In this role, you will serve as a frontline defender of our organization's digital assets, infrastructure, and sensitive data against an evolving landscape of cyber threats. You will be a primary driver and active participant in improving our organization's cyber posture & maturity across a multitude of projects and active initiatives. Making a change to protect our organization is your mandate and passion to be the right fit!
Key Accountabilities
- Manage identity lifecycles by executing proactive user account controls procedures.
- Enforce Zero Trust principles across the IT environment utilizing Microsoft IAM and Privileged Identity Management (PIM) frameworks
- Architect and deploy Microsoft Entra Conditional Access Policies to guarantee secure authentication to all Microsoft 365 cloud resources.
- Engineer global patch deployments for operating systems and third-party applications via Microsoft Intune to neutralize zero-day vulnerabilities
- Harden collaboration environments across Exchange Online and Teams using Defender for Office 365 threat policies, transport rules, and blocklists
- Orchestrate incident response and threat containment operations in close alignment with internal IT teams and external security partners.
- Govern data protection by implementing Microsoft Purview Information Protection to eliminate unauthorized data sharing and cloud exfiltration
- Author and maintain corporate IT security controls, policies, and procedural documentation to continuously mature the organizational security posture
- Conduct technical risk assessments and deliver strategic recommendations to mitigate vulnerabilities in accordance with security best practices
- Drive regulatory compliance (including ISO 27001, NIST, GDPR, and HIPAA) while tracking emerging threat intelligence and AI-driven security technologies
What We're Looking For
To thrive in this role, you should bring:
Education and Experience
- University Degree or equivalent.
- 5 years' experience in a similar capacity
- Demonstrated knowledge of IT Security frameworks, controls and best practices
Technical Skills
- Identity & Access Management (IAM): Advanced proficiency in Microsoft Entra ID, Conditional Access Policies, and Privileged Identity Management (PIM)
- Endpoint & Patch Management: Expertise in Microsoft Intune for global OS, third-party application deployment, and zero-day vulnerability remediation
- Cloud & Collaboration Security: Hands-on experience hardening Exchange Online, Teams, and M365 environments using Defender for Office 365
- Data Loss Prevention (DLP): Skilled in implementing and monitoring Microsoft Purview Information Protection to prevent cloud and endpoint exfiltration
- Risk & Compliance Frameworks: Strong working knowledge of security governance standards including NIST, ISO 27001, GDPR, and HIPAA
Soft Skills
- Analytical Thinking: Strong capacity to dissect complex security logs, evaluate risk telemetry, and isolate root causes during incidents
- Cross-Functional Collaboration: Proven ability to partner effectively with internal IT engineering teams and external security vendors to resolve threats
- Crisis Communication: Calm and articulate demeanor when conveying critical security incidents, remediation steps, and technical details to non-technical stakeholders
- Continuous Learning: Proactive mindset dedicated to tracking emerging exploit vectors, zero-day threats, and evolving AI-driven defensive technologies
- Detail Orientation: Sharp focus required to maintain meticulous security policy documentation, audit user access controls, and detect subtle system anomalies.