Cloud Security Engineer – AI Agentic Solutions

Icon of location
Fractional
icon of timer
Fractional / Remote

Experience Level: Mid-Level

Practice Area: Engineering

Engagement Type: Fractional / Remote

Location: Fractional

Role Summary

We are seeking a Cloud Security Engineer to implement and maintain secure, compliant, and well-governed AI agentic solutions across Microsoft Azure and cloud-native platforms. This role is hands-on, focusing on securing RAG pipelines, agentic workflows, MCP Server integrations, and API-based AI interactions. You will support architects and engineering teams by applying security controls, monitoring, identity management, and private connectivity patterns that ensure our financial services clients operate safely and meet regulatory expectations.

The Difference You’ll Make

In this role you will ensure that AI agentic systems used by superannuation, insurance, and banking clients operate securely from end to end. Your work will protect customer data, secure agent actions, and enforce compliance across Azure, Private Link, Foundry, and related services. By implementing strong controls, monitoring, and secure connectivity, you will reduce risk, prevent data leakage, and help clients safely adopt modern AI-driven capabilities across the FSI sector.

Key Responsibilities

  • Implement security controls for agentic AI systems including RAG pipelines, MCP Server-based workflows, and tool integrations
  • Configure secure connectivity using Azure Private Link, Private Endpoints, VNet rules, and service endpoints
  • Support identity and access management through Azure AD / Entra ID, RBAC, Managed Identities, and Key Vault integration
  • Apply security checks across Azure Foundry, Azure OpenAI, API Management, and related AI services
  • Assist in implementing Zero Trust principles across data access, API calls, model endpoints, and tool execution flows
  • Set up encryption controls for data in transit and at rest, including certificates and key rotation procedures
  • Configure API gateway policies including authentication, throttling, rate limits, and logging
  • Implement audit logging, monitoring, and alerting for AI systems, APIs, and data flows
  • Support the review of security events and alignment with APRA CPS 234, CPS 231, data residency, and compliance requirements
  • Contribute to vulnerability assessments, penetration testing follow-ups, and remediation activities
  • Assist with secure code reviews, pipeline checks, and compliance validation in CI/CD workflows
  • Maintain accurate documentation covering security configurations, runbooks, and operational procedures
  • Collaborate with architects, AI engineers, and platform teams to embed security into development cycles

Required Skills and Competencies

  • Hands-on experience securing workloads on Microsoft Azure, including VNet, Private Link, Managed Identities, and Key Vault
  • Familiarity with agentic AI architectures, RAG pipelines, and secure LLM tool/use-case patterns
  • Experience with Azure Foundry, Azure OpenAI, and API Management (APIM)
  • Understanding of Zero Trust, network segmentation, identity-driven access, and secure API consumption
  • Experience configuring security monitoring tools, log analytics, SIEM, and alerting frameworks
  • Practical experience with encryption, certificates, secrets management, and secure key handling
  • Familiarity with APRA-aligned security expectations, including CPS 234 and CPS 231
  • Exposure to securing data platforms such as Databricks, Snowflake, or vector databases is an advantage
  • Ability to interpret security requirements and implement practical engineering controls
  • Strong communication skills and ability to work with cross-functional engineering teams

Qualifications and Experience

  • 3+ years’ experience in cloud security engineering, cloud operations, or platform security
  • Experience supporting Azure-based workloads in enterprise environments
  • Certifications such as Azure Security Engineer, AZ-500, or relevant cloud security credentials are desirable
  • Prior exposure to FSI environments (banking, insurance, superannuation) is preferred
  • Experience with AI/ML platform security is advantageous but not mandatory

What We Offer

  • Flexible fractional remote engagement
  • Work on advanced and secure agentic AI implementations across FSI clients
  • Exposure to modern cloud, AI, and platform security practices
  • A collaborative environment working with architects, security specialists, and AI engineers
  • Clear development pathways into senior cloud security or architecture roles

Apply Now