Overview
Skills
Job Details
Role: Cloud & Network Security
Location: Princeton, NJ (Onsite)
5+ years of experience in network security, cloud security (Azure), and hybrid connectivity.
Strong expertise in Azure networking (VNet, VPN Gateway, ExpressRoute, Azure Firewall, NSGs).
Hands-on experience with firewall management (Palo Alto, Fortinet, Cisco ASA, or Azure Firewall).
Knowledge of Zero Trust Architecture (ZTA), micro-segmentation, and SASE frameworks.
Familiarity with SIEM, IDS/IPS, and Azure security tools (Sentinel, Defender for Cloud).
Certifications such as AZ-500 (Azure Security), CCSP, CISSP, or CCNP Security are a plus.
Expertise in managing and troubleshooting Azure Network Security Groups (NSGs) to ensure secure network traffic flow across cloud and hybrid environments. The ideal candidate will optimize NSG rules, resolve connectivity issues, and enforce least-privilege access principles.
Design, implement, and maintain Azure NSG rules to control inbound/outbound traffic for VMs, subnets, and applications.
Regularly audit and refine NSG rules to eliminate overly permissive access and enforce least-privilege security.
Troubleshoot and resolve connectivity issues caused by NSG misconfigurations.
Collaborate with network teams to ensure seamless and secure connectivity between Azure, on-premises, and multi-cloud environments.
Integrate NSGs with Azure Firewall, Application Security Groups (ASGs), and Private Endpoints for layered security.
Monitor NSG flow logs and analyze traffic patterns to detect anomalies or unauthorized access attempts.
Diagnose and resolve network connectivity issues related to NSGs, route tables, and security policies.
Work with SOC teams to investigate security incidents involving NSG bypasses or rule violations.
Use Azure Network Watcher, Log Analytics, and Sentinel for NSG log analysis and forensics.
Automate NSG rule deployments using Azure Policy, PowerShell, or Terraform to ensure consistency.
Document NSG standards, rule change processes, and troubleshooting playbooks.
Stay updated on Azure networking updates, Zero Trust principles, and Microsoft security benchmarks**.
5-6+ years of hands-on experience managing Azure NSGs, VNet peering, and cloud network security.
Strong understanding of TCP/IP, UDP, network protocols, and Azure networking components.