Job Title: Senior Microsoft Service EngineerProject Location: Indianapolis, IndianaJob Description:The Senior Microsoft Service Engineer is a senior-level position responsible for supporting the overall technology ecosystem for the organization. The scope of this role includes Microsoft technologies and other corporate software applications, with a primary focus on Microsoft. This role leads the organization's cybersecurity efforts within the Microsoft environment, including security strategy, configuration, monitoring, and incident response across Microsoft 365 (E3 and E5 licensing), Microsoft Defender, Microsoft Entra ID, Microsoft Purview, and Microsoft Intune.
Core responsibilities include the configuration, maintenance, and troubleshooting of the Microsoft systems leveraged by the organization, including Exchange Online, SharePoint, OneDrive, Teams, and Power Automate. This role owns the monitoring of the organization's cybersecurity posture within the Microsoft ecosystem and leads the response to security events and incidents. Due to the senior nature of this role, there is a strong expectation of mentorship of junior members of the team.
This role will also support the organization in a general technical capacity, including hands-on desktop support and other technical duties as the individual's skills and the needs of the business allow. This is a growth role and should be seen as such.
This individual must be able to work a flexible schedule including some evenings, weekends, and holidays, and must have the ability to work under pressure and meet deadlines.
Essential duties and responsibilities:- Include the following. Other duties may be assigned.
- Lead the organization's cybersecurity strategy and day-to-day security operations within the Microsoft environment, including monitoring the company's security posture, triaging and investigating alerts, and leading the response to security events and incidents.
- Configure and manage company security using the Microsoft Defender suite (Defender for Office 365, Defender for Endpoint, Defender for Cloud Apps, Defender for Identity) and Microsoft Purview, including:
- Data Loss Prevention (DLP) policies and sensitivity labels
- Exchange Online mail flow (transport) rules and anti-phishing/anti-spam policies
- Microsoft Entra ID security, including Conditional Access, multifactor and phishing-resistant authentication (FIDO2/passkeys), and identity protection
- Leverage Microsoft Defender for Endpoint to manage Endpoint Detection and Response (EDR) for company devices, investigate and respond to alerts, and ensure devices are patched monthly and in response to zero-day vulnerabilities.
- Manage user accounts, groups, and licensing through the Microsoft 365 Admin Center, Microsoft Entra admin center, and Exchange Admin Center.
- Configure and manage Microsoft Teams, OneDrive, SharePoint, and Outlook to support the organization's overall collaboration.
- Leverage Microsoft Intune and Microsoft Entra ID to configure and manage company devices, applications, and user profile settings, including device configuration and compliance profiles, Windows Autopilot, Windows and application update policies, and company-specific security baselines.
- Act as the primary contact between Microsoft and the organization's third-party security monitoring/managed detection and response (MDR) partner.
- Compile, interpret, and present Microsoft security audit data, Secure Score, and security posture reporting to Technology leadership.
- Mentor junior members of the Technology team on Microsoft administration and security best practices.