Implement, manage, and continuously improve security operations for a FedRAMP Moderate and HIPAA-compliant Azure environment. This hands-on role works closely with the Cybersecurity Architect and Healthcare Enterprise Architect to operationalize the security architecture, perform monitoring and remediation, and maintain compliance through active defense and control validation. The Azure Cybersecurity Analyst will be responsible for daily security monitoring, vulnerability remediation, POA&M management, and network protection activities using Microsoft Sentinel, Defender, Purview, and Azure Firewall to protect mission-critical healthcare systems and data.
Operate and maintain Microsoft Sentinel for SIEM/SOAR, including rule tuning, analytics, and incident response playbooks. Monitor and respond to alerts from Defender for Cloud, Defender for Endpoint, and Defender for Identity. Conduct continuous security posture assessment, monitoring compliance drift against FedRAMP controls. Correlate and investigate security events using Sentinel, Defender, and Azure Monitor logs.
Execute vulnerability scanning, remediation, and patch validation using Defender and integrated tools. Track and manage Plan of Action & Milestones (POA&M) items. Collaborate with development and infrastructure teams to remediate vulnerabilities.
Configure, monitor, and maintain Azure Firewall, Network Security Groups (NSGs), Private Endpoints, and Application Gateway WAF for boundary protection.
Support the Cybersecurity Architect in evidence gathering for FedRAMP and HIPAA control validation. Enforce Azure Policy, Defender recommendations, and Purview governance rules for compliance.