The Judge Group · 5 hours ago
Enterprise Security Architect
The Judge Group is seeking an Azure Cloud Cyber-Security Architect to work with one of its key government clients. The role is responsible for leading the development of cyber-security architecture and ensuring technology initiatives are implemented to protect cloud environments.
Responsibilities
Define, Design, and Develop, cybersecurity and privacy policies, processes and compliance artifacts, systems authorization, and management in a cloud environment
Analyze and map existing and define and develop new security controls and safeguards to compliance requirements for a cloud environment
Assess and document “Shared Responsibility” for all cyber security and risk-based capabilities
Lead automation of Azure infrastructure provisioning and security controls using Terraform and policy-as-code
Collaborate with ITOps, DEVOps and other teams to perform architecture reviews, risk assessments, and control mapping
Define, Design, and Develop, an ongoing Zero-Trust Architecture as a core part of all design and development of the cloud solution
Define, Design, and Develop, identity and access controls, logging, and monitoring solutions
Coordinate application and infrastructure risk mitigation and vulnerability remediation activities
Define, Design, Develop, implementation, and deployment of a hybrid cloud solution in a FedRAMP High environment involving integration of hybrid cloud solutions with on-premises components and systems
Define and Develop Incident Management activities, assessing attacker tactics, techniques, and procedures (TTP) and provide incident response support to locate and prevent threats
Qualification
Required
Bachelor's degree in a technology field
5+ years' cyber related experience in a GovCloud (preferred) or commercial environment with Azure, in a technical information security and risk management role
5+ years firsthand working with multiple Azure security tools and platforms such as Entra ID, Sentinel, Defender, Monitor, Key-Vault, or similar in other platforms
5+ years managing security policies and initiatives in Azure
Identity Access and Management (IDAM) concepts, multifactor authentication, SSO/Federation
Privileged Access Management (PAM) and Privileged Identity Management (PIM) key concepts
Demonstrated ability to Define, Design, and configure the Azure security platforms, and function as an overall lead managing end to end security on the Azure GovCloud regions
Experience automating security baselines and policy enforcement in enterprise Azure environments
Experience automating 'Policy-As-Code' using Terraform and ARM templates, with a focus on reusable module design, policy enforcement, and secure CI/CD integration
Demonstratable understanding of Information Security and Risk Management capabilities related to cloud computing across Windows and Linux, with demonstrated direct experience with the following domains: Identity, Credential and Access Management (ICAM), Authentication and Authorization including SSO and Identify Federation, Zero-Trust Model, Defense-In-Depth, Governance and Compliance, Securing Data, Securing the Operating System, Protecting the Network Layer, Continuous Diagnostics and Mitigation, Alerting, Audit Trail, and Incident Response, Cloud Core Platform: Compute, Storage, Networking
Preferred
Master's degree
Prior experience supporting federal, defense, or highly regulated commercial clients
Familiarity with compliance frameworks such as FedRAMP, CMMC, FISMA and NIST 800-53
Certifications: CISSP, CCSP, Azure/AWS/Google Training and Certification
CrowdStrike Falcon EDR for Azure
Experience with secure baseline configurations (CIS Benchmarks, DISA STIGs) for Azure environments
Managing/maintaining FISMA compliance for a government information system in accordance with requirements from NIST
Demonstrated experience collaborating directly with external clients, business leadership, and auditors
Direct technical background, to include familiarity with servers, network devices, and security systems
Company
The Judge Group
Results through the Power of Experience.
Funding
Current Stage
Public CompanyTotal Funding
unknown1997-02-14IPO
Recent News
Seattle TechFlash
2025-09-12
2025-08-05
The Judge Group
2025-05-07
Company data provided by crunchbase