IT Security Administrator
Role details
Job location
Tech stack
Job description
We are looking for a mid-level Security Administrator to join our small, close-knit IT team as its dedicated security expert. This is a hands-on role where you will own security across our Microsoft 365 environment, network perimeter, and endpoints - working directly alongside IT generalists rather than within a separate security function. You will need to be equally comfortable setting security direction and diving into the technical detail yourself., Microsoft 365 Security
- Maintain the email security platform and keep DLP policies and information protection controls current across M365 and other platforms.
- Conduct regular reviews of identity and access configurations in Entra ID, including Conditional Access, PIM, and MFA enforcement.
Network Security
- Configure and manage next-generation firewalls, VPNs, threat prevention profiles, and related controls.
- Ensure the perimeter stays hardened and properly integrated with the identity environment.
XDR & SIEM Platforms
- Own XDR and SIEM platforms end-to-end: deployment, policy configuration, analytic rule authoring, and alert tuning.
- Drive continuous improvement in detection coverage and response quality.
Incident Response
- Lead incident response across the full lifecycle: triage, containment, remediation, and post-incident review.
- Keep management informed throughout incidents with clear, non-technical communication on status and risk.
Requirements
- Three to six years of relevant security or security-adjacent IT experience.
- Hands-on experience securing Microsoft 365 environments, including email security platforms, DLP and information protection policies, and Entra ID configuration (Conditional Access, PIM, MFA enforcement).
- Practical experience with EDR/XDR and SIEM platforms end-to-end: deployment, policy configuration, analytic rule authoring, and alert tuning. CrowdStrike or comparable platform experience required.
- Experience configuring and managing next-generation firewalls, VPNs, and threat prevention profiles. Palo Alto and Strata Cloud experience preferred.
- Ability to learn & lead incident response across the full lifecycle: triage, containment, remediation, and post-incident review - and to communicate status and risk clearly to non-technical stakeholders.
- Working knowledge of Windows and Linux endpoint hardening.
- Familiarity with Zero Trust and SASE architectures, and with GRC frameworks such as NIST CSF
- Understanding of information security principles relevant to financial institutions, including data protection, governance, and NCUA regulatory requirements.
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field - or equivalent hands-on experience.
- Relevant certifications such as CISSP, CISM, PCNSE, Security+, or GSEC are a plus.
- Self-directed, collaborative, and comfortable balancing competing priorities in a small IT team.
- Join us to be at the forefront of cybersecurity innovation! Bring your passion for protecting digital assets while advancing your career in a fast-paced environment committed to excellence in information security management., * Are you authorized to work in the United States without sponsorship? Yes or No
Benefits & conditions
Health insurance, 401(k) matching, Paid time off, Vision insurance, Health savings account, Dental insurance, Flexible spending account, Life insurance, * 401(k) matching
- Dental insurance
- Employee assistance program
- Flexible spending account
- Health insurance
- Health savings account
- Life insurance
- Paid time off
- Vision insurance