- Experience updating and maintaining security policies and patterns in Azure using Terraform and/or Bicep, including Policy-as-Code concepts.
- Strong knowledge of Azure security services, specifically Microsoft Defender, Identity and Access Management (IAM), Azure Landing Zones, and network security policy configurations.
- Experience reviewing, updating, and implementing security baseline controls and security configurations for cloud workloads.
- Hands-on experience working with GitHub-based DevSecOps workflows, including reviewing and updating policy and pattern code within repositories.
- Ability to work independently in an engineering-focused environment, identifying gaps, improving security patterns, and driving solutions with minimal oversight.