Senior Network Security Engineer
Senior
Ansible
Application Security
Azure
Cloud
Cloud Data Engineering
Cloud Infrastructure
Cloud Network Security
Cloud Platform
Cloud Platforms
Cloud Platforms Cloud Platforms
Cloud Technology
Data Engineering
Data Security
DevOps
DevSecOps
Embedded System
Engineer
Engineering
Facilities Management
Incident Response
Information Security
Information Technology (IT)
InfoSec
Infrastructure As Code
Network Security
Network Security Monitoring
Platform Engineering
Risk Management
Security
Security Automation
Security Compliance
Security Detection Engineering
Security Engineering
Security Operations
Security Telemetry
Security Testing
Software Security
Solution Architecture
Job Description
Microsoft Specialized Clouds (MSC) is hiring a Senior Cloud Network Security Engineer to design, deploy, and operate network security monitoring for sovereign and government cloud environments.
Responsibilities
- Design, deploy, and manage network security platforms such as firewalls, proxies, and traffic inspection solutions for sovereign cloud environments.
- Configure network security devices to export logs, flow records, packet telemetry, and security events to centralized monitoring, analytics, and incident response platforms.
- Develop and maintain security detections, alerts, and analytics to identify malicious activity, unauthorized access, policy violations, and emerging threats.
- Analyze packet captures, firewall logs, flow data, and network telemetry to support threat investigations, incident response, root cause analysis, and service improvement.
- Build and maintain security telemetry pipelines that deliver actionable visibility across network infrastructure, cloud services, and security platforms.
- Develop automation solutions using scripting, Infrastructure as Code, and AI-enabled capabilities to improve detection engineering, alert correlation, incident triage, and operational efficiency.
- Integrate network security telemetry, observability, and incident management platforms to expand monitoring coverage and improve response effectiveness.
- Create operational dashboards, reporting, and health metrics to measure detection coverage, alert quality, service reliability, compliance posture, and operational risk.
- Partner with engineering, security, and operations teams to define secure network architectures, monitoring standards, deployment patterns, and onboarding requirements for new services.
Requirements
- Doctorate in Statistics, Mathematics, Computer Science, or related field
- OR Master's Degree in Statistics, Mathematics, Computer Science, or related field AND 3+ years experience in software development lifecycle, large-scale computing, modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, Security Incident and Event Management (SIEM), or information technology
- OR Bachelor's Degree in Statistics, Mathematics, Computer Science, or related field AND 4+ years experience in software development lifecycle, large-scale computing, modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, Security Incident and Event Management (SIEM), or information technology
- OR equivalent experience
- Microsoft Cloud background check required to pass upon hire/transfer and every two years thereafter
- Verification of U.S. citizenship via a valid passport due to citizenship-based legal restrictions
- Minimum experience: 3 years
Preferred Qualifications
- 2+ years of experience using AI technologies to improve security operations, detection engineering, alert correlation, incident investigation, and operational workflows
- 2+ years of experience supporting government, regulated, or sovereign cloud environments
- 10+ years of experience designing, deploying, or operating network security infrastructure and services
- 5+ years of experience with firewalls, DDoS protection, IDS/IPS platforms, proxies, traffic inspection, and network security controls
- 5+ years of experience automating operational processes using Python, Terraform, Ansible, Bicep, ARM, or similar technologies
- 3+ years of experience configuring security devices to export telemetry, logs, events, and flow data for centralized monitoring and threat analysis
- 3+ years of experience developing security detections, alerting strategies, monitoring content, and operational response processes
- 5+ years of experience supporting production services, incident response, operational ownership, and on-call rotations
Required Technologies
- Python
- Terraform
- Ansible
- Bicep
- ARM
Location
- Redmond, WA (onsite)
Compensation
- USD 119,800 - 261,000 per yearly
Other
- Embodies Microsoft Culture & Values