Logo for Bridgenext

Azure Infra Support Engineer

Key Facts

Remote From: 
Fixed term
Senior (5-10 years)
English

Other Skills

  • Troubleshooting (Problem Solving)
  • Verbal Communication Skills
  • Risk Mindset

Roles & Responsibilities

  • Minimum 5-7 years of IT administration experience, with at least 3 years in complex Microsoft Azure environments at a senior level.
  • Extensive Cloud Security experience deploying and managing Azure Defender for Cloud (Security Center), configuring policies, monitoring Secure Score, and maintaining regulatory dashboards.
  • Expert knowledge of Microsoft Entra ID (Azure AD) including Conditional Access, Privileged Identity Management (PIM) for Just-in-Time access, MFA deployment, and hybrid identity synchronization.
  • Strong experience with Microsoft Intune for endpoint management, device enrollment, configuration profiles, and compliance policies; deep Windows Server administration (Active Directory, patching, DNS/DHCP) in Azure IaaS and hybrid setups.

Requirements:

  • Oversee cloud security and compliance for Azure Defender for Cloud, including policy configuration, monitoring, and compliance dashboards to meet HIPAA, HITECH, and organizational standards.
  • Lead vulnerability management and incident response, leveraging CSPM and CWPP features in Defender for Cloud and integrating alerts with Microsoft Sentinel for rapid triage and containment.
  • Design, deploy, and manage identity and access across Microsoft Entra ID (Azure AD) including Conditional Access, PIM for Just-in-Time access, MFA, and federation; implement RBAC across management groups, subscriptions, and resource groups.
  • Administer Azure infrastructure and endpoint management, including VMs, VNets, NSGs, Azure Firewalls, Load Balancers/App Gateways, storage, Intune policies, Windows Server AD and patching, and automation using PowerShell, Azure CLI, Terraform or Bicep.

Job description

Company Overview:

Bridgenext is a digital consulting services leader that helps clients innovate with intention and realize their digital aspirations by creating digital products, experiences, and solutions around what real people need. Our global consulting and delivery teams facilitate highly strategic digital initiatives through digital product engineering, automation, data engineering, and infrastructure modernization services, while elevating brands through digital experience, creative content, and customer data analytics services.

 

Don't just work, thrive. At Bridgenext, you have an opportunity to make a real difference - driving tangible business value for clients, while simultaneously propelling your own career growth. Our flexible and inclusive work culture provides you with the autonomy, resources, and opportunities to succeed. 

Position Description:

This role is for a senior-level administrator with deep expertise in Microsoft Azure cloud infrastructure, traditional server administration, and specialized security knowledge of Microsoft's security suite, particularly Azure Defender for Cloud. The candidate will be critical in maintaining a secure, highly available, and compliant cloud environment for sensitive healthcare data.

 

Key Responsibilities:

  • Cloud Security and Compliance:
    • Azure Defender for Cloud (Security Center): Manage, monitor, and configure the full capabilities of Azure Defender for Cloud (now part of Microsoft Defender for Cloud), including securing servers, databases, storage accounts, and Kubernetes clusters
    • Compliance & Audit: Implement, audit, and enforce Azure Policy and Azure Blueprints to ensure continuous compliance with healthcare regulations (HIPAA, HITECH, etc.) and organizational security standards
    • Threat & Vulnerability Management: Drive the vulnerability management program by leveraging the security posture management (CSPM) and threat detection (CWPP) features within Azure Defender for Cloud
    • Incident Response: Serve as the primary point of contact for security incidents related to Azure infrastructure, utilizing Microsoft Sentinel (or other SIEM) data integrated with Defender for Cloud alerts for rapid triage and containment
  • Microsoft Entra ID (Identity & Access Management):
    • Identity Management: Design, deploy, and manage advanced features of Microsoft Entra ID (formerly Azure AD), including Conditional Access Policies, Privileged Identity Management (PIM) for Just-in-Time (JIT) access, and Identity Protection
    • Federation & SSO: Manage and troubleshoot identity federation (e.g., SAML, OAuth) for both cloud-native and SaaS applications
    • Access Control: Implement Azure Role-Based Access Control (RBAC) across management groups, subscriptions, and resource groups to enforce the principle of least privilege
  • Infrastructure & Server Administration:
    • Azure Infrastructure: Administer and optimize core Azure services including Virtual Machines (VMs), Virtual Networks (VNets), Network Security Groups (NSGs), Azure Firewalls, Azure Load Balancers/Application Gateways, and Azure Storage Accounts
    • Microsoft Intune (Endpoint Management): Manage and support the mobile device management (MDM) and mobile application management (MAM) policies via Microsoft Intune to secure endpoints and mobile devices accessing protected health information (PHI)
    • OS & Server Administration: Maintain expert-level skills in Windows Server administration (patching, group policy, Active Directory, DNS/DHCP) in both Azure IaaS and traditional on-premises/hybrid environments
    • Automation: Utilize PowerShell, Azure CLI, and Infrastructure as Code (IaC) tools (e.g., Terraform, Bicep) to automate provisioning, configuration, and maintenance tasks

 

Must Have Skills:

  • Minimum 5-7 years of experience in IT administration, with at least 3 years focused on complex Microsoft Azure environments at a senior level
  • Cloud Security Expertise: Proven hands-on experience deploying and managing Azure Defender for Cloud (formerly Security Center), including configuring security policies, monitoring Secure Score, and managing regulatory compliance dashboards
  • Identity Expertise: Expert knowledge of Microsoft Entra ID (Azure AD), specifically including Conditional Access, PIM, MFA deployment, and hybrid identity synchronization (Azure AD Connect)
  • Endpoint Management: Strong experience with Microsoft Intune for device enrollment, configuration profiles, compliance policies, and application deployment
  • Server Administration: Deep working knowledge of Windows Server OS and services (Active Directory, patching, hardening, and troubleshooting) in a production setting
  • Healthcare Compliance: Demonstrated knowledge and understanding of HIPAA Security Rule and HITECH requirements as they apply to cloud infrastructure, data handling, and administrative controls

 

Preferred Skills:

  • Microsoft Certified: Azure Administrator Associate (AZ-104)
  • Microsoft Certified: Azure Security Engineer Associate (AZ-500) - Highly Preferred
  • Microsoft Certified: Identity and Access Administrator Associate (SC-300)

 

Professional Skills:

  • Troubleshooting: Advanced ability to diagnose and resolve complex, multi-layered cloud issues spanning identity, network, and security services
  • Communication: Excellent written and verbal communication skills, with the ability to convey complex technical issues to non-technical staff and executive leadership
  • Documentation: Ability to create and maintain high-quality documentation, runbooks, and disaster recovery plans for regulated environments
  • Proactive Mindset: A strong commitment to security best practices and a proactive approach to identifying and mitigating risks before they become incidents

 

Bridgenext is an Equal Opportunity Employer

 

US citizens and those authorized to work in the US are encouraged to apply

 

 

#LI-AG1

#LI-REMOTE

 

Technical Support Engineer Related jobs

Other jobs at Bridgenext

We help you get seen. Not ignored.

We help you get seen faster — by the right people.

🚀

Auto-Apply

We apply for you — automatically and instantly.

Save time, skip forms, and stay on top of every opportunity. Because you can't get seen if you're not in the race.

AI Match Feedback

Know your real match before you apply.

Get a detailed AI assessment of your profile against each job posting. Because getting seen starts with passing the filters.

Upgrade to Premium. Apply smarter and get noticed.

Upgrade to Premium

Join thousands of professionals who got noticed and hired faster.