layiq
worthy; deserving; fitting; suitable.
A role, opportunity, or path that merits attention, time, and pursuit.
Loading LAYIQ…Job opportunity
GuidePoint Security
Remote
Source: GuidePoint Security careers · View original posting
From GuidePoint Security's posting. “We” and “our” refer to the employer.
GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation’s top organizations, such as Fortune 500 companies and U.S. government agencies, to identify threats, optimize resources and integrate best-fit solutions that mitigate risk.
General Description
We are looking for a skilled
Azure Security Engineer to support our GuidePoint Microsoft Cloud Security Practice. This role will engage in the development of customer facing Azure security engineering services while providing “Wow Them” service to clients and/or internal customers or co-workers.
The Azure Security Engineer is responsible for designing, implementing, and securing our customers Azure infrastructure. Azure Security Engineers operate primarily in a remote customer facing role with a focus on integrating cloud security technologies into either an existing or new environment while providing expertise in cloud computing to drive business efficiency and innovation.
Azure Security Engineers evaluate existing cloud infrastructure and provide recommendations and or implement improvements to strengthen the cloud security posture of the environment. Azure Security Engineers demonstrate strong working knowledge across Azure Commercial and Azure Gov Cloud tenants, subscription management, landing zones, networking, security, and infrastructure through implementation of Microsoft Azure best practices and infrastructure as code (IaC).
Azure Security Engineers work with cloud infrastructure team members as needed to provide secure configurations within the Microsoft Azure infrastructure. As a subject matter expert (SME), the Azure Security Engineer also brings deep, hands-on expertise across the broader Azure platform—including AI platform engineering with Azure AI Foundry and enterprise API management and governance with Azure API Management (APIM)—and serves as the technical authority for architecting, securing, and operationalizing these workloads for customers.
The Cloud Practice is responsible for providing advisory services as well as secure implementations specific to security tooling with the intent of protecting the customers' identities, endpoints, data, applications, and cloud infrastructure by designing, deploying, and operationalizing Cloud Solution Providers native security solutions. We focus specifically on ensuring cloud security, data security, identity and access management, as well as threat protection has been implemented following best practices across the organization.
Our team of Microsoft specialists focus on deploying Microsoft security, compliance, and identity solutions to protect identities, devices, data, apps, and infrastructure. We partner with other internal Teams and resources to ensure the overall goals of the clients are achieved and align with industry standards and best practices.
Serve as the subject matter expert (SME) for Azure AI Foundry, architecting, deploying, and securing generative AI and machine learning workloads, including model catalog selection, model deployments, AI agents, and prompt flow orchestration
Serve as the subject matter expert (SME) for Azure API Management (APIM), designing and operating secure, scalable API gateways, products, versions, and revisions across Azure Commercial and Azure Gov Cloud environments
Author and manage APIM policies for authentication and authorization (OAuth 2.0, JWT validation, mutual TLS), rate limiting, caching, request/response transformation, and backend routing
Design and implement APIM as a GenAI gateway in front of Azure AI Foundry and Azure OpenAI endpoints, including token-based rate limiting, semantic caching, load balancing across model deployments, and centralized monitoring of AI consumption
Integrate APIM with Microsoft Entra ID, Application Gateway / Web Application Firewall (WAF), private networking, and self-hosted gateways to enforce Zero Trust and secure hybrid connectivity
Establish API governance, lifecycle management, developer portal experiences, and end-to-end observability (logging, metrics, and diagnostics) for customer API estates
Define and maintain Azure Governance policies including Subscription Management, Cost Management, Security, Resource Consistency, Identity Baseline, Deployment Acceleration, etc.
Recommends strategies to streamline Azure native technologies for effectiveness and efficiency, considering client needs.
Proficient in Azure services, including but not limited to Entra ID, Azure Virtual Networks / Machines, Azure App Services, Azure Kubernetes Service, Azure Key Vault, Azure Private Link/Private Endpoint
Subject matter expert (SME)–level proficiency in Azure AI Foundry, including model catalog and model deployment, AI agents, prompt flow, Retrieval-Augmented Generation (RAG) architectures, evaluations, and Responsible AI / content safety controls
Subject matter expert (SME)–level proficiency in Azure API Management (APIM), including gateway architecture, policy authoring, API security and versioning, developer portal, self-hosted gateways, and use of APIM as a GenAI / AI gateway (token limiting, semantic caching, and load balancing) in front of Azure AI Foundry and Azure OpenAI endpoints
Must pass either the Cloud Security Alliance Certificate of Cloud Security Knowledge (CCSK) or the (ISC)2 Certified Cloud Security Professional within 6 months of joining the team.
Embraces emerging technologies, including AI tools, to work smarter, solve problems, and drive better business outcomes.
Up to 10 % travel
Sedentary work
Substantial movement of the wrists, hands, and/or fingers for a minimum of 8 hours a day
Required to have close visual acuity to view computer terminal and/or extensive reading for a minimum of 8 hours a day
We use Greenhouse Software as our applicant tracking system and Zoom Scheduler for HR screen request scheduling. At times, your email may block our communication with you. Please be sure to check your SPAM folder so that you don't miss updates on your application.
Why GuidePoint?
GuidePoint Security is a rapidly growing, profitable, privately-held value added reseller that focuses exclusively on Information Security. Since its inception in 2011, GuidePoint has grown to over 1,300 employees, established strategic partnerships with leading security vendors, and serves as a trusted advisor to more than 6,200 customers.
Firmly-defined core values drive all aspects of the business, which have been paramount to the company’s success and establishment of an enjoyable workplace atmosphere. At GuidePoint, your colleagues are knowledgeable, skilled, and experienced and will seek to collaborate and provide mentorship and guidance at every opportunity.
This is a unique and rare opportunity to grow your career along with one of the fastest growing companies in the nation.
Some added perks….
Remote workforce primarily (U.S. based only, some travel may be required for certain positions, working on-site may be required for Federal positions)
Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint pays 90% of the premium for employees and 70% for family plans (spouse/children/family) or High Deductible Health Plan with HSA (GuidePoint pays 100% of the employees premiums and 75% for family plans (spouse/children/family). If you choose the High Deductible / HSA plan, GPS will contribute in 4 equal quarterly installments: ($850 per EE annually / $1750 per family annually (includes spouse/children/family options)
LAYIQ is an independent job-discovery service. This listing does not imply a partnership with or endorsement by the employer. Review the original posting for current details and availability.
Employer posted: