Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Cloud Security Engineer image - Rise Careers
Job details

Cloud Security Engineer

Company Overview 

At Hexagon US Federal we provide cutting-edge technologies and a wide range of professional services to enable our customers to make smarter and faster operational decisions and improve mission effectiveness. 

Hexagon US Federal is an independent subsidiary of Hexagon Corporation exclusively focused on bringing the broad range of Hexagon technologies to the US Federal government and its partners.  

Quick Hits 

Employees: 300 

Operating Locations: Chantilly, VA (HQ); Huntsville, AL; Lexington Park, MD, and other client sites across the US 


A day in the life of a Cloud Security Engineer:

As a Cloud Security Engineer with Hexagon US Federal you will be routinely creating, managing, and refining many different technologies and solutions that support Hexagon’s software suite. The Cloud Security Engineer is an integral part of managing deployments in Microsoft Azure.

The work the Cloud Security Engineer performs daily is key to managing the current infrastructures and helps to future proof new opportunities.

This job is for you if you:

Are passionate about working within the Azure Cloud Environment and want to help build solutions that can utilize the cloud platform to its fullest. Additionally, if you want to continuously learn new and cutting-edge technologies to help solve complex problems and make a meaningful impact daily across multiple projects and environments at once, then this job is for you.


What we are expecting from you (i.e. the qualifications you must have):
  • Azure Security Engineer Associate (AZ-500) or CompTIA CySA+
  • Bachelor’s degree with 5+ years of applicable experience or 7+ years of applicable experience.
  • CompTIA Security+ certification or must be obtained with 6 months of hire date.
  • Experience deploying and utilizing Microsoft Defender for Cloud, Microsoft Sentinel, Microsoft Security Center
  • Experience with configuring and running Tenable ACAS scans
  • Must be able to work both independently and as part of a geographically dispersed team with little supervision and guidance.
  • Ability to make use of provided resources and seek guidance as needed.
  • Ability to communicate effectively, both orally and in writing.
  • A well organized, self-directed, detail and process-oriented individual.
  • Ability to investigate problems or malfunctions and find solutions or corrective actions.
  • Ability to work directly with customers to gather requirements and to resolve problems.
  • Ability to keep abreast of changing software technology.


Preferred Experience:
  • 3-5 years of experience deploying and administering security resources in an Azure Environment
  • 2-3 years of experience designing Virtual Networking Solutions
  • 2-3 years of experience designing and deploying IPSec based Site to Site Connectivity solutions
  • Knowledge of different deployment strategies (cloud, on-premise, hybrid).
  • Understanding of Azure Virtual Networking (ExpressRoute).
  • Experience configuring Azure Log Analytics, Azure Monitor and Alerts, Azure Policies, Azure Backup, Azure Key Vaults, Azure Virtual Machines.
  • Experience with PowerShell / Azure CLI.
  • Experience with FedRAMP Authorization processes is a plus.


Key Responsibilities:
  • Design, implement, and manage security controls for Azure-based infrastructure, applications, and data.
  • Monitor and respond to security incidents using Azure Sentinel, Log Analytics, and other monitoring tools.
  • Conduct threat modeling, vulnerability assessments, and penetration tests on Azure environments.
  • Investigate and mitigate security breaches or suspicious activities in Azure environments.
  • Implement Role-Based Access Control (RBAC), Conditional Access Policies, and Multi-Factor Authentication (MFA).
  • Manage and secure privileged identities using tools like Azure AD Privileged Identity Management (PIM).
  • Ensure Azure deployments comply with relevant security standards (e.g., FedRAMP High, NIST 800-53, DoD Cloud SRG, etc..).


Required Level of Security Clearance: - Secret (or ability to obtain)


What we will provide in return:  

- Competitive health care plans with savings accounts 

- Dental and vision plans 

- 401k with 100% company match up to 6%, with immediate vesting on company match 

- Life and disability insurance 

- Learning Management System with robust offerings 

- Tuition Reimbursement Program 

- Flexible hybrid and remote working arrangements where possible 

- 13 paid holidays per year 

- Thrive Wellness Program 

- DE&I and Veterans’ focused Employee Resources Groups with regular educational sessions and communications 

- Leadership Development Program with multiple learning options 

 

Hexagon US Federal is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status. 

Hexagon US Federal Glassdoor Company Review
4.0 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
Hexagon US Federal DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of Hexagon US Federal
Hexagon US Federal CEO photo
Tammer Olibah
Approve of CEO

Average salary estimate

$105000 / YEARLY (est.)
min
max
$90000K
$120000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Cloud Security Engineer, Hexagon US Federal

If you’re passionate about cloud technology and want to make a tangible impact, Hexagon US Federal has an exciting opportunity for you as a Cloud Security Engineer! This fully remote position places you in the heart of cutting-edge technologies, where you will create, manage, and refine solutions supporting Hexagon’s innovative software suite. Every day, you will dive into the Azure Cloud Environment, enabling our federal clients to make smarter, faster operational decisions. As a pivotal member of our team, your expertise will help bolster the security and efficacy of our current infrastructure and future initiatives. You’ll be hands-on with Azure Security controls, conducting vulnerability assessments, and monitoring security incidents to ensure our environments are secure and compliant with standards. If you’re eager to continuously learn while tackling complex challenges across multiple projects, then this role could be your perfect fit. At Hexagon US Federal, we value your ability to investigate and resolve issues, communicate effectively, and work independently or as part of a wider team. We’re looking for individuals who possess essential qualifications like the Azure Security Engineer Associate certification and hands-on experience with Microsoft Defender for Cloud and Microsoft Sentinel. In return, we offer competitive health plans, a 401k with generous matching, and a focus on employee well-being and development. Join us in shaping the future of cloud security and making a difference every day!

