Job Title: Cyber Security Architect (Azure Cloud Security)
Location: Sylmar CA (Day 1 Onsite)
Job Type: Contract
Key Responsibilities:
- Azure Security Implementation:
- Design and implement security controls for AKS Cluster Active Directory MFA APIs and Azure AD B2C.
- Apply zero trust architecture principles and implement mTLS and Azure Managed Identities.
- Secure both control plane and data plane in Azure environments.
- Threat Modeling and Risk Management:
- Conduct threat modeling using frameworks like STRIDE (Spoofing Tampering Repudiation Information Disclosure Denial of Service Elevation of Privilege).
- Perform security risk analysis using CVSS 3.0/3.1 and evaluate residual risks.
- Develop and maintain a Security Risk Management Plan Traceability Matrix and Security Risk Management Report.
- Security Monitoring and Documentation:
- Monitor security at both platform and application levels.
- Document system designs threats and mitigation strategies including screenshots and detailed reports.
- Create a Cybersecurity Bill of Materials (CBOM) and ensure compliance with security standards.
- Threat Modeling Process:
- Identify critical assets decompose applications and map threats using STRIDE.
- Rate risks using appropriate tools and generate comprehensive reports.
Required Skills and Qualifications:
- Technical Expertise:
- Indepth knowledge of Azure security services including AKS Active Directory MFA and ADB2C.
- Strong understanding of zero trust architecture mTLS and Azure Managed Identities.
- Familiarity with control plane and data plane security implementation.
- Threat Modeling and Risk Management:
- Proficiency in threat modeling methodologies (e.g. STRIDE).
- Experience with CVSS 3.0/3.1 for risk scoring and analysis.
- Documentation and Reporting:
- Ability to create highquality security documents including CBOMs traceability matrices and risk reports.
- Soft Skills:
- Strong analytical and problemsolving abilities.
- Excellent attention to detail and organizational skills.
- Ability to work independently and manage multiple tasks effectively.
Key Tools and Frameworks:
- Azure Security Tools
- STRIDE Model
- CVSS 3.0/3.1
- Traceability Matrix Tools