Senior Cybersecurity Engineer: Commonwealth Holdings, Inc.
Role details
Job location
Tech stack
Job description
The Senior Cybersecurity Engineer is responsible for designing, implementing, and managing enterprise security solutions with a primary focus on the Microsoft security ecosystem, including Microsoft Defender, Microsoft Sentinel, Microsoft Purview, and Microsoft Entra, Microsoft Security Copilot.
This role serves as a senior technical leader in cybersecurity operations, threat detection, identity security, and data protection, while also supporting broader IT infrastructure and end-user support initiatives as needed. The ideal candidate combines deep technical expertise with a practical, hands-on approach to operational support in a fast-paced environment.
Primary Responsibilities:
- Lead the deployment, configuration, and optimization of:
- Microsoft Defender (Endpoint, Identity, Office 365, Cloud Apps)
- Microsoft Sentinel (SIEM/SOAR)
- Microsoft Purview (Data Governance, Compliance, DLP, Insider Risk)
- Microsoft Entra (Identity, Conditional Access, Privileged Identity Management)
- Microsoft Security Copilot
- Microsoft Agent 365
- Design and maintain security architecture aligned with Zero Trust principles
- Develop and tune detection rules, analytics, and automated response playbooks in Sentinel
- Monitor and respond to alerts, incidents, and threats across Microsoft security platforms
- Lead incident response activities including triage, investigation, containment, and remediation
- Conduct threat hunting and proactive risk identification
- Maintain and improve incident response plans and procedures
- Analyze Indicators of Compromise (IOCs) and emerging threat intelligence
- Manage identity lifecycle, governance, and access controls within Microsoft Entra ID
- Implement Conditional Access, MFA, and privileged access strategies
- Support passwordless and phishing-resistant authentication strategies (e.g., FIDO2)
- Implement and maintain Data Loss Prevention (DLP), retention, and compliance policies using Purview
- Support regulatory and compliance initiatives (e.g., NIST, CIS, ISO, CMMC as applicable)
- Perform data classification and protection strategy development
- Conduct vulnerability assessments and coordinate remediation efforts
- Manage endpoint and cloud security posture using Defender tools
- Provide risk reporting and security metrics to leadership
- Provide tier 2/3 support for security-related issues across infrastructure and end-user environments
- Assist IT team with:
- Endpoint management (Intune, device security)
- Microsoft 365 administration
- Microsoft Entra Identity and network security (ID, AD, PIM, PAM, FIDO)
- Manage 3rd party security vendors (Microsoft, 24/7 SOC)
- Document security processes
- Respond to security audits
- Act as escalation point for complex IT and security issues
- Evaluate and implement new security technologies and best practices
- Partner with internal stakeholders to align security with business objectives
- Contribute to long-term cybersecurity roadmap and strategy
Requirements
Do you have experience in Zero Trust security?, * Deep hands-on experience with: *
- Microsoft Defender suite
- Microsoft Sentinel (SIEM/SOAR operations)
- Microsoft Entra ID (identity and access management)
- Microsoft Purview (compliance and data governance)
- Strong understanding of:
- Zero Trust architecture
- Cloud security (Azure/Microsoft 365)
- Identity and access management best practices
- Network Security and firewalls
- Experience with incident response and threat hunting
- Familiarity with regulatory frameworks (NIST, CIS, ISO, CMMC, etc.)
Preferred Qualifications:
- Microsoft certifications (highly preferred):
- SC-200 (Security Operations Analyst)
- SC-300 (Identity and Access Administrator)
- SC-400 (Information Protection Administrator)
- AZ-500 (Azure Security Engineer)
- Experience in construction, field-based, or multi-site environments (nice-to-have)
- Knowledge of endpoint management via Microsoft Intune
- Experience integrating security tools with ERP or business systems
Education and Experience:
- 5-10+ years of experience in cybersecurity, with at least 3+ years in a senior or lead roll