Position LocationRemote TypeRemote
Office Location (if not fully remote):n/a
Job DescriptionSenior Security EngineerIn this role, you will oversee the architecture and optimization of Microsoft Sentinel, Defender for Endpoint, and Identity Governance controls. You will bridge the gap between high-level security strategy and hands-on execution-leading detection engineering efforts, mentoring team members, and ensuring our cloud and hybrid environments meet rigorous defensive standards through proactive threat hunting and architectural reviews.
What you will do:- Collaborate with the security team on detection engineering efforts within the SIEM platform, including use case development, correlation rule tuning, and alert optimization.
- Support the management and optimization of Microsoft Defender for Endpoint, including policy architecture, strategy, and advanced investigation capabilities.
- Collaborate with the team to coordinate the technical response to significant security incidents, including root-cause analysis and control improvements.
- Conduct proactive threat hunting across endpoints, identity systems, and cloud environments.
- Define and maintain secure configuration standards for Azure, Microsoft 365, and hybrid environments. Lead the design and optimization of identity security controls (conditional access, privileged access management, and access governance).
- Define logging standards and improve telemetry coverage across infrastructure, cloud, and identity systems. Participate in architecture reviews to identify security risks early and recommend practical mitigation strategies.
- Guide vulnerability management strategy and remediation prioritization. Support regulatory examinations and cybersecurity audits with technical validation of control effectiveness.
Required Experience & Qualifications:- 7+ years of experience in security engineering or advanced security operations.
- Deep hands-on experience with Microsoft Defender for Endpoint and SIEM platforms (specifically Microsoft Sentinel).
- Strong proficiency with cloud security architecture, particularly within Azure environments.
- Proven track record of leading incident response efforts and conducting thorough root-cause analysis.
- Demonstrated experience with automation and scripting languages, including PowerShell, Python, and KQL.
Preferred Education & Certifications:- Bachelor's degree in Computer Science, Information Security, or a related field (or equivalent professional experience).
- At least one active relevant certification: AZ-500, CCSP, CISSP, or GIAC.
This is a nationwide, remote opportunity.