Experience
12 - 16 yrs
Job Location
Pune, India
Vacancy
1
Designation
Security Engineer
Job Type
ONSITE
Job Description
JD- Microsoft Security Professional
The Microsoft Security Specialist plays a crucial role in safeguarding and optimizing the organization s digital environment. This position requires expertise in Microsoft Security, including the design, implementation, and management of security services in Microsoft Cloud Security, Cybersecurity (aligned with CIS controls), and On-Premises Security. Candidates should have hands-on experience securing Microsoft 365 and Azure environments, as well as traditional on-premises infrastructures, to ensure comprehensive protection, compliance, and resilience. Collaboration with cross-functional teams is essential for assessing systems and improving endpoint management and access controls. The successful candidate will contribute to a global practice focused on designing and deploying holistic Microsoft security solutions, including preparing requests for proposals (RFP) and requests for information (RFI).
Key Responsibilities
1. Microsoft Cloud Security (Azure Cloud & Microsoft 365)
- Architect and implement cloud security frameworks within Azure, adhering to Zero Trust principles to minimize risk.
- Secure Azure resources, encompassing subscriptions, management groups, and tenants with robust governance measures.
- Oversee the deployment and management of security solutions, including:
- Microsoft Defender for Cloud for protection across Azure environments.
- Microsoft Defender for Endpoint, Identity, Office 365, and Cloud Apps to ensure endpoint and identity security.
- Microsoft Sentinel for comprehensive SIEM and SOAR capabilities.
- Establish and enforce compliance through Azure Policy, Blueprints, and Role-Based Access Control (RBAC) to maintain access integrity.
- Safeguard cloud workloads across various services such as Virtual Machines, App Services, Containers, Azure Kubernetes Service (AKS), Storage, and Databases.
- Implement Conditional Access policies, multi-factor authentication (MFA), password less authentication strategies, and identity protection measures to enhance security posture.
- Conduct Cloud Security Posture Management (CSPM) and initiate remediation efforts to address vulnerabilities and align with best practices.
2. Identity & Access Management (IAM)
- Design and manage the architecture of Microsoft Entra ID (formerly known as Azure AD).
- Implement Hybrid Identity using AD Connect or Cloud Sync.
- Manage the following:
- Privileged Identity Management (PIM, PAM)
- Identity Governance, including Access Reviews and Entitlement Management
- Secure service principals and managed identities
- Monitor and respond to identity-based attack
3) On-Premises Security
- Fortify Active Directory Domain Services (AD DS).
- Implement Active Directory hardening measures, including:
- Tiered admin model for access control
- Principle of least privilege
- Secured Group Policy Objects (GPOs)
- Secure on-premises infrastructure, including Windows/Linux servers, file servers, and applications.
- Deploy endpoint security through Microsoft Defender for Endpoint.
- Establish patch management protocols with WSUS and Microsoft Endpoint Manager.
- Enhance network security with firewalls, segmentation, secure DNS implementation, and VPN integration.
4) Endpoint, Email & Collaboration Security
- Ensure security for Windows, macOS, and mobile devices via Microsoft Intune.
- Enforce device compliance, configuration profiles, and security baselines.
- Safeguard email and collaboration platforms such as Exchange Online, SharePoint, and Teams.
- Configure protective measures including anti-phishing, anti-spam, Safe Links, and Safe Attachments.
5) Cybersecurity & CIS Controls
- Implement and maintain CIS Benchmarks for:
- Azure environments
- Microsoft 365
- Windows Server and Client operating systems
- Align security controls with CIS Critical Security Controls (v8).
- Conduct risk assessments and security gap analyses.
- Maintain comprehensive security documentation, standards, and Standard Operating Procedures (SOPs).
Monitoring, Incident Response & Threat Management
- Design and manage Microsoft Sentinel use cases, develop analytics rules, and create playbooks.
- Lead investigations of security incidents and manage response actions.
- Conduct threat hunting and forensic analysis to identify vulnerabilities.
- Collaborate with Security Operations Centre (SOC), IT, and business stakeholders for cohesive security management.
- Compliance, Governance & Risk
- Ensure compliance with standards such as:
- ISO 27001
- NIST
- CIS
- GDPR and relevant regional regulations
- HIPPA Regulations
- Implement data protection strategies using Microsoft Purview covering:
- Data Loss Prevention (DLP)
- Information Protection using Sensitivity Labels
- Data Lifecycle Management
- Perform internal audits followed by remediation planning as necessary.
Automation & Continuous Improvement
- Automate security operations utilizing:
- PowerShell
- Azure Logic Apps
- Kusto Query Language (KQL)
- Enhance security posture through continuous monitoring and optimization efforts.
- Stay informed on Microsoft security roadmap updates and the evolving threat landscape.
Required Skills & Competencies
Technical Skills
- Proficient in Microsoft 365 Security & Compliance frameworks.
- Advanced understanding of Azure Security & Networking architectures.
- Hands-on experience with Microsoft Defender suite and Microsoft Sentinel.
- In-depth knowledge of Active Directory and Hybrid Identity management.
- Experience in implementing CIS Benchmarks and Controls.
- Strong scripting capabilities, particularly with PowerShell.
Soft Skills
- Exceptional analytical and problem-solving proficiency.
- Clear and effective communication and documentation skills.
- Ability to collaborate with cross-functional teams.
- A proactive mindset emphasizing security-first principles.
Experience Requirements
- 8 12 years of experience in IT Security, specifically focused on Microsoft Security environments.
- Proven track record in managing hybrid Microsoft infrastructures.
- Experience in security operations, governance, and compliance frameworks.
Preferred Certifications
- Microsoft Certified: Security Operations Analyst (SC-200)
- Microsoft Certified: Identity and Access Administrator (SC-300)
- Microsoft Certified: Information Protection Administrator (SC-400)
- Microsoft Certified: Azure Security Engineer (AZ-500)
- CISSP, CISM, or CCSP (preferred).
- Familiarity with CIS Benchmarks or ISO 27001 standards.
Reporting & Stakeholder Interaction
- Reports to: Head of Security / CISO
- Collaborates closely with: IT Infrastructure, Cloud Services, SOC, Compliance, and Business Teams.
Key Performance Indicators (KPIs)
- Reduction in the number of security incidents.
- Improvement in overall compliance posture.
- Measurement of Mean Time to Respond (MTTR) for incidents.
- Security score enhancements via Defender and Secure Score evaluations.
No Referrers Available
There are currently no referrers available for this job. You can still apply, will let you know once there is any referrer available.
