The Security Engineer is responsible for establishing, monitoring, and improving the organization’s information security posture. This role will work closely with IT infrastructure teams to secure systems, respond to security incidents, and implement best practices across cloud and on-prem environments. Issue tickets received from the ticketing system will be escalated by the Support Engineer if the issue is related to the skillset and there is no repeatable resolution.
Security Operations
- Monitor and respond to security alerts across Microsoft 365, and other relevant IT platforms
- Investigate suspicious activity and coordinate incident response
- Track and document security events and remediation actions
- Consistently seek to improve the hardening of the organizations security posture
Identity & Access Management
- Maintain and enhance identity provider security controls (M365 Security)
- Conduct periodic access reviews and privilege audit
- Assist with secure onboarding/offboarding processes
- Manage Microsoft Defender (Endpoint, Office 365, Identity)
- Maintain email security platforms
- Enforce endpoint compliance and hardening standards
Vulnerability Management
- Identify, track, and remediate vulnerabilities across systems
- Work with IT team members to ensure timely patching and updates (coordination for server/endpoint and network patches with appropriate SME)
- Perform periodic security assessments
Governance & Compliance
- Assist in the development of security policies and procedures
- Promote security awareness and best practices across the organization
- Coordinating user awareness training
- Documenting processes for standard procedures and implementing standardization
Required Skills & Experience
- Experience and knowledge of Microsoft 365 ecosystem security offerings
- Understanding of identity security providers and how to prevent unauthorized entry
- Knowledge of endpoint security principles
- Familiarity with networking and firewall security concepts
- Experience with email security platforms
- Experience with SIEM, vulnerability scans, and incident response management.
Preferred Qualifications
- Security certifications (Security+, AZ-500)
- 3-5 years of professional experience managing security-related solutions.
- Knowledge of compliance frameworks (PCI-DSS, NIST, CIS)
Senior Security Engineer in nashville at Unknown Company
This position is listed as full time and onsite.