Microsoft Security Engineer

New Today

Overview

Role: Microsoft Security Engineer

Location: London, UK

Duration: Contract

Key Skills/Knowledge

  • Platform Expertise and Management: Act as a subject matter expert for the core components of the Defender XDR suite, including:
  • Microsoft Defender for Endpoint: Manage endpoint protection, detection, and response across our device fleet.
  • Microsoft Defender for Office 365: Protect against email-based threats, including phishing, malicious attachments, and compromised links.
  • Microsoft Defender for Identity: Monitor on-premises Active Directory signals to identify and investigate threats related to compromised identities.
  • Microsoft Defender for Cloud Apps: Enforce security policies and provide threat protection across our cloud applications.
  • Microsoft Defender Vulnerability Management: Prioritize and address critical vulnerabilities and misconfigurations based on a risk-based assessment.

Collaboration & Documentation

  • Collaboration & Support: Work with internal IT and other security teams to ensure the effectiveness of the platform. Serve as a point of contact for external services like Microsoft Defender Experts for proactive hunting and expert guidance.
  • Documentation & Reporting: Document incident response procedures, create reports on security posture, and provide regular briefings to leadership.

Microsoft Purview (Data Governance and Compliance)

  • Data Lifecycle Management: Implement policies for records management and retention to ensure that data is retained according to legal and business requirements and securely disposed of when no longer needed.
  • Data Security Posture Management (DSPM): Utilize DSPM capabilities to understand data risk, identify sensitive data across the environment, and implement controls to mitigate risk. This includes managing data security posture related to AI applications and models.
  • eDiscovery & Auditing: Support legal and compliance teams by utilizing Purview's eDiscovery and audit capabilities for investigations.

Education & Experience

  • Education: Bachelor\'s degree in Cybersecurity, Information Technology, Computer Science, or a related field.
  • Experience: 8-10 years of experience in a cybersecurity role, with a strong focus on Microsoft security solutions.

Technical Skills

  • In-depth practical knowledge of the Microsoft security stack, including Defender XDR, Purview, and Entra ID.
  • Experience with scripting languages, particularly PowerShell, for automation and management.
  • Familiarity with common cybersecurity frameworks and attack methodologies, such as the MITRE ATT&CK framework.

Microsoft Entra ID (Identity and Access Management)

  • Advanced Threat Protection: Utilize Microsoft Entra ID Protection to identify and respond to compromised credentials and other identity-based risks. Work closely with the Defender for Identity team to monitor on-premises Active Directory signals for threats.
  • Privileged Access Management: Implement and maintain Privileged Identity Management (PIM) and Privileged Access Management (PAM) to provide just-in-time (JIT) access and enforce the principle of least privilege.
  • Authentication Protocols: Ensure the proper configuration and integration of various authentication protocols, including SAML, OAuth, OIDC, and SCIM for application and service provisioning.
  • Device Management: Secure BYOD and other device access by implementing device-based access policies and configurations.

Desirable skills/knowledge/experience

  • Excellent analytical and problem-solving abilities.
  • Strong communication and collaboration skills to work effectively with technical and non-technical teams.
  • A proactive mindset and the ability to adapt to a fast-paced, evolving threat landscape.

Certifications (Preferred)

  • Microsoft Certified: Security Operations Analyst Associate (SC-200)
  • Microsoft Certified: Identity and Access Administrator Associate (SC-300)
  • Microsoft Certified: Information Protection Administrator Associate (SC-400)
  • Certified Information Systems Security Professional (CISSP)
#J-18808-Ljbffr
Location:
London, England, United Kingdom
Salary:
£125,000 - £150,000
Job Type:
FullTime
Category:
IT & Technology

We found some similar jobs based on your search