Microsoft Security Engineer focusing on technical execution in Microsoft's security ecosystem. Implementing cloud security and data governance solutions within Azure and related services.
Responsibilities
Deploy, configure, and maintain core Microsoft security technologies, including Azure Networking Security components (Azure Firewall, NSGs, Azure WAF) and Entra ID services (Conditional Access, PIM, Entra Private Access).
Execute the onboarding and fine-tuning of the Microsoft Defender suite (e.g., Defender for Endpoint, Defender for Cloud, Defender for Office 365) across customer environments.
Implement and manage Microsoft Sentinel for security information and event management (SIEM), including connector deployment, playbook automation, and custom rule creation.
Implement and configure Microsoft Purview capabilities, including Data Loss Prevention (DLP) policies, Information Protection (sensitivity labels, encryption), and records management features.
Configure eDiscovery, communication compliance, and audit log settings within Purview to meet regulatory and data protection requirements (e.g., GDPR, ISO 27001).
Define and apply data classification schemes and retention policies across various data sources using Purview tools.
Implement and manage Microsoft Intune policies for endpoint security, compliance, and device configuration.
Configure advanced Identity and Access Management (IAM) solutions within Entra ID, focusing on least privilege principles and identity governance.
Perform security hardening and ensure operational compliance through the implementation of Azure Policy, and resource locks.
Produce clear, detailed, and up-to-date technical runbooks, configuration guides, and "as-built" documentation for all implemented security and compliance solutions.
Requirements
Deep, hands-on experience with the deployment and configuration of Microsoft Azure security services (Azure Policy, Network Security, Key Vault) and E5 Security.
Expert proficiency in configuring and managing Entra ID (formerly Azure AD), including advanced features like Conditional Access Policies, PIM, MFA, and SSO integrations.
Proven implementation experience with the Microsoft Defender Suite and Microsoft Sentinel.
Practical hands-on experience implementing Microsoft Purview, specifically configuring DLP policies, sensitivity labeling, and retention labels.
Strong practical knowledge of managing security controls for Windows and mobile endpoints using Microsoft Intune.
Excellent ability to follow detailed technical implementation plans and execute tasks efficiently.
Strong troubleshooting and analytical skills to diagnose and resolve complex technical security and compliance issues.
Meticulous attention to detail in technical configuration and "as-built" documentation.
Current Microsoft certifications such as AZ-500 (Azure Security Engineer Associate), SC-200 (Microsoft Security Operations Analyst), or SC-400 (Microsoft Information Protection Administrator).
Practical experience applying security and compliance frameworks such as ISO 27001 or NIST during implementation.
Familiarity with automation and scripting tools (e.g., PowerShell, Azure CLI, ARM/Bicep templates) to streamline deployments.
Senior Security Engineer at PagBank ensuring secure network and application exposure strategies. Leading technical initiatives in firewalls, WAF/CDN, and advanced troubleshooting.
Technology and Cybersecurity Director leading the commercialization of cybersecurity consulting services at Emergent. Bridging technical teams and sales organizations to drive pipeline and revenue growth.
Engineer managing and supervising the Safety team at Localiza&Co in São Paulo. Overseeing safety policies and ensuring compliance with health and safety standards.
Technical Leader at VISION Cybersecurity overseeing SOC operations and guiding security investigations. Responsible for improving detection mechanisms and collaboration with security engineering teams.
Network Security Analyst configuring and maintaining Firewall solutions at Vision Cybersecurity. Collaborating with teams to manage security incidents and protect network integrity.
Security & Compliance Manager leading Tagup’s security and compliance efforts in defense technology. Engaging in national security initiatives and driving compliance with federal standards.
Security Researcher specializing in Windows and macOS threat detection for an AI - powered security platform. Conducting research and developing detections for threats, malware, and vulnerabilities.
Information Security Specialist responsible for ISMS lifecycle tasks at ALDI. Collaborating with stakeholders on risk assessment and treatment activities while ensuring effective governance.
Information Security Specialist supporting operational execution of ISMS lifecycle tasks in Budapest. Collaborating with stakeholders for risk assessment and management activities.
Client Security Manager at Atos delivering security requirements for clients and supporting Information Security strategies. Engaging with client security organizations and managing security incidents and compliance.