1

Azure Security Engineer Jobs in California (NOW HIRING)

About the Role We're looking for a Security Engineer III to own how we detect and respond to ... Our cloud-native SaaS platform runs on Microsoft Azure and AWS, delivering high-trust, secure data ...

Senior AI Security Engineer

San Diego, CA · On-site +1

$121K - $166K/yr

The Senior AI Security Engineer, under the direction of the Director, Security Engineering and ... Solid command of cloud security fundamentals (AWS, Azure, or GCP) as applied to AI workloads ...

Senior Cloud & Security Engineer

El Segundo, CA · Hybrid

$122K - $167K/yr

Design and implement cloud architecture solutions across Azure, Microsoft 365, and hybrid ... Contribute to cloud and security roadmap initiatives through hands-on engineering and cross ...

Senior AI Security Engineer

Palo Alto, CA · On-site +1

$134K - $184K/yr

The Senior AI Security Engineer, under the direction of the Director, Security Engineering and ... Solid command of cloud security fundamentals (AWS, Azure, or GCP) as applied to AI workloads ...

Senior AI Security Engineer

San Francisco, CA · On-site +1

$134K - $185K/yr

The Senior AI Security Engineer, under the direction of the Director, Security Engineering and ... Solid command of cloud security fundamentals (AWS, Azure, or GCP) as applied to AI workloads ...

Senior Cloud & Security Engineer

Pasadena, CA · Hybrid

$124K - $171K/yr

Design and implement cloud architecture solutions across Azure, Microsoft 365, and hybrid ... Contribute to cloud and security roadmap initiatives through hands-on engineering and cross ...

Senior AI Security Engineer

Los Angeles, CA · On-site +1

$123K - $169K/yr

The Senior AI Security Engineer, under the direction of the Director, Security Engineering and ... Solid command of cloud security fundamentals (AWS, Azure, or GCP) as applied to AI workloads ...

Senior Cloud & Security Engineer

San Ramon, CA · Hybrid

$128K - $175K/yr

Design and implement cloud architecture solutions across Azure, Microsoft 365, and hybrid ... Contribute to cloud and security roadmap initiatives through hands-on engineering and cross ...

Senior Cloud & Security Engineer

San Jose, CA · Hybrid

$134K - $184K/yr

Design and implement cloud architecture solutions across Azure, Microsoft 365, and hybrid ... Contribute to cloud and security roadmap initiatives through hands-on engineering and cross ...

Senior Cloud & Security Engineer

Irvine, CA · Hybrid

$122K - $168K/yr

Design and implement cloud architecture solutions across Azure, Microsoft 365, and hybrid ... Contribute to cloud and security roadmap initiatives through hands-on engineering and cross ...

Showing results 21-40

Azure Security Engineer information

See California salary details

$60.7K

$150.8K

$202.8K

How much do azure security engineer jobs pay per year?

As of Sep 14, 2026, the average yearly pay for azure security engineer in California is $150,773.00, according to ZipRecruiter salary data. Most workers in this role earn between $141,100.00 and $156,400.00 per year, depending on experience, location, and employer.

What is an Azure Security Engineer?

An Azure Security Engineer is responsible for implementing, managing, and monitoring security solutions within Microsoft Azure environments. They protect cloud-based resources by configuring security controls, managing identity and access, securing data and applications, and responding to security incidents. These professionals work closely with IT and security teams to enforce compliance with industry standards and best practices. Their role often includes using tools like Azure Security Center, Microsoft Defender for Cloud, and Sentinel to identify and mitigate threats.

What does an Azure Security Engineer do?

An Azure Security Engineer typically spends their day monitoring security alerts, implementing cloud-based security controls, and conducting vulnerability assessments within the Azure environment. They collaborate closely with IT teams and developers to design, review, and maintain secure architectures for cloud deployments. In addition, they may respond to security incidents, create and update security documentation, and participate in compliance audits and ongoing improvement efforts. This collaborative and proactive approach helps protect sensitive data and ensures the organization's cloud infrastructure remains resilient against evolving threats.

What are the key skills and qualifications needed to thrive as an Azure Security Engineer?

To thrive as an Azure Security Engineer, you need a solid background in cloud security, network protection, and identity management, often supported by experience with Microsoft Azure and a relevant degree in IT or cybersecurity. Familiarity with Azure Security Center, Azure Active Directory, SIEM solutions like Microsoft Sentinel, and certifications such as Microsoft Certified: Azure Security Engineer Associate are highly valued. Strong problem-solving skills, teamwork, and effective communication help Azure Security Engineers successfully interact with cross-functional teams and respond to incidents. These technical and interpersonal abilities are essential for safeguarding cloud environments and ensuring secure business operations.

How much does an Azure Security Engineer make?

An Azure Security Engineer typically earns between $90,000 and $140,000 annually, depending on experience, certifications, and location. Professionals with skills in cloud security, Azure tools, and relevant certifications like AZ-500 tend to have higher earning potential.

Is Azure security a good career?

Azure Security Engineers focus on protecting cloud environments using tools like Azure Security Center and implementing security best practices. The role is in high demand due to the growth of cloud adoption and requires skills in cloud architecture, security protocols, and certifications such as AZ-500. It offers strong job prospects, competitive salaries, and opportunities for specialization in cybersecurity.

What are the most commonly searched types of Azure Security Engineer jobs in California?

The most popular types of Azure Security Engineer jobs in California are:

What are popular job titles related to Azure Security Engineer jobs in California?