Frequently Asked Questions (FAQs) for Cloud Security Engineer Role at Hexagon US Federal
What are the main responsibilities of a Cloud Security Engineer at Hexagon US Federal?

A Cloud Security Engineer at Hexagon US Federal is responsible for designing, implementing, and managing security controls for Azure-based infrastructures and applications. This includes monitoring and responding to security incidents using tools like Azure Sentinel, conducting threat modeling, performing vulnerability assessments, and ensuring compliance with important security frameworks such as FedRAMP and NIST 800-53.

Join Rise to see the full answer
What qualifications do I need to be a Cloud Security Engineer at Hexagon US Federal?

To qualify for the Cloud Security Engineer position at Hexagon US Federal, candidates must hold a Bachelor’s degree with 5 years of relevant experience or 7 years of applicable work experience. Additionally, an Azure Security Engineer Associate certification (AZ-500) or CompTIA CySA+ certification is required, along with CompTIA Security+ certification to be obtained within the first 6 months of employment.

Join Rise to see the full answer
What tools and technologies should a Cloud Security Engineer be familiar with at Hexagon US Federal?

As a Cloud Security Engineer at Hexagon US Federal, familiarity with Azure tools such as Microsoft Defender for Cloud, Microsoft Sentinel, and Azure Security Center is essential. Experience with Azure Log Analytics, Azure Monitor, and tools for configuring security settings like RBAC, MFA, and privileged identity management is also beneficial.

Join Rise to see the full answer
Is remote work possible as a Cloud Security Engineer at Hexagon US Federal?

Yes, Hexagon US Federal offers the Cloud Security Engineer position as a fully remote opportunity. This allows you to work from anywhere, providing the flexibility to balance your professional and personal life while contributing to important projects.

Join Rise to see the full answer
What does the career development look like for a Cloud Security Engineer at Hexagon US Federal?

At Hexagon US Federal, career development for a Cloud Security Engineer is robust, with access to a Learning Management System offering diverse learning options. There are also tuition reimbursement programs and leadership development initiatives designed to help you grow professionally and advance your career.

Join Rise to see the full answer
Common Interview Questions for Cloud Security Engineer
Can you describe your experience with Azure Security tools?

When answering about your experience with Azure Security tools, provide specific examples of projects or tasks where you've utilized tools like Azure Sentinel or Microsoft Defender for Cloud. Highlight your approach to configuring security settings, monitoring incidents, and any successful outcomes you've achieved.

Join Rise to see the full answer
How do you handle security breaches or suspicious activities in a cloud environment?

In your response, outline a structured approach to detecting and responding to security breaches. Discuss the importance of staying calm, documenting the incident, identifying affected systems, and communicating with stakeholders. Highlight your experience with incident response plans and tools used to mitigate threats.

Join Rise to see the full answer
What is your methodology for conducting vulnerability assessments?

Explain your methodology for conducting vulnerability assessments by detailing the steps you take, such as identifying assets, scanning for vulnerabilities, assessing risk, and patching. Mention any specific tools you use and how you prioritize vulnerabilities based on severity and potential impact.

Join Rise to see the full answer
Can you explain how Role-Based Access Control (RBAC) works in Azure?

When asked about RBAC, provide a clear explanation of how it restricts access based on roles assigned to users, applications, or groups. Discuss your experience in implementing RBAC in Azure, detailing the process of assigning roles, managing permissions, and ensuring compliance with security policies.

Join Rise to see the full answer
What are the key compliance standards a Cloud Security Engineer should be aware of?

In your response, touch upon key compliance standards like FedRAMP, NIST SP 800-53, and the DoD Cloud SRG. Explain how you ensure that Azure deployments comply with these standards, and share any experience you have with audits or compliance assessments.

Join Rise to see the full answer
How do you stay up-to-date with the latest cloud security trends and threats?

Describe your approach to staying current with cloud security trends, mentioning resources such as industry blogs, webinars, professional organizations, and continuous education. Highlight any certifications pursued and how you apply new knowledge to your role.

Join Rise to see the full answer
What steps do you take to monitor security incidents within Azure?

Discuss the proactive strategies you use to monitor security incidents. Cover how you utilize tools like Azure Sentinel and Log Analytics to create alerts and dashboards that help in real-time monitoring, and describe the follow-up actions you take after detecting incidents.

Join Rise to see the full answer
Can you provide an example of a successful security initiative you implemented?

When asked for a successful security initiative, describe a specific project where you implemented a security feature or addressed a potential threat. Include details about the goal, the actions taken, the challenges faced, and the outcomes achieved, emphasizing quantifiable results if possible.

Join Rise to see the full answer
How would you approach working with a geographically dispersed team?

In response, highlight your experience working with remote teams, emphasizing communication tools and strategies you utilize to maintain collaboration. Share how you adapt your work style to ensure productivity and support among team members, regardless of their locations.

Join Rise to see the full answer
What is your process for configuring Azure security settings?

Share your step-by-step process for configuring Azure security settings. Discuss how you assess security needs, define configurations, implement controls, and test for compliance. Mention any resources or documentation you use to ensure best practices are followed.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 5 days ago
Photo of the Rise User
Deloitte Hybrid Davenport, IA
Posted 5 days ago
Photo of the Rise User
Posted 14 days ago
Photo of the Rise User
Posted 5 days ago
Photo of the Rise User
Posted 3 days ago
Photo of the Rise User
Posted 46 minutes ago

We empower U.S. Federal Government agencies to make rapid and intelligent operational decisions by harnessing vast amounts of complex data. We develop and deploy innovative solutions, transforming and improving mission critical operations.

23 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
December 25, 2024

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!