> Markdown version of [/jobs/ext/1179697-systems-security-engineer](https://www.wearedevelopers.com/jobs/ext/1179697-systems-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Systems Security Engineer - **Company:** Impact Networking, LLC. - **Location:** Lake Forest, IL, United States - **Experience:** Experienced - **Salary:** $90,000.0 - $110,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Artificial Intelligence, Microsoft Azure, Software as a Service, Cloud Computing, Cyber Security, Data Governance, Information Leak Prevention, Data Security, Information Lifecycle Management, Information Security Management, Log Analysis, Microsoft Security Essentials, SQL Azure, Windows PowerShell, Azure Active Directory, Kusto Query Language, Zero Trust Network Access, Microsoft SharePoint, Technical Data Management Systems, Scripting, Data Classification, Cloud Monitoring, Microsoft Onedrive, Information Technology, Hardware Infrastructure - **Published:** July 4, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=e2c5baa257268937 ## About the Role * Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent work experience. * Minimum of 5 years of experience in information security, including at least 3 years focused on data protection, data governance, or information lifecycle management. * Deep hands-on experience with the Microsoft Purview suite, including DLP, Microsoft Information Protection, data classification, Insider Risk Management, eDiscovery, Audit, and Compliance Manager. * Strong experience with Microsoft Entra ID and the Microsoft Azure ecosystem, including securing data within Azure services such as Azure Storage and Azure SQL. * Proficiency with scripting languages, particularly PowerShell, for automating security and compliance tasks. * Strong understanding of data privacy regulations and compliance frameworks, including NIST 800-171, CMMC, ISO 27001, HIPAA, GDPR, and CCPA. * Excellent analytical, problem-solving, communication, and collaboration skills, including the ability to explain complex technical concepts to technical and non-technical audiences. * Microsoft SC-400 certification strongly preferred; AZ-500, SC-200, SC-300, MS-102, CISSP, CCSP, or CCSK are a plus. * Experience with Microsoft Defender for Microsoft 365, Zero Trust security architecture, Microsoft Purview Data Security Posture Management, AI/Copilot data governance, or MSP/multi-tenant environments preferred. ## Description Impact is seeking a Systems Security Engineer to own the governance of systems and data across our environment for security purposes. This role centers on the Microsoft security and compliance ecosystem, including Microsoft Purview, Microsoft Entra ID, and Microsoft Defender, to discover, classify, protect, and govern Impact's most critical information and systems across a hybrid environment. This is a hands-on engineering role for a subject-matter expert who can translate security, regulatory, and contractual requirements into enforceable technical controls and measure success through incidents avoided, audits passed, and risk reduced. Responsibilities * Design, implement, and manage a comprehensive governance strategy across Impact's environment using Microsoft Purview governance and compliance tools. * Develop and enforce governance policies to discover, classify, and protect sensitive data and systems across Microsoft 365, Azure, on-premises infrastructure, and SaaS applications. * Manage sensitivity labels, retention labels, records management, and disposition review to support the full information lifecycle. * Create, tune, and monitor Data Loss Prevention policies across endpoints, email, Microsoft Teams, SharePoint, OneDrive, and cloud applications. * Govern identity and access using Microsoft Entra ID, aligning policies to Zero Trust architecture and least-privilege principles. * Serve as a subject-matter expert for data- and system-related security incidents using Microsoft Purview and Microsoft Defender for investigation, forensics, and response. * Participate in the security team's on-call rotation and respond to critical incidents outside of regular business hours when needed. * Configure Microsoft Purview Audit, audit-log retention, export pipelines, Azure Monitor, Log Analytics, KQL workbooks, and alert rules to monitor compliance and policy drift. * Translate regulatory and contractual requirements, including CMMC, NIST 800-171, ISO 27001, HIPAA, GDPR, and CCPA, into technical policies and controls in partnership with compliance, legal, and business stakeholders. * Manage Microsoft Compliance Manager assessments and improvement-action plans, and provide regular reporting on compliance, risk posture, and policy enforcement to leadership. * Maintain technical documentation, architecture standards, and operational runbooks for governance and security controls. * Coach and mentor IT and security team members on governance, data protection, and Microsoft security best practices., Candidates must be authorized to work in the United States at the time of application. Immigration sponsorship may be considered in select cases based on business need, cost, workforce planning, and applicable government requirements. Impact does not guarantee sponsorship for any visa category and may decline certain petitions based on associated costs or regulatory requirements. Certain positions within Impact may involve access to information, technology, software, or technical data that is subject to U.S. export control laws and regulations, including the International Traffic in Arms Regulations (ITAR) and the Export Administration Regulations (EAR). Where required by applicable law based on the nature of the role, individuals in such positions must qualify as a "U.S. Person," as defined by law, or otherwise be eligible to obtain any required government authorizations. ## Related Videos - [Hacking MSSQL on Cloud. All of them. How I became sysadmin on Azure, AWS, GCP and Alibaba.](https://www.wearedevelopers.com/videos/100339-hacking-mssql-on-cloud-all-of-them-how-i-became-sysadmin-on-azure-aws-gcp-and-alibaba) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Progressive Delivery in Kubernetes](https://www.wearedevelopers.com/videos/949-progressive-delivery-in-kubernetes) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [Automated MS SQL Server database deployments with dacpacs and Azure DevOps](https://www.wearedevelopers.com/videos/334-automated-ms-sql-server-database-deployments-with-dacpacs-and-azure-devops) - [Azure-Well Architected Framework - designing mission critical workloads in practice](https://www.wearedevelopers.com/videos/1529-azure-well-architected-framework-designing-mission-critical-workloads-in-practice) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)