Security Infrastructure Engineer
Indexed description
We are seeking a highly skilled and proactive Infrastructure & Security Engineer to oversee, maintain, and secure our enterprise Microsoft cloud infrastructure and endpoint security architecture. In this role, you will lead the administration of Microsoft 365, Entra ID (Azure AD), Exchange Online, SharePoint Online, and Teams while serving as a key operational pillar in our SecOps framework.
You will directly manage market-leading security tooling—including CrowdStrike Falcon, Microsoft Defender, DUO Security, and Proofpoint (ESG & EFD)—and serve as the Tier-2/3 technical escalation point for SOC/MDR alerts and enterprise vulnerability management
.
Key Responsibiliti
esCloud Infrastructure & M365 Administrati
- onServe as the primary system administrator and Subject Matter Expert (SME) for Microsoft 365, Entra ID (Azure AD), Azure, Exchange Online, SharePoint Online, and Team
- s.Design, configure, and maintain Conditional Access policies, Privileged Identity Management (PIM), and Zero Trust access framework
- s.Automate routine administrative tasks, user management, and policy deployments using PowerShell scriptin
- g.Manage mail routing, transport rules, identity synchronization, cross-tenant integrations, and SharePoint permission
s.Identity & Email Security Engineeri
- ngManage identity authentication flows and Multi-Factor Authentication (MFA) using DUO Security integrated alongside Entra I
- D.Administer and tune Proofpoint Email Security Gateway (ESG) for inbound/outbound spam, malware, phishing, and attachment sandboxin
- g.Oversee Proofpoint Email Fraud Defense (EFD) to enforce strict DMARC, DKIM, and SPF alignment across domain portfolios to eliminate brand spoofing and BEC attack
s.Endpoint Defense & Security Operations (SecOp
- s)Administer, deploy, and maintain policies for CrowdStrike Falcon and Microsoft Defender for Endpoin
- t.Act as the technical escalation point for high-priority alerts surfaced by external MDR / SOC services, conducting swift triage, host isolation, and root-cause investigation
- s.Lead the operational vulnerability management program: assessing scanner findings, prioritizing critical CVEs, and coordinating patching and infrastructure remediation with minimal downtim
e.Required Qualifications & Technical Skil
- lsExperience: 3 to 5+ years of hands-on experience in Systems Infrastructure, Cloud Security, or SecOps role
- s.Microsoft Cloud Ecosystem: Expert knowledge of Entra ID (Azure AD), Azure RBAC, Exchange Online, SharePoint Online, Teams, and PowerShel
- l.Security Toolin
- g:Endpoint: CrowdStrike Falcon & Microsoft Defender for Endpoin
- t.Identity & MFA: DUO Security & Entra ID Security Defaults/Conditional Acces
- s.Email Security: Proofpoint ESG & Proofpoint Email Fraud Defense (EFD
- ).SecOps & Incident Escalation: Proven track record of triaging escalated SOC/MDR alerts, handling incident containment, and managing vulnerability remediation workflow
- s.Networking & Security Fundamentals: solid understanding of DNS (MX, TXT, CNAME, SPF records), TCP/IP, VPNs, and Zero Trust security principle
s.
Preferred Certifications (Nice-to-Ha
- ve)Microsoft Certified: Identity and Access Administrator Associate (SC-3
- 00)Microsoft Certified: Azure Administrator Associate (AZ-1
- 04)Microsoft 365 Certified: Security Administrator Associate (MS-5
- 00)CrowdStrike Certified Falcon Administrator (CC
- FA)CISSP, CySA+, or CompTIA Securi
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search