Demo

Senior Security Engineer - Azure Security

Core Specialty Insurance Holdings, Inc.
Cincinnati, OH Full Time
POSTED ON 4/17/2026
AVAILABLE BEFORE 5/24/2026
Core Specialty is seeking a Senior Azure Cyber Security Engineer to serve as a hands-on technical leader and subject matter expert within the Cyber Security Engineering function. This is a senior individual contributor role with no direct reports, focused on designing, implementing, and operating security controls across Azure, identity, endpoint, cloud application, and network security domains. This role operates in a fast-paced, high-volume environment with a broad and evolving security landscape. The ideal candidate is comfortable balancing strategic security initiatives with day-to-day operational engineering work, operates with minimal direction, and proactively identifies gaps, proposes solutions, and executes with a strong sense of ownership.

The selected candidate will be required to work a hybrid schedule (3 days in office/2 remote) out of our Dallas, TX, or Cincinnati, OH office. No relocation assistance is being offered with this role.

Key Accountabilities/Deliverables:

Cloud Security Engineering & Program Maturation

  • Serve as a senior technical contributor driving the maturation of Core Specialty’s Azure security posture
  • Identify gaps in cloud security controls, define remediation approaches, and deliver measurable improvements
  • Act as a technical escalation point for complex security engineering challenges and incidents
  • Partner with IT, GRC, and business stakeholders to align security engineering solutions with risk objectives
  • Balance work across multiple concurrent projects and BAU (business-as-usual) security operations

Azure Security & Policy Engineering

  • Design, implement, and manage Azure Policy definitions, initiatives, and assignments to enforce security baselines and regulatory requirements
  • Engineer and maintain security configurations across Azure services, including Azure Firewall, Network Security Groups (NSGs), Key Vault, and Microsoft Defender for Cloud
  • Develop and operationalize monitoring, alerting, and remediation workflows for Azure policy non-compliance

Cloud Application Security

  • Define and enforce cloud application security policies using Microsoft Defender for Cloud Apps (MDCA)
  • Implement Conditional Access App Control for real-time session enforcement across SaaS applications
  • Establish cloud application risk scoring, usage policies, and data exfiltration controls
  • Partner with business units to assess and onboard new cloud applications with appropriate security guardrails

Identity & Access Management

  • Architect and manage Microsoft Entra ID (Azure AD) security configurations, including: Conditional Access, Privileged Identity Management (PIM), Access reviews and identity governance, Role-based access control (RBAC)
  • Govern identity lifecycle and entitlement management across Azure and integrated SaaS platforms
  • Support identity security governance in AWS IAM, including federation and cross-cloud identity considerations

Network Security Engineering

  • Design and manage Azure-native network security controls, including: Azure Firewall, Azure Front Door, Azure WAF, Azure DDoS Protection, VNets, Private Endpoints, and NSGs
  • Support perimeter and segmentation security using Palo Alto Networks firewalls and Panorama
  • Manage and support Cloudflare security services (WAF, DDoS, DNS security, ZTNA, Bot Management)
  • Collaborate with network engineering teams to ensure designs align with zero trust principles

Endpoint Security & Intune Engineering

  • Design, deploy, and manage Microsoft Intune security policies at scale, including: Device compliance and configuration profiles, Endpoint protection and ASR rules, Application Protection Policies (MAM), Windows Autopilot and enrollment controls
  • Maintain endpoint security baselines aligned with CIS benchmarks
  • Support integration and operational transition to SentinelOne as the primary EDR platform
  • Partner with IT operations to safely test and deploy endpoint security changes

Incident Response & Documentation

  • Act as a senior technical escalation point during security incidents
  • Contribute to incident response playbooks and post-incident reviews
  • Produce high-quality technical documentation, including: Security architecture diagrams, SOPs and runbooks, Policy rationale and audit artifacts

Technical Knowledge and Understanding:

  • Working knowledge of AWS IAM, federation (SAML/OIDC), and cross-cloud identity concepts
  • Strong understanding of cloud architecture, networking fundamentals, and zero trust principles
  • Excellent technical documentation and written communication skills
  • Ability to operate independently in a fast-moving environment with evolving priorities
  • Excellent communication, analytical thinking, and problem-solving abilities.

Certifications (Preferred)

  • AZ-500, SC-100, SC-200
  • CISSP
  • PCNSE
  • AWS Security Specialty
  • Relevant GIAC certifications

Experience:

Required Qualifications

  • 5 years of progressive experience in cybersecurity engineering
  • Deep expertise in Microsoft Azure security and the Microsoft security ecosystem
  • Hands-on experience with: Azure Policy (JSON), Intune, Entra ID (Conditional Access, PIM, RBAC), Microsoft Defender for Cloud and Defender for Cloud Apps
  • Functional experience with network security platforms, including Palo Alto Networks and Cloudflare
  • Strong background with Azure components

Preferred Qualifications

  • Experience in insurance, financial services, or other regulated industries
  • Familiarity with NAIC Model Laws, SOX, and insurance regulatory requirements
  • Experience with NIST CSF, CIS Controls, or ISO 27001
  • Infrastructure-as-Code experience (Terraform, Bicep, ARM)
  • PowerShell and/or KQL for automation and investigation
  • Experience with Microsoft Purview, DLP, or information protection
  • Familiarity with CI/CD and DevSecOps practices
  • Cloudflare Zero Trust experience

Applicants must be authorized to work for any employer in the U.S. We are unable to sponsor or take over sponsorship of an employment Visa for this position.

At Core Specialty, you will receive a competitive salary and opportunities for professional development and advancement. We offer medical, dental, vision, and life insurances; short and long-term disability; a Company-match of 100% of a 6% contribution 401(k) plan; an Employee Assistance Plan; Health Savings Account, Flexible Spending Account, Health Reimbursement Account, and a wellness program

Salary.com Estimation for Senior Security Engineer - Azure Security in Cincinnati, OH
$102,817 to $123,154
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Senior Security Engineer - Azure Security?

Sign up to receive alerts about other jobs on the Senior Security Engineer - Azure Security career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Core Specialty Insurance Holdings, Inc.

  • Core Specialty Insurance Holdings, Inc. Cincinnati, OH
  • The Cloud Engineering team is seeking a Senior Cloud Engineer with experience primarily in Microsoft Azure to facilitate solution delivery and operational ... more
  • 12 Days Ago

  • Core Specialty Insurance Holdings, Inc. Cincinnati, OH
  • The Finance Policy and Controls VP is responsible for overseeing the development, implementation, and monitoring of accounting policies and internal contro... more
  • 12 Days Ago

  • Core Specialty Insurance Holdings, Inc. Cincinnati, OH
  • Network Security Engineer (Palo Alto) is a hands-on security engineering role responsible for the implementation, management, and operational support of en... more
  • 15 Days Ago

  • Core Specialty Insurance Holdings, Inc. Cincinnati, OH
  • The Azure Security Engineer is a hands-on individual contributor role focused on implementing and operating Azure security controls under the direction of ... more
  • 15 Days Ago


Not the job you're looking for? Here are some other Senior Security Engineer - Azure Security jobs in the Cincinnati, OH area that may be a better fit.

  • Core Specialty Insurance Holdings, Inc. Cincinnati, OH
  • The Azure Security Engineer is a hands-on individual contributor role focused on implementing and operating Azure security controls under the direction of ... more
  • 15 Days Ago

  • Green Dot Corporation Cincinnati, OH
  • We’re looking for talented professionals to join us in bringing smart money management and payment solutions to everyone’s fingertips. This position is cla... more
  • 23 Days Ago

AI Assistant is available now!

Feel free to start your new journey!