Avatar for PatientFirst.Ai
PatientFirst.Ai
Actively Hiring

Security Engineer II – Hybrid Cloud

  • $125k – $150k
  • |
    Virginia • 
    Glen Allen
  • |3 years of exp
  • |Full Time
Posted: 3 weeks ago
Job Location
Virginia • 
Glen Allen
Remote Work Policy

In office - WFH flexibility

Visa Sponsorship

Not Available

RelocationAllowed
Skills
Networking
Risk Analysis
PCI Compliance
Identity Management
Auditing
Incident Response
Monitoring
Vulnerability Management
Access Control
Firewalls
COBIT
CIS
Sentinel
HIPAA compliance
RBAC
NIST
Architecture Reviews
Conditional Access
Exception Management
Firewall Management
logging
Alerting
Linux systems
Security Monitoring
Threat Hunting
Vulnerability Remediation
Security Reviews
SIEM Tools
Microsoft Defender for Cloud
Identity Governance
Azure Policy
Compliance Reporting
Access Review
SaaS Security
Vulnerability Scanning Tools
Hybrid Cloud Security
Microsoft 365 Security
Deployment Workflows
EDR Tools
Security Investigations
Hybrid Environments
Windows Systems
Cloud Security Posture Management Tools
Auditability
Compliance-Driven Environments
Azure Security Services
Audit Evidence
Regulated Environments
Log Review
Risk Communication
DLP Tools
Control Requirements
Remediation Recommendations
SIEM/SOAR Tools
Incident Response Concepts
Vulnerability Management Concepts
Access Control Concepts
Third-Party Vendor Security
Security Risk Communication
Policy Validation
Alert Investigation
Logging Concepts
PaaS Security
Cloud Security Baselines
IaaS Security
Remediation Options
Workload Intake
Production Go-Live Readiness
Cloud Governance Enforcement
Manual Security Validation
Operational Control Requirements
IDS/IPS/EDR Management
Patch Security Coordination
Alerting Concepts
Compliance Evidence Expectations

About the job

Patient First is seeking a Security Engineer II to support operational security responsibilities while strengthening cloud-native security across Azure and Microsoft 365 environments. This role combines current security operations, vulnerability management, monitoring, auditing, firewall/EDR/SIEM support, and compliance reporting with future-state responsibilities for Azure Policy, Defender for Cloud, RBAC, Conditional Access, centralized logging, incident response, and cloud governance enforcement.

The responsibilities of this job include, but are not limited to the following:

  • Implementing and maintaining Microsoft Defender for Cloud, Azure Policy, security baseline controls, and cloud posture recommendations;
  • Configuring and supporting RBAC, Conditional Access, privileged access, and identity governance models for Azure and Microsoft 365;
  • Maintaining centralized logging, alerting, and monitoring pipelines for cloud workloads and security investigations;
  • Supporting security gates in deployment workflows, including policy validation, access review, and exception management;
  • Providing security input during architecture reviews, workload intake, and production go-live readiness;
  • Moving security from after-the-fact review into design-time and pipeline-integrated governance;
  • Standardizing cloud security baselines and reducing dependency on manual security validation;
  • Translating existing security policies into Azure Policy, RBAC standards, and operational control requirements;
  • Improving auditability by aligning monitoring, logging, access review, and compliance reporting to cloud workloads;
  • Supporting security operations including firewall management, IDS/IPS/EDR management, security monitoring, auditing, vulnerability management, and patch- related security coordination;
  • Investigating alerts, participating in incident response, and supporting threat hunting, log review, and risk analysis activities;
  • Assisting with security reviews for applications, systems, third-party vendors, and hybrid cloud implementations;
  • Supporting compliance activities related to HIPAA, PCI, access control, vulnerability remediation, and audit evidence;
  • Communicating security risks and remediation recommendations to technical teams and business stakeholders.

Minimum education and professional requirements include, but are not limited to, the following:

  • Employee must be 18 years of age or older;
  • High school diploma or equivalent;
  • At least three years of experience in cybersecurity, security operations, cloud security, or hybrid infrastructure security roles;
  • Experience with Azure security services, Microsoft Defender for Cloud, Sentinel or SIEM tools, identity, RBAC, and access control concepts;
  • Understanding of vulnerability management, logging, alerting, incident response, and compliance evidence expectations;
  • Working knowledge of hybrid environments including Windows/Linux systems, networking, firewalls, SaaS/PaaS/IaaS security, and Microsoft 365;
  • Ability to communicate risk, remediation options, and control requirements clearly across technical and non-technical audiences;
  • Experience in regulated, or compliance-driven environments; healthcare experience preferred;
  • Knowledge of NIST, HIPAA, PCI, CIS, COBIT, or similar security frameworks;
  • Azure Security Engineer Associate, CISSP, or comparable security certification;
  • Experience with SIEM/SOAR, DLP, EDR, vulnerability scanning, and cloud security posture management tools.

Salary Range: $125,000 - $150,000 annually, depending on experience.

Benefits and Other Compensation:

• Health, Dental and Vision insurance for employees and dependents

• Disability, Life and Long Term care insurance

• Employee Assistance Program, Flexible Spending accounts, 401(k) Retirement Plan (with employer match)

• Paid Annual Leave, Volunteer Time Off Pay, Bereavement Leave, Emergency Leave Bank

• Overtime Pay, Holiday Pay, Double time compensation for all holidays worked

• Discounted medical treatment at any Patient First location for employees and immediate family

• Bonuses include:

  • Recruitment bonus

Similar Jobs

Seekr company logo
Seekr
Seekr puts trust into every stage of the AI lifecycle, so enterprises can build and run AI
Seekr company logo
Seekr
Seekr puts trust into every stage of the AI lifecycle, so enterprises can build and run AI
Seekr company logo
Seekr
Seekr puts trust into every stage of the AI lifecycle, so enterprises can build and run AI