Lead Azure AI Security Engineer w Kraków, Polska is listed on Jobeax. Browse 110,000+ vacancies available.
We are seeking a Lead Azure AI Security Engineer to provide technical leadership and subject matter expertise in securing Azure and Microsoft cloud environments at enterprise scale. In this role you will design and improve security architecture while leveraging AI-powered tools to automate and enhance daily security engineering activities across hybrid and multi-cloud environments. Responsibilities Provide technical leadership and subject matter expertise in securing Azure and Microsoft cloud environments at enterprise scaleDesign, implement and improve security architecture across Azure, Microsoft 365, Microsoft Entra ID, hybrid and multi-cloud environments, with Azure as the primary cloud platformWork across key cloud security domains including CSPM/CNAPP, Identity and Access Management, Privileged Access Management, Data Protection and Data Loss Prevention, Microsoft Defender security stack, SIEM/SOAR, Business Continuity and Disaster Recovery, DevSecOps, container and Kubernetes security and policy-as-codePlan, design and implement security controls for cloud workloads, applications, infrastructure and dataCollaboration with engineering, infrastructure, development, DevOps, database, operations and compliance teams to embed security into the full delivery lifecycleSupport implementation and continuous improvement of Zero Trust architecture, secure authentication, conditional access, least privilege and identity protectionDevelop and maintain automation scripts, workflows and security tooling using PowerShell, Python, Azure CLI, Logic Apps, Azure Functions, KQL and REST APIsUse AI-powered tools and agentic workflows to automate and improve security activities such as findings triage, log analysis, incident investigation support, configuration review, compliance evidence collection and vulnerability analysisDesign or integrate AI agents and AI-assisted automations using modern AI platforms and frameworks while ensuring proper security, privacy and governance controlsContribute to secure adoption of AI technologies by defining guardrails for data protection, access control, prompt security, model usage, auditability and human-in-the-loop processesTrain and support other team members on cloud security practices, security processes and AI-assisted automation approaches Requirements 3+ years of experience in software developmentBachelor's degree in Computer Science, Information Security, Engineering or equivalent practical experienceHands-on experience with Microsoft Azure servicesStrong understanding of cloud security concepts, Azure architecture and enterprise-scale cloud environmentsPractical experience with Microsoft Entra ID/Azure Active Directory, Microsoft Defender for Cloud and Microsoft Defender XDRSkills in Microsoft Sentinel, Microsoft Purview and Microsoft IntuneProficiency in Conditional Access, Identity Protection and Privileged Identity ManagementCompetency in Key Vault, Azure Policy and Azure Monitor/Log AnalyticsStrong engineering background including experience with Active Directory, Microsoft Entra ID, Microsoft 365, Exchange Online and hybrid identitySecurity engineering experience in at least one business or technology domain along with participation in at least several production projectsUnderstanding of software development lifecycle, DevOps/DevSecOps practices, cloud security assessment methodologies and secure-by-design principlesAbility to work closely with developers, business analysts, QA engineers, architects, project managers, infrastructure and operations teams and to follow, maintain and improve defined security processesPractical understanding of AI-assisted productivity and automation including building or configuring AI agents, integrating LLMs with tools, APIs and workflows, prompt engineering and using AI tools securely with awareness of sensitive data handlingGood communication skills and ability to explain security risks, technical decisions and remediation plans to both technical and non-technical stakeholders Nice to have Skills in scripting and automation using PowerShell, Python, Bash, Azure CLI, Terraform or BicepFamiliarity with SIEM/SOAR platforms, especially Microsoft Sentinel, KQL and Logic AppsExperience with CNAPP/CSPM/CWPP/CIEM tools such as Prisma Cloud, Wiz and Orca or Lacework, Check Point CloudGuard and CrowdStrike or Tenable and Rapid7Understanding of compliance frameworks such as ISO 27001, NIST and CIS Benchmarks or PCI DSS, HIPAA and HITRUSTKnowledge of container and Kubernetes security including AKS, container registries and image scanningFamiliarity with AI/LLM platforms such as Azure OpenAI, Azure AI Foundry and Microsoft Copilot Studio or Semantic Kernel, LangChain and AutoGenUnderstanding of AI security risks including data leakage, prompt injection, excessive agency and AI supply chain risksExperience implementing AI governance and secure AI usage policies aligned with frameworks such as NIST AI RMF, OWASP Top 10 for LLM Applications or ISO/IEC 42001AZ-500, SC-100, SC-200SC-300, SC-400, AZ-104AZ-305, CISSP, CISMCISA, CCSK, CCSP, SSCPAI-900, AI-102, PL-900/PL-200 We offer We gather like-minded people:Top tech minds driving innovation in AI, cloud and digital platform modernizationSupportive team and agile, startup-like cultureHybrid by design mode and opportunity to work remotely within PolandChance to work abroad for up to 60 days annuallyBusiness-driven relocation opportunitiesWe provide growth opportunities:Career development programsThought leadership, mentoring, soft skills and well-being programsCertification (Anthropic, Gemini, GCP, Azure, AWS)English classesWe cover it all:Stable payParticipation in the Employee Stock Purchase Plan with a 15% discountBenefits package (health insurance, multisport, shopping vouchers)Referral bonuses up to $2,000Offices featuring entertainment and relaxation zones, table tennis and football, free snacks, coffee and moreCorporate, social and well-being eventsPlease, note:Benefits listed above are available to employees onlyWe are open for working with Contractors. Terms of B2B cooperation agreements are agreed individuallyWe will reach out to selected candidates exclusively EPAM is global leader in AI transformation engineering and integrated consulting, serving Forbes Global 2000 companies and ambitious startups. With over thirty years of expertise in custom software, product and platform engineering, we empower our clients to become AI-Native enterprises, driving measurable value from innovation and digital investments.