Cloud Security Engineer

Patch My PC
•$110,000 - $145,000•Remote

About The Position

We're hiring a Cloud Security Engineer to strengthen and operate our Microsoft cloud security stack. This is a hands-on engineering role: you'll build, tune, and maintain the security and compliance controls that protect organizational and customer data while bringing a red-team mindset to find weaknesses before attackers do. You'll own the day-to-day engineering of our Microsoft Purview, Defender for Cloud, Entra, and Azure monitoring capabilities, translate technical risk into clear recommendations for leadership, and act as a trusted security advisor to internal teams and customers. This role sits at the intersection of security engineering, cloud operations, and governance, ideal for someone who likes to build controls, break assumptions, and measurably improve security posture.

Requirements

  • 7+ years of hands-on experience engineering and operating Microsoft cloud security technologies: Purview, Defender for Cloud, Azure Log Analytics, Entra ID, PIM, Identity Governance, and DLP.
  • Solid understanding of cloud security principles and Microsoft 365 / Azure security controls.
  • Experience investigating security risks and identifying control weaknesses.
  • Comfort writing queries (e.g., KQL) and automating tasks (PowerShell, Graph API, or similar) is a strong plus.
  • Willingness and ability to travel. Tthis role may require travel to customers to discuss our security practices and showcase how our tooling improves their security posture.
  • Strong analytical and problem-solving skills, with the ability to think from an attacker's perspective.
  • Excellent written communication, able to produce professional reports and executive summaries.
  • Strong presentation and customer-facing communication skills.
  • Able to work independently in a remote setting while collaborating with distributed teams.

Nice To Haves

  • Microsoft security certifications (SC-200, SC-300, SC-400, AZ-500, or equivalent).
  • Experience with compliance frameworks such as ISO 27001, SOC 2, GDPR, or similar.
  • Experience with security governance, risk, and compliance (GRC) programmes.
  • Exposure to AI governance, security, or responsible-AI initiatives.
  • Experience as a consultant in Configuration Manager, Intune and other related technologies.
  • Experience at leading customer focused workshops.

Responsibilities

  • Design, deploy, configure, and maintain Microsoft cloud security and compliance technologies, including Microsoft Purview, Microsoft Defender for Cloud, Azure Log Analytics, Microsoft Entra ID, Privileged Identity Management (PIM), and Identity Governance.
  • Engineer and continuously improve technical security controls across Microsoft 365 and Azure.
  • Automate recurring security and compliance tasks to reduce manual effort and drift.
  • Monitor security and compliance posture, and drive continuous-improvement initiatives with measurable outcomes.
  • Build, deploy, and maintain Data Loss Prevention (DLP) policies across the organisation.
  • Monitor AI technology usage and engineer controls to mitigate data exposure, information leakage, and inappropriate use.
  • Assess emerging AI-related threats and implement appropriate governance and technical guardrails.
  • Partner with internal teams to ensure sensitive data is adequately protected.
  • Apply a red-team mindset to proactively identify weaknesses in systems, configurations, processes, and controls.
  • Conduct security reviews, exposure assessments, and control-effectiveness evaluations.
  • Produce clear, concise reports for leadership covering findings, risk assessments, control gaps, and prioritized remediation recommendations.
  • Track remediation and support stakeholders in implementing corrective actions.
  • Use Azure Log Analytics and security tooling (e.g., KQL queries, alerting) to detect suspicious activity, trends, and compliance issues.
  • Support security investigations and incident response, including analysis, containment, and remediation recommendations.
  • Represent security and compliance in customer calls covering governance, data protection, and control topics.
  • Support the compliance team on customer questionnaires, assessments, and security reviews.
  • Communicate technical concepts effectively to both technical and non-technical audiences.

Benefits

  • 401k Match: Match 200% of contributions up to the first 5% of salary, resulting in a total potential match of 10%.
  • Medical, Dental, and Vision Coverage: Patch My PC covers 99% of premiums for both team members and dependents.
  • FSA/HSA.
  • Fertility benefits.
  • Parental leave.
  • Paid-time off (PTO).
  • Volunteer leave.
  • Charitable donation matching.
  • Tuition reimbursement.
  • Gym membership reimbursement.
  • Internet stipend.
  • Pet insurance.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service