Microsoft O365/Azure Security Engineer - IT Security - CBO - Full-Time - Days
Indexed description
Responsibilities
Microsoft Cloud Administration & Engineering
- Serve as the primary subject matter expert for the Microsoft 365 and Azure environments.
- Administer, maintain, and optimize Microsoft 365, Azure, Entra ID (Azure AD), Exchange Online, Teams, SharePoint Online, OneDrive, Intune, and related Microsoft services.
- Manage and support hybrid identity and hybrid Exchange environments, ensuring secure integration between on-premises and cloud platforms.
- Manage Microsoft licensing, subscriptions, service plans, and license optimization strategies.
- Serve as the primary liaison for Microsoft Enterprise Agreements, licensing renewals, contract compliance, budgeting, and vendor engagement activities.
- Collaborate with Infrastructure, Networking, and Application teams to support cloud transformation and secure adoption of Microsoft technologies.
- Establish and maintain standards, policies, procedures, and documentation for Microsoft cloud administration and security.
- Security Operations & Engineering
- Ensure the confidentiality, integrity, and availability of information systems and data assets.
- Design, recommend, document, and implement security solutions aligned with organizational goals and security strategies.
- Manage and secure Microsoft 365 and Azure environments, including Entra ID, SSO, MFA, Conditional Access, and advanced security controls.
- Lead tenant security initiatives including:
- Conditional Access Policies
- Multi-Factor Authentication (MFA)
- Privileged Identity Management (PIM)
- Identity Governance
- Role-Based Access Control (RBAC)
- Zero Trust Architecture
- Data Loss Prevention (DLP)
- Microsoft Defender Security Suite
- Microsoft Purview Compliance Solutions
- Monitor tenant security posture and remediate risks, vulnerabilities, and configuration weaknesses.
- Perform security assessments utilizing Microsoft Secure Score and other security assessment tools.
- Deploy and configure security technologies and partner with infrastructure teams and vendors on implementation efforts.
- Investigate security incidents, breaches, and suspicious activity, documenting findings and remediation actions.
- Assist with vulnerability remediation efforts and execution of security best practices.
- Execute security changes in accordance with established change management processes.
- Research emerging threats, technologies, and security enhancements and provide recommendations to leadership.
- Track and manage information security risks and facilitate remediation activities.
- Conduct risk assessments and security impact analyses to support regulatory compliance and informed security investments.
- Design and implement security controls, standards, policies, and procedures that support compliance with applicable regulations and organizational requirements.
- Support compliance efforts related to HIPAA, HITECH, PCI, privacy requirements, and other industry regulations.
- Support audit activities, compliance assessments, remediation tracking, and governance initiatives.
- Investigate and respond to audit findings and compliance requirements related to Microsoft technologies.
- Contribute to the ongoing development and improvement of security policies and standards.
- Manage stakeholder expectations and communicate security requirements and recommendations effectively.
- Foster strong working relationships between Information Security, IT Operations, and business teams.
- Support the development and delivery of security awareness, education, and communication programs.
- Work with IT teams to identify vulnerabilities and improve overall security posture.
- Demonstrate ownership, accountability, integrity, and a commitment to high-quality results.
- Stay current on Microsoft roadmap changes, licensing models, cloud technologies, security standards, and industry best practices.
- Perform other duties as assigned by Information Security and IT leadership.
- Advanced knowledge of Microsoft 365 administration and security.
- Experience administering Microsoft Azure and Entra ID environments.
- Experience supporting Exchange Online and Hybrid Exchange environments.
- Strong understanding of identity and access management (IAM), privileged access management, RBAC, and identity governance.
- Experience with Microsoft Defender, Purview, Intune, and related security technologies.
- Knowledge of Zero Trust security principles and cloud security architecture.
- Experience supporting security governance, compliance, and risk management programs.
- Understanding security frameworks, compliance readiness assessments, audit requirements, and enterprise security controls.
- Experience with project management and cross-functional technology initiatives.
- Strong analytical, organizational, and troubleshooting skills.
- Excellent written and verbal communication skills with the ability to engage technical and business stakeholders.
- Bachelor's degree in Information Technology, Cybersecurity, Computer Science, Business, or a related technical discipline.
- Minimum of 3-5 years of experience administering and securing enterprise Microsoft environments, including Microsoft 365, Azure, Entra ID, and Exchange Online.
- Experience in information security, cloud administration, identity management, and compliance-related activities.
- Healthcare industry experience and familiarity with HIPAA/HITECH requirements preferred.
- CISSP
- Microsoft Certified: Cybersecurity Architect Expert
- Microsoft Certified: Identity and Access Administrator Associate
- Microsoft Certified: Azure Administrator Associate
- Microsoft Certified: Security Operations Analyst Associate
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search