Job Summary:
Venture Global LNG is a long-term, low-cost provider of American-produced liquefied natural gas. As a Senior Azure Cloud Security Engineer, you will be responsible for architecting and administering the cloud security posture, implementing a Zero Trust architecture, and managing identity governance and data protection.
Responsibilities:
• Design and maintain complex conditional access policies incorporating device compliance, location, and risk-based signals.
• Implement Privileged Identity Management (PIM) to enforce just-in-time (JIT) and just-enough-administration (JEA) for high-impact roles.
• Conduct regular access reviews and manage identity lifecycles for employees, contractors, guests, and service accounts.
• Configure MDM and MAM policies, including device enrollment restrictions, compliance baselines, and configuration profiles for Windows, macOS, iOS, and Android.
• Oversee patching deployments and automate OS/Application patching cycles to maintain a low vulnerability footprint.
• Build and tune sensitivity labels for automatic data classification across SharePoint, Teams, and Exchange.
• Develop Data Loss Prevention (DLP) policies to prevent unauthorized data exfiltration.
• Manage the full suite (Endpoint, Office 365, Identity, and Cloud) to investigate and remediate sophisticated threats.
• Administer CrowdStrike Falcon for advanced EDR/Next-Gen AV and integrate findings into the broader security operations.
• Oversee the ingestion of Azure and M365 logs into Splunk for centralized monitoring, creating custom alerts and dashboards for the SOC.
• Utilize Tenable Vulnerability Management to perform continuous scanning, prioritize remediation based on business risk, and track the organization's exposure score.
• Harden email security through anti-phishing, anti-impersonation, and safe links/attachments policies.
Qualifications:
Required:
• Deep knowledge and hands on experience in core components of the Microsoft security and management ecosystem designed for a Zero Trust Approach. Specifically on Azure Entra, Intune and Purview (DLP, eDiscovery, Information Protection, Insider Risk Management) and Azure Conditional Access Policies for automated guardrails.
• Advanced proficiency in PowerShell or Python for automating security tasks and incident response playbooks.
• Expertise in using Proofpoint Targeted Attack Protection (TAP) and Threat Response Auto-Pull (TRAP) to stop phishing and malware.
• Managing the full user lifecycle (joiner, mover, leaver) and automating provisioning/deprovisioning using SailPoint.
• Prior experience with JAMF Pro and JAMF Protect for securing Apple endpoints within an enterprise Azure environment.
• Bachelor's degree or equivalent experience in Cybersecurity, Computer Science, or Information Systems.
• 7 or more years of professional experience relevant experience supporting enterprise cloud and/or infrastructure environments.
Preferred:
• Certifications: Microsoft Certified Azure Security Engineer Associate (AZ-500) (Preferred).
• SC-100 (Cybersecurity Architect) or CISSP (Highly Preferred).
Company:
Venture Global is a long-term, low-cost provider of U.S. LNG sourced from resource rich North American natural gas basins. Founded in 2013, the company is headquartered in Washington, USA, with a team of 501-1000 employees. The company is currently Late Stage.