Join as an Azure Cloud Security Engineer within the infrastructure security architecture team. Your core purpose will be acting as the go-to subject matter expert between the wider Technology Security area and Cloud Platform Engineering team for the large Microsoft Azure estate within Tesco, as well as supporting security teams within Technology Security in helping them achieve their security goals, using your knowledge and experience of Azure.
We’re on the lookout for someone who already has experience working with Azure at an enterprise or equivalent scale engineering led organisation, who understands the nuances of dealing with a large array of engineering and infrastructure stakeholders, and has been responsible for designing and implementing security initiatives and supporting colleagues across the business, with the ability to understand, translate and advise on Azure concepts to people who may lack Azure expertise.
- Annual bonus scheme of up to 20% of base salary
- Holiday starting at 25 days plus a personal day (plus Bank holidays)
- Private medical insurance
- 26 weeks maternity and adoption leave (after 1 years’ service) at full pay, followed by 13 weeks of Statutory Maternity Pay or Statutory Adoption Pay, we also offer 6 weeks fully paid paternity leave
- Free 24/7 virtual GP service, Employee Assistance Programme (EAP) for you and your family, free access to a range of experts to support your mental wellbeing
- Managing Azure Policy direction and supporting exemptions
- Ensure design, review and delivery of upcoming Azure Policies and assess viability of upcoming policies / approach.
- Assess suitability and impact of Azure policy exemptions at the team, environment, or global scale and create exemptions at the appropriate scope. Responsible for providing approvals, upon completion of the suitability assessment.
- Act as an SME advisor; Assessing impact of upcoming Azure security-related change initiatives and ensuring the compliance with security policies and standards
- Delivered through proposed/implemented centralised controls, or through reducing the friction of consuming organisationally aligned infrastructure.
- Working with and supporting key functions of the business to provide security architecture advice and review control appropriateness
- Working with senior stakeholders with the Cloud Platform Engineering and Infrastructure Architect teams, supporting them with security deliverables as well as assessing upcoming changes with a security lens.
- Knowledge of Azure best practices and working with teams
- Demonstrable experience with Azure CLI, PowerShell or Azure Graph REST API required.
- Minimum 5 years' experience in a senior Azure architecture or engineer role.
- Ability to operate independently with limited support and without additional training required, able to communicate and work with experienced infrastructure, security and software development engineers.
- Azure / Azure Security knowledge:
- Comprehensive knowledge of Microsoft Azure. Knowledge of other cloud platforms may be helpful, especially in relation to mapping capabilities and services between public cloud providers, but not essential.