remote
Senior Security Systems Engineer Azure - EPAM SYSTEMS PTE. LTD.
Systems Engineer
We're looking for a Systems Engineer focused on designing and building scalable technical solutions. This senior role requires 5+ years of relevant experience.
About the role
Why EPAM?
- By choosing EPAM, you're getting a job at one of the most loved workplaces according to Newsweek 2022 & 2023 .
- Employee ideas are the main driver of our business. We have a very supportive environment where your voice matters.
- You will be challenged while working side-by-side with the best talent globally. We work with top-notch technologies, constantly seeking new industry trends and best practices.
- We offer a transparent career path and an individual roadmap to engineer your future & accelerate your journey.
- At EPAM, you can find vast opportunities for self-development: online courses and libraries, mentoring programs, partial grants of certification, and experience exchange with colleagues around the world. You will learn, contribute, and grow with us.
What You’ll Do
- Configure and maintain Microsoft Entra ID controls including Conditional Access, Multi-factor authentication (MFA) and privileged access workflows
- Implement and tune Azure security controls including Microsoft Defender for Cloud, Azure Firewall and network segmentation
- Manage endpoint security baselines using Microsoft Intune and Microsoft Defender XDR \
- Apply hardening standards, detect configuration drift and drive remediation to restore compliance
- Triage and remediate vulnerability findings from Tenable Nessus, Microsoft Defender and security reviews within agreed service levels
- Partner with Engineering to embed security configuration into infrastructure builds and change activities
- Provide technical escalation for control-level issues raised by Security Operations and external SOC or MDR partners
- Maintain clear documentation, standard operating procedures (SOPs) and control validation evidence in Confluence
What Will Make You Shine
- Hands-on experience implementing security controls across Azure, identity and endpoint environments
- Strong knowledge of Microsoft Entra ID including Conditional Access, Privileged Identity Management (PIM) and Multi-factor authentication (MFA)
- Practical background with Microsoft Defender for Cloud, Microsoft Intune and endpoint protection tooling
- Experience configuring network security controls such as Azure Firewall and segmentation patterns
- Working knowledge of vulnerability management including Tenable Nessus findings triage, remediation and verification
- Familiarity with CIS Controls v8 or comparable hardening and baseline frameworks
- Ability to troubleshoot control failures, validate effectiveness and document outcomes clearly
- Confidence working in a small team with direct exposure to build, run, improvement and change review activities.
Nice to Have