Open role
Azure Security Engineer
GeekSoft Consulting B.V.
About the role
Help design, build and continuously improve the clients online platform. Research, suggest and implement new technology solutions following best practices/standards. Take responsibility for the resiliency and availability of different products. Be a productive member of the team.
What you'll bring
6+ years overall IT experience, with at least 3+ years dedicated to Azure/Cloud Security. Design, deploy, and maintain security controls across Azure subscriptions, resource groups, and enterprise workloads. Implement network security configurations using NSGs, Azure Firewall, Web Application Firewall (WAF), and DDoS protection. Configure identity and access management using Azure AD (Entra ID), including Conditional Access, MFA, PIM, and RBAC. Manage secrets, SSL/TLS certificates, and cryptographic keys using Azure Key Vault. Monitor cloud infrastructure, run security assessments, perform log analysis (Azure Monitor/Log Analytics), and manage incident response via Microsoft Defender for Cloud and Sentinel. Enforce cloud governance and compliance by building and applying Azure Policies and security blueprints. Support DevSecOps initiatives by integrating security tools (SAST/DAST, IaC security scanning) into CI/CD pipelines. Assist in auditing and aligning cloud infrastructure with industry standards such as ISO 27001, SOC 2, NIST, GDPR, and HIPAA. Prepare comprehensive security architecture documentation, threat reports, and audit artifacts. Hands-on proficiency with Microsoft Defender for Cloud and Microsoft Sentinel. Deep technical knowledge of Azure AD (Entra ID), Conditional Access, MFA, PIM, and RBAC. Practical experience managing NSGs, Azure Firewall, WAF, and VPN/ExpressRoute security. Proficiency with Azure Key Vault management Experience with Azure Policy, Infrastructure as Code (IaC) security principles, and compliance frameworks Scripting experience using PowerShell, Python, or Bash. Familiarity with Terraform, ARM, or Bicep scanning, and integrating SAST/DAST into CI/CD pipelines. Hands-on experience with vulnerability scanning and mitigation strategies. Strong analytical, risk-aware, and continuous-improvement mindset. Ability to work independently and drive technical ownership across projects. Excellent communication skills for conveying security risks and complex concepts to both technical and non-technical stakeholders. Preferred Certifications Microsoft Certified: Azure Security Engineer Associate (AZ-500) Microsoft Certified: Identity and Access Administrator Associate (SC-300) Microsoft Certified: Cybersecurity Architect Expert (SC-100) Certified Information Systems Security Professional (CISSP) CompTIA Security+
What's on offer
Fixed Term Employment Contract Work-Life Balance Flexible Work Mode What GeekSoft Consulting Offers International, collaborative consulting culture with clear career development paths. Comprehensive Dutch benefits package emphasizing well-being, mobility, and career growth.