across enterprise security platforms including Sentinel, Defender, Darktrace, Taegis, or similar SIEM/XDR solutions.
- Strong background in identity and access management, including Microsoft Entra ID architecture and Co
About Leeds Professional Resources
Go to job list