Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

Issabek Ramazan

Brooklyn,NY

Summary

Highly skilled and detail-oriented Azure Security Engineer with over 3 years of experience in designing, implementing, and maintaining security solutions on Microsoft Azure. Expertise in managing and securing cloud environments, deploying identity and access management (IAM) strategies, and safeguarding infrastructure against evolving cyber threats. Proficient in Azure Security Center, Azure Active Directory, encryption technologies, and vulnerability management. Proven track record of enhancing cloud security posture, ensuring compliance with industry standards, and mitigating risks through proactive security measures. Strong knowledge of network security, security policies, incident response, and automation to improve security processes in cloud-based infrastructures. Adept at collaborating with cross-functional teams to create secure, scalable, and resilient Azure environments while optimizing security frameworks to protect sensitive data and resources.

Overview

3
3
years of professional experience
1
1
Certification

Work History

Azure Cloud Security Engineer

T-Mobile
11.2023 - Current
  • Cloud Security Architecture & Design:Design and implement secure cloud architectures and solutions within the Microsoft Azure environment.
    Evaluate and recommend security tools and solutions for cloud security.
    Develop and maintain security policies and procedures for cloud infrastructure and services.
    Ensure cloud environments comply with industry regulations and standards (e.g., NIST, GDPR, HIPAA).
  • Monitoring & Incident Response:Monitor the Azure environment for security vulnerabilities, potential threats, and incidents.
    Implement and manage security monitoring tools like Azure Security Center, Sentinel, and third-party solutions.
    Respond to and resolve cloud security incidents in a timely and efficient manner.
    Perform root cause analysis and recommend corrective actions to prevent future security breaches.
  • Identity and Access Management (IAM):Implement and manage identity and access controls, such as Azure Active Directory (Azure AD), Conditional Access Policies, and Role-Based Access Control (RBAC).
    Manage privileged access and ensure the principle of least privilege is enforced.
    Perform regular access reviews and audits to ensure compliance with security policies.
  • Vulnerability Management:Conduct vulnerability assessments on Azure services, applications, and infrastructure.
    Identify, prioritize, and remediate vulnerabilities and security weaknesses.
    Collaborate with teams to patch, update, and secure systems regularly.
  • Cloud Compliance & Risk Management:Ensure Azure deployments meet regulatory and security compliance standards.
    Perform risk assessments and work with business teams to mitigate risks in cloud deployments.
    Prepare for and support audits related to cloud security compliance.
  • Collaboration & Training:Collaborate with other security, infrastructure, and development teams to ensure secure cloud operations.
    Provide security guidance and training to teams working with cloud technologies.

Cloud Security Support Engineer

Microsoft
10.2021 - 10.2023
  • Provided expert-level support and guidance on cloud security services, ensuring the safe and secure deployment of cloud infrastructure and services across Azure
  • Managed and monitored cloud security solutions, such as firewalls, identity and access management (IAM), encryption services, and threat detection systems to ensure compliance with industry standards and regulations (e.g., GDPR, HIPAA).
  • Worked closely with development, operations, and network teams to design and implement robust security controls for cloud-based applications and environments.
  • Identified, analyzed, and mitigated security vulnerabilities in cloud architectures, recommending and deploying patches, updates, and configuration changes.
  • Responded promptly to security incidents, conducting root cause analysis and providing actionable solutions to mitigate future risks.
  • Conducted security audits and vulnerability assessments, ensuring compliance with security best practices and internal security policies.
  • Provided ongoing support and troubleshooting for cloud security-related issues, maintaining a strong understanding of emerging cloud security threats and technologies.
  • Collaborated with cross-functional teams to develop and refine cloud security policies, incident response plans, and disaster recovery procedures.
  • Educated and trained internal teams and stakeholders on cloud security best practices and risk management strategies.
  • Managed and optimized cloud security tools, automation scripts, and monitoring systems to enhance operational efficiency and reduce risk.

Education

High School Diploma -

Number 3rd School
Kazakhstan
05-2018

Skills

    Technical Skills:

  • Azure Security Solutions:
    Azure Sentinel (SIEM)
    Azure Active Directory (AAD) & Identity Protection
    Azure Key Vault
    Azure Firewall and Network Security
    Azure DDoS Protection
    Azure Privileged Identity Management (PIM)
    Azure Application Gateway and WAF (Web Application Firewall)
  • Cloud Security Frameworks and Standards:
    Azure Security Best Practices
    Cloud Access Security Broker (CASB) Solutions
  • Identity and Access Management (IAM):Role-Based Access Control (RBAC)
    Conditional Access Policies
    Identity Governance and Administration (IGA)
    Multi-Factor Authentication (MFA)
    Identity Federation and Single Sign-On (SSO)
  • Networking Security:Azure Virtual Network (VNet) Security
    Network Security Groups (NSG) & Application Security Groups (ASG)
    VPN Gateway, ExpressRoute, and Hybrid Networking
    Azure Load Balancer and Traffic Manager
  • Threat Detection and Incident Response:Security Incident and Event Management (SIEM) tools (eg, Azure Sentinel, Splunk)
    Threat Intelligence Integration and Response Automation
    Security Incident Investigation and Forensics
    Log Analysis and Reporting
  • Security Automation:
    Security Automation with Azure Logic Apps and Azure Functions
  • Data Protection and Encryption:Azure Disk Encryption,
    Key Management with Azure Key Vault
    Data Loss Prevention (DLP) policies
  • Governance, Risk, and Compliance (GRC):Azure Policy and Blueprints for Compliance
    Security Compliance Management and Auditing
    Continuous Monitoring and Reporting
  • Tools & Technologies:PowerShell scripting for Azure automation
    Azure Monitor and Log Analytics
    Azure Resource Manager (ARM) and Azure CLI
    Microsoft Defender for Cloud
  • Cloud Security Strategy & Risk Management:Risk Assessment and Vulnerability Management
    Penetration Testing and Security Posture Management
    Cloud Security Architecture Design
    Security Control Implementation

Certification

AZ-500: Microsoft Azure Security Technologies

SC-100: Certified Cybersecurity Architect

Timeline

Azure Cloud Security Engineer

T-Mobile
11.2023 - Current

Cloud Security Support Engineer

Microsoft
10.2021 - 10.2023

High School Diploma -

Number 3rd School
Issabek Ramazan