Senior Cybersecurity Engineer: Commonwealth Holdings, Inc.

Commonwealth Electric Company of the Midwest

$90K — $120K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5-10 years of cybersecurity experience, with 3+ years in a senior role
  • Hands-on expertise with Microsoft security tools like Defender and Sentinel
  • Strong grasp of Zero Trust architecture principles
  • Experience in incident response and threat hunting
  • Familiarity with regulatory compliance frameworks (e.g., NIST, ISO)

Responsibilities

  • Lead deployment and configuration of Microsoft Defender and Sentinel
  • Design security architecture based on Zero Trust principles
  • Monitor alerts and respond to security incidents
  • Conduct proactive threat hunting and risk assessment
  • Manage identity governance and access controls using Microsoft Entra

Benefits

  • Contribute to the cybersecurity roadmap and strategy
  • Engagement with internal stakeholders to align security initiatives
  • Opportunity to evaluate and implement new security technologies
  • Participation in regulatory and compliance initiatives
  • Possibility of professional development through preferred certifications and training
Full Job Description
Position Summary:

The Senior Cybersecurity Engineer is responsible for designing, implementing, and managing enterprise security solutions with a primary focus on the Microsoft security ecosystem, including Microsoft Defender, Microsoft Sentinel, Microsoft Purview, and Microsoft Entra, Microsoft Security Copilot.

This role serves as a senior technical leader in cybersecurity operations, threat detection, identity security, and data protection, while also supporting broader IT infrastructure and end-user support initiatives as needed. The ideal candidate combines deep technical expertise with a practical, hands-on approach to operational support in a fast-paced environment.

Primary Responsibilities:

  • Lead the deployment, configuration, and optimization of:
    • Microsoft Defender (Endpoint, Identity, Office 365, Cloud Apps)
    • Microsoft Sentinel (SIEM/SOAR)
    • Microsoft Purview (Data Governance, Compliance, DLP, Insider Risk)
    • Microsoft Entra (Identity, Conditional Access, Privileged Identity Management)
    • Microsoft Security Copilot
    • Microsoft Agent 365
  • Design and maintain security architecture aligned with Zero Trust principles
  • Develop and tune detection rules, analytics, and automated response playbooks in Sentinel
  • Monitor and respond to alerts, incidents, and threats across Microsoft security platforms
  • Lead incident response activities including triage, investigation, containment, and remediation
  • Conduct threat hunting and proactive risk identification
  • Maintain and improve incident response plans and procedures
  • Analyze Indicators of Compromise (IOCs) and emerging threat intelligence
  • Manage identity lifecycle, governance, and access controls within Microsoft Entra ID
  • Implement Conditional Access, MFA, and privileged access strategies
  • Support passwordless and phishing-resistant authentication strategies (e.g., FIDO2)
  • Implement and maintain Data Loss Prevention (DLP), retention, and compliance policies using Purview
  • Support regulatory and compliance initiatives (e.g., NIST, CIS, ISO, CMMC as applicable)
  • Perform data classification and protection strategy development
  • Conduct vulnerability assessments and coordinate remediation efforts
  • Manage endpoint and cloud security posture using Defender tools
  • Provide risk reporting and security metrics to leadership
  • Provide tier 2/3 support for security-related issues across infrastructure and end-user environments
  • Assist IT team with:
  • Endpoint management (Intune, device security)
  • Microsoft 365 administration
  • Microsoft Entra Identity and network security (ID, AD, PIM, PAM, FIDO)
  • Manage 3rd party security vendors (Microsoft, 24/7 SOC)
  • Document security processes
  • Respond to security audits
  • Act as escalation point for complex IT and security issues
  • Evaluate and implement new security technologies and best practices
  • Partner with internal stakeholders to align security with business objectives
  • Contribute to long-term cybersecurity roadmap and strategy


Required Qualifications:

  • Deep hands-on experience with:
    • Microsoft Defender suite
    • Microsoft Sentinel (SIEM/SOAR operations)
    • Microsoft Entra ID (identity and access management)
    • Microsoft Purview (compliance and data governance)
  • Strong understanding of:
    • Zero Trust architecture
    • Cloud security (Azure/Microsoft 365)
    • Identity and access management best practices
  • Network Security and firewalls
  • Experience with incident response and threat hunting
  • Familiarity with regulatory frameworks (NIST, CIS, ISO, CMMC, etc.)


Preferred Qualifications:

  • Microsoft certifications (highly preferred):
    • SC-200 (Security Operations Analyst)
    • SC-300 (Identity and Access Administrator)
    • SC-400 (Information Protection Administrator)
    • AZ-500 (Azure Security Engineer)
  • Experience in construction, field-based, or multi-site environments (nice-to-have)
  • Knowledge of endpoint management via Microsoft Intune
  • Experience integrating security tools with ERP or business systems


Education and Experience:

  • 5-10+ years of experience in cybersecurity, with at least 3+ years in a senior or lead roll


This position can be located at our office in one of the following locations and is not a remote position:

Lincoln, NE; Omaha, NE; Salt Lake City, UT; Des Moines, IA; or Phoenix, AZ.

Similar Jobs

More Jobs at Commonwealth Electric Company of the Midwest

More Information Technology Jobs

Find similar Senior Cybersecurity Engineer: Commonwealth Holdings, Inc. jobs: