Työn kuvaus
Azure Platform Security Specialist, Cloud Platform Services (Helsinki/Oulu)
Yritys:  OP Osuuskunta
Työn sijainti:  Helsinki, Oulu
Tehtävän luonne:  Toistaiseksi voimassa oleva
Ilmoituksen päättymispäivä:  27.9.2026

Do you want to be at the forefront of shaping and securing a large-scale Azure platform? As an Azure Platform Security Specialist, you will play a key role in defining how cloud governance, identity, and security controls are implemented across the enterprise. In this role, you will combine deep technical expertise with security, compliance, and risk management to help build a secure and scalable cloud environment for the future. 

 

This position is located in Helsinki or Oulu, based on your preference. At OP Pohjola, we work in a hybrid model that combines office and remote work.

 

What is the role about?

 

As an Azure Platform Security Specialist, you will play a key role in securing and governing our enterprise Azure platform. You will be responsible for Azure Policy and identity and access management practices, ensuring that security, compliance, and governance requirements are translated into practical and scalable platform controls. 

 

In this hands-on specialist role, you will work closely with Cyber Security, IT GRC, platform teams, operations, and application teams to continuously improve Azure governance and access management. Success in the role requires both solid technical expertise and the ability to balance security, risk, compliance, and operational needs in day-to-day decision-making. 

 

 

Key skills and expertise 

 

  • Azure Policy Management & Compliance interpretations
  • Azure Identity & Access Management (IAM) 
  • Microsoft Defender for Cloud, MCSB and CSPM 
  • Azure Landing Zone architecture 
  • Cloud security governance and regulatory compliance 
  • Azure CAF (Cloud Adoption Framework) and Enterprise-Scale Architecture 
  • Infrastructure & Policy as Code (IaC) using Bicep and Terraform 
  • CI/CD Automation with GitHub Actions and Azure Pipelines 
  • AI-Assisted Governance, Compliance and Security Analysis 
  • Change Management and Platform Governance 

 

Key responsibilities 

 

  • Translate security, regulatory, and Cloud Control Framework requirements into practical Azure Policy and IAM solutions 
  • Perform risk and impact assessments for policy and access management changes 
  • Manage policy exemptions together with Cyber Security, IT GRC, and control owners 
  • Contribute to audits, control assessments, and continuous improvement of Azure security governance 
  • Maintain and automate Azure Policy and IAM controls through Terraform, GitHub, and Azure DevOps pipelines 
  • Review and assess custom Azure role requests, balancing business needs with security and risk considerations 
  • Support platform and application teams with guidance on policy compliance, access management, and security best practices 
  • Produce technical documentation, architecture decisions, operational procedures and implementation guidelines for platform governance capabilities
  • Manage the end-to-end lifecycle of Policy and IAM changes, including impact assessment, testing, risk analysis, documentation, change approvals and production deployment through the formal change management process

 

What are we looking for?

 

To succeed in this role, you bring strong expertise in Azure governance, identity and access management, and cloud security, combined with the ability to balance security, compliance, risk, and operational requirements in a large-scale enterprise environment. 

 

  • Hands-on experience with Azure Policy, including policy design, compliance monitoring, remediation, exemptions, and policy-as-code practices 
  • Strong knowledge of Microsoft Entra ID, Azure RBAC, Privileged Identity Management (PIM), managed identities, privileged access, and identity governance 
  • Solid understanding of cloud security principles such as least privilege, Zero Trust, defence in depth, and secure change management 
  • Experience interpreting security, compliance, regulatory, and governance requirements and translating them into practical technical controls 
  • Experience in risk assessments, impact analysis, control-gap evaluations, and evidence-based decision making 
  • Familiarity with Infrastructure as Code and DevSecOps practices using Terraform, Git, GitHub, and/or Azure DevOps 
  • Ability to collaborate effectively with Cyber Security, IT GRC, platform teams, and application teams across the organisation 

 

We are looking for someone with strong analytical and communication skills, a practical security mindset, and the confidence to challenge solutions that may introduce unnecessary risk. You are comfortable working with a wide range of stakeholders and communicating complex topics in a clear and practical way. Excellent English skills are required, while Finnish language skills are considered an advantage. Experience in a regulated enterprise environment, preferably within financial services, as well as relevant Microsoft Azure certifications and familiarity with common security and compliance frameworks, will further support your success in the role. 

 

Why OP Pohjola?

 

In internal surveys at OP Pohjola, our employees often cite the work community and their highly skilled colleagues as the most rewarding aspects of their work. We take great pride in this. As a member of OP Pohjola, you will join a company that is dedicated to developing the best products and services in the industry. 

 

As an employer OP Pohjola offers you a stable environment where people come first. Our people value good work-life balance and opportunities to learn and grow in their role. Our 70-20-10 model gives you a chance to focus on your professional development on your work time – by utilizing our very own OP Tech Academy, for instance. 

 

When you work for OP Pohjola, you work with the best products and services in the field. In everyday life, it is, of course, very nice to work in an architecturally beautiful environment, in a location easily accessible from basically anywhere. As an OP Pohjola employee, you are entitled to: 

 

  • Structured model for professional career advancement 
  • Possibility to enhance your own skillset while working with highly talented teams 
  • Comprehensive occupational healthcare 
  • Sport and cultural benefits 
  • Benefits and discounts on OP Pohjola's own products  

 

Did we spark your interest?

 

Great – that’s what we were hoping for! Submit your application for the position as soon as possible, but no later than Sunday 27.9.2026.  

 

If you have any questions in mind Product Owner Ramakrishnan Praveen (tel. +358 40 932 2250) is happy to help you. You can best reach Ramakrishnan on Wed 16.9 from 15.00-16.00 and on Thu 24.9 from 14.00-15.00. 

 

We operate in the financial sector and our business is founded on trust and accountability. For this reason, we will check the successful candidate's credit history, corporate connections and potential conflicts of interest. In addition, the successful candidate must take a drug test and will be subject to a security clearance vetting by the Finnish Security and Intelligence Service. 

 

OP Pohjola – We have something in common

 

Diversity and equality are highly prized at OP Pohjola. We want everyone to feel welcome and valued, and we appreciate that diversity enriches us and brings new perspectives. We invite job applications from everyone, because we all have something in common. We’re thrilled that you want to join us on our shared journey. 

 
Owned by our customers, we are the most attractive financial sector employer in Finland. OP Pohjola employs more than 14,000 professionals. We have a mission – to promote the sustainable prosperity, security and wellbeing of our owner-customers and operating region. What we do matters, both to our employees and society in general. As the largest provider of financial services in Finland, we are building a better tomorrow; this has been our goal for more than 120 years.