Назад
Company hidden
5 дней назад

Microsoft Security Engineer

Формат работы
onsite
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Microsoft Security Engineer (Microsoft Security): Designing, implementing, and maintaining enterprise security capabilities across Microsoft Defender, Sentinel, Entra ID, Purview, Intune, and related Microsoft 365 services with an accent on identity, endpoint, cloud, email, and data protection. Focus on developing detection logic and automation, investigating threats, hardening Microsoft environments, and improving incident response capabilities.

Location: Atlanta, Georgia, United States

Company

King & Spalding is a global law firm delivering legal services through technology and business professionals.

What you will do

  • Administer, configure, and optimize Microsoft Defender, Microsoft Sentinel, Microsoft Entra ID, Microsoft Purview, Microsoft Intune, and related Microsoft 365 security services.
  • Design and implement security policies, conditional access controls, endpoint baselines, data protection policies, and other configurations to reduce organizational risk.
  • Develop and maintain detection logic, alert rules, automation, playbooks, dashboards, and operational procedures.
  • Perform security health checks, configuration reviews, control validation, hardening, vulnerability remediation, and audit support across Microsoft 365, Azure, endpoint, identity, email, and SaaS environments.
  • Investigate phishing, malware, account compromise, suspicious authentication, data exposure, endpoint threats, and cloud-based threats using logs, alerts, telemetry, indicators of compromise, and threat intelligence.
  • Partner with threat response, detection engineering, infrastructure, endpoint, messaging, compliance, and business teams; participate in change management and on-call incident response as required.

Requirements

  • Bachelor’s degree in cybersecurity, information technology, computer science, information systems, or a related field; equivalent professional experience may substitute.
  • 3–5 years of experience in information security, security engineering, security operations, cloud security, identity security, endpoint security, or a related role.
  • Hands-on experience with Microsoft Defender, Microsoft Sentinel, Microsoft Entra ID, Microsoft Purview, Microsoft Intune, Microsoft 365 security, or Azure security services.
  • Strong understanding of defense-in-depth, least privilege, identity and access management, endpoint and email security, cloud security, vulnerability management, logging, monitoring, and incident response.
  • Experience with Windows, Active Directory, Azure, Microsoft 365, networking, DNS, email flow, authentication protocols, cloud services, PowerShell, Kusto Query Language, Microsoft Graph, or Logic Apps.
  • Ability to communicate technical findings clearly and participate in maintenance windows and on-call rotations.

Nice to have

  • Microsoft security certifications such as SC-200, SC-300, SC-400, AZ-500, or MS-102.
  • Experience with Defender XDR, Advanced Hunting, secure score improvement, attack simulation, endpoint detection and response, email protection, identity protection, or cloud app security.
  • Experience building SIEM use cases, analytics rules, dashboards, automation, and incident response playbooks in Microsoft Sentinel.
  • Knowledge of Microsoft Purview Data Loss Prevention, information protection, sensitivity labels, retention policies, insider risk, eDiscovery, or compliance controls.
  • Familiarity with NIST Cybersecurity Framework, CIS Controls, MITRE ATT&CK, ISO 27001, threat hunting, detection engineering, malware analysis, or multi-cloud security.

Culture & Benefits

  • Full-time employment in a fast-paced enterprise environment.
  • Health and wellness plan, life and disability insurance, flexible spending accounts, and a health savings account.
  • 401(k) plan, profit sharing plan, and substantial paid time off.
  • Merit-based bonuses and salary increases.
  • Opportunities to work with cross-functional security, technology, compliance, and business teams.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →