Tech Stack
AzureCloudCyber SecurityFirewalls
About the role
- Secure, monitor and maintain the overall security posture of Lula’s Azure platform and infrastructure
- Partner with DevSecOps to design, implement and manage security controls and policies for Microsoft Azure
- Partner with Engineering teams to ensure code deployed on Lula’s infrastructure is done securely
- Conduct regular security assessments and audits of Azure and internal infrastructure, including vulnerability scanning and penetration testing
- Manage and audit privileged accounts and implement Entra ID-based access controls and policies
- Provide security awareness training and perform phishing/incident simulations for the business
- Monitor and manage on-premise access control and camera systems and advise on confidential information handling
- Partner with Technical Support to ensure network and endpoints are configured securely and monitored for threats
- Support PCI DSS annual re-certification and maintain security documentation (policies, procedures, technical standards)
- Collaborate with external auditors and partners to ensure regulatory compliance
- Act as key point of contact for security incident and alert investigations, develop remediation plans and perform Root Cause Analysis
- Participate in on-call rotation to provide 24/7 support for security incidents
Requirements
- Tertiary qualification in Computer Science, Information Security, or equivalent experience
- 5+ years of experience in a SecOps field, preferably using Microsoft technologies, with a focus on Azure
- Expert knowledge of Azure security features: Azure Defender for Cloud, Azure Sentinel, Entra ID, Front Door, Privileged Identity Management, Intune, Defender for Endpoint
- Experience with security assessments and audits, including vulnerability scanning, penetration testing and incident simulations
- Hands-on Kali experience (beneficial)
- Exposure to configuring SAST tools like SonarCloud
- Familiarity with regulatory requirements and industry standards such as POPIA, PCI DSS and ISO 27001
- Familiarity with security-related network technologies such as firewalls and VPNs
- Azure or cybersecurity certifications (e.g., Azure Security Engineer Associate, Azure Solutions Architect Expert, CISSP) are a plus
- Knowledge of secure coding practices (OWASP) and secure API implementation technologies (OAuth, OIDC)
- Willingness to undergo background checks (Credit, Criminal and other job-inherent checks)