Senior Information Security Engineer
Role details
Job location
Tech stack
Job description
ANDMORE is seeking a Senior Information Security Engineer which is a senior, hands-on security engineering leader responsible for translating CISO strategy into secure architecture, operational controls, automation, and measurable risk reduction. This role drives engineering outcomes across Microsoft security platforms, identity, cloud/network security, data protection, AI security, vulnerability management, detection, and incident response. This position partners cross-functionally with Infrastructure, IT Operations, Legal, HR, Finance, Compliance, business leaders, and external providers. What You'll Do Security Architecture & Engineering
- Translate risk priorities into architectures, standards, reference implementations, and control designs
- Design and implement controls across Microsoft 365, Azure, Entra ID, endpoints, networks, SaaS, and cloud
- Conduct architecture reviews and document risks, mitigations, and exceptions
Microsoft Purview, Data Protection & DLP
- Lead implementation and optimization of Purview (sensitivity labels, DLP, governance)
- Partner with cross-functional stakeholders to enforce data handling controls
- Manage rollout, testing, tuning, and effectiveness of data protection policies
AI Security, Copilot & Agent Governance
- Serve as technical lead for AI security (Copilot, agents, integrations)
- Design safeguards for identity, data exposure, prompt injection, and monitoring
- Evaluate AI use cases and define security controls pre-deployment
Identity, Access & Entra ID Security
- Engineer identity controls including MFA, conditional access, PIM, and governance
- Reduce privileged access risks and improve monitoring
- Strengthen lifecycle and access governance processes
Security Operations, Detection & Incident Response
- Own MSSP SOC relationship and improve monitoring and response capabilities
- Enhance detection quality across endpoints, identities, and cloud environments
- Lead incident response support and post-incident improvements
Vulnerability Management & Security Hardening
- Oversee vulnerability lifecycle (discovery, prioritization, remediation, reporting)
- Apply risk-based prioritization using threat intelligence and asset criticality
- Partner with technical teams to improve configurations and remediation timelines
Cloud, Network & Platform Security
- Lead Azure security engineering and establish secure baselines
- Evaluate new technologies and vendors for risk and compliance
- Strengthen network segmentation, remote access, and monitoring
Automation, Governance & Cross-Functional Support
- Build automation using PowerShell, Python, Microsoft Graph, and Logic Apps
- Develop repeatable processes for audits, reporting, and control validation
- Mentor teams and communicate technical concepts to executive audiences
Requirements
- 7+ years in information security engineering, cloud security, or cybersecurity roles
- Deep expertise in Microsoft security stack (Sentinel, Defender, Entra ID, Purview, Azure)
- Experience with vulnerability management and risk-based prioritization
- Strong background in SOC/MSSP operations and incident response
- Knowledge of Azure security, identity governance, and compliance frameworks
- Experience with data protection tools (e.g., Purview DLP, labeling)
- Familiarity with AI security concepts and tools (e.g., Copilot environments)
- Understanding of NIST, ISO 27001, CIS Controls, and MITRE ATT&CK
- Scripting experience (PowerShell and/or Python)
Competencies
- Security architecture and engineering leadership
- Microsoft security platform expertise
- AI, identity, and data protection governance
- Risk-based decision-making
- Automation and operational excellence
- Strong executive communication and cross-functional collaboration
Benefits & conditions
Work Environment
- Hybrid role (Monday & Friday, Remote with Tuesday through Thursday in office)
- Required flexibility (active markets/events)
Why Join ANDMORE
- Exposure to a dynamic, high-growth wholesale and events industry
- Opportunity to develop sales skills and grow within the organization
- Collaborative and entrepreneurial team environment
- Hybrid flexibility with a strong connection to our Atlanta campus or Las Vegas Campus dependent on location
About ANDMORE® ANDMORE® is a Blackstone and Fireside Investments portfolio company. We create connection opportunities for the wholesale home, gift, and lifestyle industries through physical markets, design centers, and digital channels.