About the Role:
Responsibilities:
- Design, implement, and configure Microsoft Defender for Endpoint to protect organizational devices and respond to advanced threats
- Deploy and manage Microsoft Defender for Cloud to secure multi-cloud and hybrid environments
- Implement comprehensive security solutions across the Microsoft Defender product suite, including Defender for Office 365, Defender for Identity, and Defender for Cloud Apps
- Configure and optimize Microsoft Entra ID (formerly Azure AD) for identity and access management, including conditional access policies, multi-factor authentication, and privileged identity management
- Conduct security assessments and provide recommendations to enhance overall security posture
- Develop and implement security policies, playbooks, and incident response procedures
- Provide technical guidance and training to client IT teams on Microsoft security best practices
- Monitor security alerts, investigate incidents, and coordinate threat response activities
- Create detailed documentation including design specifications, configuration guides, and operational procedures
- Stay current with emerging threats and new Microsoft security features and capabilities
Requirements:
- 3+ years of hands-on experience implementing Microsoft Defender for Endpoint in enterprise environments
- 2+ years of experience with Microsoft Defender for Cloud (formerly Azure Security Center/Defender for Cloud)
- Demonstrated experience with multiple Microsoft Defender solutions (Office 365, Identity, Cloud Apps)
- Strong implementation experience including planning, deployment, configuration, and optimization phases
- Solid understanding of Microsoft Entra ID and identity security principles
- General Microsoft ecosystem knowledge including Azure, Microsoft 365, and Windows Server environments
- Expertise in endpoint detection and response (EDR) concepts and practices
- Understanding of cloud security principles and best practices
- Knowledge of threat hunting, incident response, and security operations
- Familiarity with security frameworks such as NIST, CIS, or ISO 27001
- Experience with PowerShell scripting for automation and security tasks
- Understanding of networking concepts, protocols, and security controls
- Preferred Certification - Microsoft Certified: Security Operations Analyst Associate(SC-200)
- Microsoft Certified: Security Administrator Associate(MS-500)
- Microsoft Certified: Azure Security Engineer Associate(AZ-500)
- Other relevant security certifications (CISSP, CompTIA Security+, CEH)
