June 22, 2026

Senior Cloud Security Engineer

We are looking for a Senior Cloud Security Engineer for a long-term assignment with an established SaaS company.

The client has a cloud-native Azure environment and is looking for hands-on support across Microsoft Sentinel, the wider Microsoft security stack and Azure network security.

The ideal consultant will be able to cover both workstreams described below. However, we may also consider splitting the assignment between two specialists if the right all-round profile is not available.

The consultant will work closely with the Head of Information Security, an Application Security Engineer and the CloudOps team. For the preferred full-scope profile, the consultant will be the only dedicated cloud security resource in the assignment.

Workstream 1: Microsoft Sentinel remediation

The client is looking to strengthen and further operationalize its Microsoft Sentinel setup.

This workstream includes reviewing the current Sentinel workspace, validating the logging setup, improving detection coverage, strengthening alerting and improving automation. The goal is to establish a more reliable, maintainable and operational Sentinel setup that the internal security team can continue to operate and develop over time.

Typical responsibilities include:

  • Health check of the current Microsoft Sentinel workspace
  • Review of data connectors, diagnostic settings, workspace design and retention / archiving strategy
  • Review and rationalization of logging across Azure, Entra ID, Microsoft 365, Defender XDR, WAF and other relevant sources
  • Design and implementation of a target alerting and detection baseline
  • Tuning or creation of analytics rules, hunting queries and relevant detection content
  • Improvement of SOAR / automation, including enrichment, notification, ticketing and containment playbooks
  • Documentation and knowledge transfer to the internal security team

Workstream 2: Azure network security remediation

The client also needs support with Azure network security remediation.

This workstream includes reviewing the current network security architecture and assessing whether existing controls are effective, necessary and aligned with the desired security posture. The work will focus on improving segmentation, reducing unnecessary trust relationships and overly permissive network paths, and designing a clear target state for Azure network security.

Typical responsibilities include:

  • Review of the current Azure network security architecture
  • Review of Azure Firewall, Network Security Groups, virtual networks, subnets, routing, private endpoints, VPN / ExpressRoute connectivity and other relevant controls
  • Assessment of segmentation, isolation, trust relationships and overly permissive network paths
  • Review of firewall policies, network security rules and routing configurations
  • Rationalization of existing network security controls to improve security outcomes and optimize cost
  • Design of a target-state network security architecture
  • Documentation, design artifacts and knowledge transfer to internal teams
  • Advisory on governance, ownership and operational processes for network security controls

Ongoing advisory

In addition to the two workstreams, the consultant may support ongoing cloud security advisory and maturity assessment, advising security and engineering teams on secure cloud architecture, configuration and implementation.

Desired experience

For the full-scope role, we are looking for a consultant with hands-on experience across both Microsoft Sentinel and Azure network security.

Microsoft Sentinel / Microsoft security stack

Relevant experience includes:

  • Microsoft Sentinel
  • Microsoft security stack
  • Azure, Entra ID, Microsoft 365, Defender XDR and WAF logging
  • Analytics rules, hunting queries and detection content
  • SOAR / automation and playbooks
  • Documentation and knowledge transfer

Azure network security

Relevant experience includes:

  • Azure security
  • Azure network security
  • Cloud-native security architecture
  • Azure Firewall
  • Network Security Groups
  • Virtual networks, subnets and routing
  • Private endpoints
  • VPN / ExpressRoute connectivity
  • Segmentation and isolation
  • Reducing lateral movement risk
  • Governance and operational processes for network security controls

General cloud security

Relevant experience includes:

  • Securing cloud environments for SaaS companies
  • Hands-on cloud security engineering
  • Security remediation and maturity assessment
  • Advisory towards security, engineering and CloudOps teams

Practical information

Start: July or August Duration: Expected 6 months with possible extension Scope: Preferably full-time for one consultant, but split delivery may be considered Location: Oslo Language: English

How to apply

Please send:

  • Updated CV in Word format
  • Hourly rate
  • Availability
  • Location
  • A short comment on whether you can cover both workstreams, or if your strongest fit is Microsoft Sentinel or Azure network security

Relevant candidates will be assessed continuously.

Send CV

Søk enkelt med CV og søknad i skjemaet

Dette oppdraget har utløpt

Søknadsfristen for denne stillingen har gått ut, og vi tar ikke lenger imot søknader.

Se alle aktive oppdrag