About The Position

The Information Technology Department (ITD) at the IMF is seeking a Security Analyst/Senior Security Analyst (Cloud Security Assurance) to provide expertise in the definition, design, engineering, and validation of security configurations for cloud and on-premises technology platforms. This role involves collaborating with project teams, service providers, and business units to ensure pragmatic security and risk management experience is applied, enabling the IMF to meet its business needs. The candidate will advise and influence technology and business personnel on safeguarding information, applications, systems, and infrastructure, optimizing work practices to manage information risks effectively.

Requirements

  • Bachelor's degree in information security, computer science, engineering, mathematics, business, or related field of study plus a minimum of 10 years of relevant experience working in cloud security, assurance, or architecture roles; OR Advanced degree in Information Security, computer science, engineering, mathematics, business, or related field of study plus a minimum of 4 years of relevant experience working in cloud security, assurance, or architecture roles.
  • CISSP or CISM (minimum required)
  • Microsoft Certified: Azure Security Engineer Associate (minimum required)
  • Proven track record delivering technical security assurance and engineering solutions, with hands-on experience in operational security for regulated environments, especially in Azure and Microsoft cloud platforms.
  • Multi-cloud security posture management and familiarity with tools like Wiz, Orca, Prisma Cloud, Microsoft Defender for Cloud, etc.
  • Extensive technical hands-on security experience across a broad range of Microsoft cloud services, including Azure IaaS/PaaS, Entra ID, Conditional Access Policies, PIM; Azure Policy and Defender for Cloud; Intune; Graph API, Azure Monitor and Microsoft Sentinel; Microsoft 365 security (Exchange Online, Teams, SharePoint/OneDrive), and other key components of the Microsoft security ecosystem such as Purview.
  • Advanced working knowledge (preferably previous hands-on experience) in: Windows/Linux administration fundamentals, Firewalls, Active Directory/Entra hybrid concepts, and Azure networking (VNets, subnets, NSGs, Private Link, Application Gateway).
  • Zero Trust principles; Azure Firewall/WAF and cloud edge controls; SIEM/SOAR (Microsoft Sentinel preferred); familiarity with enterprise security tooling and NDR concepts.
  • Proficiency in PowerShell scripting to automate compliance checks, configuration, and reporting across Azure and Entra ID.
  • Deep expertise with Entra ID app registrations, OAuth 2.0/OIDC flows, delegated vs. application permissions, Graph API consent models, admin/user consent workflows, and permission governance.
  • Experience with Power Automate, Power Apps, Power BI, Data Factory
  • Demonstrates expertise in securing infrastructure, application and database components through tailored hardening approaches, employing modern tools and techniques to protect the full technology stack.
  • Hands-on experience with Infrastructure as Code (IaC) security scanning (e.g., Checkov, tfsec, etc.).
  • Securing Kubernetes clusters and containerized workloads (e.g., AKS, etc.).
  • Experience with serverless security (e.g., Azure Functions, etc.) and related risks.
  • Automation of security controls and compliance checks using scripting (Python, Bash, PowerShell).
  • Pragmatic security expert with an inherent ability to balance security demands with business reality.
  • Commitment to continuous learning to stay current with the evolving cybersecurity landscape.
  • Strong knowledge of security solutions, emerging threats, and effective countermeasures.
  • Analytical skills that enable synthesis of inputs from many sources and allow for strategic thinking and tactical implementation.
  • Spoken and written communications that are compelling, convincing, and reassuring, and skills to articulate complex technical ideas to non-technical stakeholders.
  • Ability to think laterally and to have input to / propose detailed, complex solutions to technical issues.
  • Interpersonal skills that create openness and trust among colleagues.
  • Ability to work well under pressure and to meet tight deadlines.
  • Demonstrates a high level of motivation, confidence, integrity, and responsibility.
  • Ability to be organized, responsive, and to be able to effectively multi-task with a focus on driving results.
  • Demonstrate excellent interpersonal and relationship management skills.
  • Ability to work independently, effectively in a team/task force as a team member or leader, and with senior staff and managers.
  • Excellent relationship management skills.
  • Facilitation and conflict management skills that enable effective working relationships.

Nice To Haves

  • CCSP (preferred)
  • Microsoft Certified: Cybersecurity Architect Expert (preferred)
  • Microsoft Certified: Azure Solutions Architect Expert (preferred)
  • Microsoft Certified: Azure Administrator Associate (preferred)
  • Microsoft Certified: Azure DevOps Engineer Expert (preferred)
  • Other Microsoft cloud security related certifications at the Expert level (preferred)
  • GIAC cloud security related certifications (preferred)

Responsibilities

  • Provide cybersecurity assurance expertise for IT initiatives, focusing on Microsoft Azure, Entra ID, and hybrid cloud environments.
  • Define, guide engineering, and validate implementation of technology-agnostic security control standards, configuration baselines, and implementation guidelines for cloud and on-premises platforms.
  • Emphasize automation for security configuration and posture management, and policy-as-code (Azure Policy, Terraform).
  • Maintain impartiality to produce unbiased reports on information security risk.
  • Conduct quality assurance reviews of security requirements and audit recommendations.
  • Communicate requirements and provide guidance to IT teams on security design and technical configuration of controls.
  • Work closely with IT project teams to develop and implement security controls for new and existing cloud services (Microsoft Azure, Entra ID, Microsoft 365).
  • Act as an advocate for information security, collaborating with IT stakeholders, service providers, and business units to provide technical security solutions.
  • Identify opportunities to improve business practices or IT security processes, including automation, compliance, and secure integration.
  • Prioritize, monitor, and assess compliance and audit recommendation results.
  • Support Zero Trust initiatives by promoting identity-centric access, device health posture, segmentation, and continuous verification.
  • Develop and maintain scripts and templates (PowerShell, Python, Azure Policy, Terraform) for compliance checks and reporting.
  • Support logging and monitoring efforts using Azure Monitor, Log Analytics (KQL), and Microsoft Sentinel.
  • Contribute to secure design, architecture, and configuration of services like Azure Kubernetes, Functions, APIM, Key Vault, and Power Platform.
  • Design and validate security configuration baselines for SaaS platforms (ServiceNow, Workday, Salesforce) to ensure alignment with organizational policies and compliance requirements.
  • Support the information security assurance manager with audit and compliance initiatives (ISO 27001, IT General Controls for ICFR, internal/external audits).
  • Promote self-compliance to policies and standards by IT staff and managers.
  • Stay abreast of international standards, best practices, and regulations in information security, AI, and data privacy.
  • Analyze, recommend, and implement process improvements within information security.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service