For Azure Security Engineer jobs in California, the most frequently searched job titles are:

What job categories do people searching Azure Security Engineer jobs in California look for?

The top searched job categories for Azure Security Engineer jobs in California are:

What cities in California are hiring for Azure Security Engineer jobs?

Cities in California with the most Azure Security Engineer job openings:

Infographic showing various Azure Security Engineer job openings in California as of August 2026, with employment types broken down into 77% Full Time, and 23% Contract. Highlights an 40% In-person, 40% Hybrid, and 20% Remote job distribution, with an average salary of $150,773 per year, or $72.5 per hour.

Security Engineer III

San Jose, CA

Veeam Software
IT Services • 5 - 10K employees

Full-time

Posted 24 days ago


Veeam Software rating

8.9

Company rating: 8.9 out of 10

Based on 7 frontline employees who took The Breakroom Quiz


Job description

About the Role

We're looking for a Security Engineer III to own how we detect and respond to threats across our cloud estate, and to build the security data lake that makes that possible. Our cloud-native SaaS platform runs on Microsoft Azure and AWS, delivering high-trust, secure data protection services to customers across regulated industries. This role sits in Platform Security and owns the detection engineering and cloud security surface end to end: the pipelines that get security telemetry into one queryable place, the detections that fire off it, and the guardrails in Azure and AWS that stop the finding from recurring. You'll partner closely with SRE, Product Engineering, and the rest of Security Engineering, and your work is based on shipped mechanisms rather than on advice given.

What You'll Do
  • Design and build our security data lake: decide what telemetry we ingest from Azure, AWS, SaaS, and endpoint sources, how it's normalized and retained, and what it costs, so that detection engineers and incident responders can answer questions in minutes instead of days
  • Write, tune, and version-control detections as code. Own the full lifecycle: hypothesis, query, test, deploy through CI/CD, measure false-positive rate, and retire what stops earning its keep
  • Build the response side with the detections. Automate triage and enrichment, wire runbooks into the tooling, and cut mean-time-to-detect and mean-time-to-respond on the alert classes that matter most
  • Hands on hardening our Azure and AWS environments: identity and RBAC boundaries, network egress, key and secret handling, logging coverage, and public-exposure control across multiple tenants and accounts
  • Deliver cloud security controls as Terraform. Anything you fix once should land in the modules and pipelines so it stays fixed, in every environment, without a human remembering
  • Turn cloud security posture findings into a prioritized, owned, and closing queue. Partner with the teams that own the resources and make remediation the path of least resistance
  • Run detection coverage assessments against a recognized threat framework, find the gaps that matter for our platform and threat model, and close them
  • Set direction on detection and cloud security tooling: what to adopt, what to retire, and what we build ourselves
Technologies You'll Work With
  • Microsoft Sentinel, Log Analytics, and KQL for detection authoring and hunting
  • Azure security services: Defender for Cloud, Entra ID, Key Vault, Azure Policy, Azure Monitor, Event Hubs
  • AWS security services: CloudTrail, GuardDuty, Security Hub, IAM, Config, CloudWatch
  • Terraform for all cloud security and detection infrastructure, with GitHub Actions and Azure DevOps as the delivery path
  • Wiz for cloud security posture, attack-path analysis, and vulnerability signal
  • Security data lake and pipeline components: object storage (ADLS / S3), OCSF-style normalization, Azure Data Explorer or an equivalent query engine, and Azure Functions / Lambda for glue
  • Python for detection tooling, enrichment, and automation, with comfort reading PowerShell and Bash
  • Sigma and detection-as-code patterns, plus Git-based review for every rule change
What You'll Bring
  • 5+ years in security engineering, cloud operations, or detection engineering, with recent hands-on ownership of production cloud security work
  • Production Terraform experience. You've written and maintained modules other teams consume, and you know why a security control belongs in code rather than in a runbook
  • Real operational depth in both Azure and AWS: identity models, logging and audit sources, network boundaries, and where each provider's defaults leave you exposed
  • Demonstrated detection building. You've written detections against real telemetry, tuned them against real false positives, and can explain a specific rule you shipped and how you validated it
  • Strong cloud security fundamentals: RBAC and least privilege, secret and key management, egress control, and public-exposure prevention
  • Fluency in at least one query language for security data (KQL, SQL, or equivalent) and the judgment to know when a query problem is actually a data-model problem
  • Scripting and automation ability in Python or a comparable language, enough to build and maintain tooling rather than only configure vendor products
  • A track record of shipping production code or infrastructure you can point to. This is a hands-on building role, not an advisory one
Bonus Skills
  • Microsoft Sentinel at production scale: analytics rules, automation rules, ingestion cost management, and multi-workspace design
  • Wiz experience, including turning posture and attack-path findings into an owned remediation workflow
  • Incident response experience in a cloud environment, on-call or as an investigator
  • Security data lake or SIEM migration experience, including cost and retention tradeoffs
  • Kubernetes and container security exposure (AKS, EKS) and runtime detection for containerized workloads
  • Familiarity with regulated-industry audit expectations (SOC 2 Type 2, ISO 27001, FedRAMP, HITRUST) and what auditors want from logging and monitoring controls
  • Relevant certifications (Azure or AWS security specialty, GCIA, GCDA, or similar)

#LI-SO2


What Veeam Software employees say

Pay

Hours and flexibility

Workplace

Get the full story on Breakroom