Security Engineer at Pragma Global

Company:

Pragma Global

Pragma Global

Industry: Engineering / Technical

Deadline: Not specified

Job Type: Full Time

Experience: 5 years

Location: Western Cape

Province:

Field: ICT / Computer

  • The Security Engineer will be responsible for designing, implementing, and maintaining the technical controls that protect our On Key SaaS platform, data, and infrastructure.The Security Engineer will act as the bridge between security strategy (set by CISO/CIO/CTO) and technical execution (DevOps, Developers, and Support).

Minimum Requirements    

  • A tertiary qualification in a relevant field.
  • A minimum of 5 years of experience in IT Security-related roles.
  • Strong knowledge of Azure security architecture and cloud infrastructure.
  • Experience with CI/CD security (GitHub Actions, Azure DevOps).
  • Familiarity with network security, identity management, and incident response.
  • Understanding of ISO 27001, SOC 2, GDPR and how controls are implemented technically.
  • Certifications in the following field are desired:
  • AZ-500: Microsoft Azure Security Engineer Associate.
  • CISSP / GIAC Cloud Security Engineer (GCSE).
  • CompTIA Security+.

Duties & Responsibilities    

Platform & Infrastructure Security

  • Implement and maintain Azure-native security controls (Defender for Cloud, Sentinel, Key Vault, etc.).
  • Ensure secure configurations of cloud services, storage accounts, virtual networks, and Kubernetes clusters.
  • Apply network segmentation, WAFs, and DDoS protections.
  • Regularly assess configurations against CIS Benchmarks and NIST frameworks.

Application Security Integration

  • Collaborate with developers to embed security into the SDLC. 
  • Static and dynamic code analysis (SAST, DAST).
  • Dependency and container vulnerability scanning.
  • Secrets detection and management.
  • Review and enforce secure coding standards across repositories.

Identity & Access Management (IAM)

  • Maintain least privilege principles across Azure AD, CI/CD, and internal tools.
  • Manage MFA, conditional access policies, and just-in-time (JIT) permissions.
  • Audit service principals, tokens, and credentials in all environments.

Threat Detection & Incident Response

  • Deploy and fine-tune SIEM/SOAR tools (e.g., Azure Sentinel).
  • Investigate alerts, correlate events, and lead technical triage.
  • Create and maintain incident response playbooks for common scenarios.

Security Automation & Continuous Improvement

  • Build security automation pipelines for patching, scanning, and alerting.
  • Implement Infrastructure as Code (IaC) security policies (Terraform Sentinel, OPA).
  • Contribute to compliance evidence collection for SOC 2 / ISO 27001.
     



Share this job:

Asset Care Engineer at Pragma Global

Facilities Coordinator at Pragma Global