Location Address:2500 Windy Ridge Parkway, Atlanta, Georgia 30339
Work Shift:Salary Exempt (United States of America)
The Senior Cybersecurity Specialist, Identity & Cloud Security is responsible for designing, implementing, and supporting security controls across identity, privileged access, directory services, Azure/cloud infrastructure, and related cybersecurity platforms. This role partners closely with Cloud Operations, Infrastructure, and Cybersecurity teams to improve secure configuration, reduce operational risk, and support incident response activities.
Essential Duties and Responsibilities- Design, configure, and support identity and access management controls, including SSO, MFA, access governance, lifecycle management, and policy enforcement.
- Administer and secure directory services, hybrid identity integrations, privileged access controls, and related account management processes.
- Support privileged access workflows, access reviews, break-glass readiness, and related PAM incident-response use cases.
- Engineer secure Azure and cloud configurations, including access control, logging, policy, network security, and baseline hardening.
- Assess configuration drift, document exceptions, and lead remediation plans for identity, directory, cloud, and infrastructure security controls.
- Partner with infrastructure, cloud, security operations, application, GRC, and IT Service Management teams to implement scalable security solutions that support business operations.
- Integrate security tooling into operational workflows, including ticketing, alerting, logging, evidence collection, and change processes.
- Lead controlled rollout of security controls from pilot through production, including testing, stakeholder communication, validation, and transition to steady state operations.
- Develop and maintain technical documentation, runbooks, configuration standards, operational procedures, reference architectures, secure design patterns, and technical roadmaps.
- Support incident response activities involving identity containment, privileged access, evidence collection, account isolation, MDR partnership, post-incident hardening, and durable engineering improvements.
- Identify opportunities to automate repeatable security processes, improve control evidence, and reduce configuration drift.
- Mentor less experienced engineers and provide technical guidance on identity, cloud, and security configuration practices.
- Reasonable mandatory overtime may be required due to business needs.
Minimum Requirements- Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or related field preferred; equivalent experience may be considered.
- 5 or more years of experience in cybersecurity engineering, cloud security, identity engineering, infrastructure security, or a related technical role.
- Hands-on experience supporting IAM, directory services, cloud infrastructure, and secure configuration controls in enterprise environments.
- Working knowledge of Microsoft Azure administration and security configuration, including identity integration, RBAC, logging, policy, and secure baseline concepts.
- Understanding of Zero Trust, least privilege, privileged access management, security logging, and incident response support.
- Ability to build, configure, test, document, and operationalize security controls in production environments.
- Strong communication skills with the ability to explain technical risks, tradeoffs, and recommendations to technical and non-technical stakeholders.
Preferred Qualifications- Experience with Microsoft Entra ID, Active Directory, Azure Policy, Azure RBAC, Azure Monitor, Microsoft Defender for Cloud, Microsoft Sentinel, or comparable platforms.
- Experience with privileged access management tools such as CyberArk, BeyondTrust, Delinea, or Microsoft Entra Privileged Identity Management.
- Experience with PowerShell, Python, Terraform, Bicep, Logic Apps, Azure DevOps, GitHub Actions, Ansible, or comparable automation tools.
- Relevant certifications such as CISSP, CCSP, Azure Security Engineer Associate, Azure Administrator Associate, Security+, GIAC, or similar credentials.
- Experience in manufacturing, distributed operations, regulated environments, or hybrid IT/OT environments.