> Markdown version of [/jobs/ext/164476-microsoft-security-engineer-200](https://www.wearedevelopers.com/jobs/ext/164476-microsoft-security-engineer-200). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Microsoft Security Engineer (200) - **Company:** WSP - **Location:** United States - **Experience:** Experienced - **Salary:** $122,700.0 - $218,680.0 - **Contract:** Permanent contract - **Skills:** Microsoft Azure, Microsoft Online Services, Cipher, Cyber Security, Identity and Access Management, Issue Tracking Systems, Key Management, Microsoft Security Essentials, Microsoft Servers, Microsoft Solutions Framework, Power BI, Kusto Query Language, Zero Trust Network Access, Security Software, Security Information and Event Management, Systems Integration, Cyberark, Cyber Threat Analysis, Information Technology, Microsoft Sentinel, Network Server, Servicenow - **Published:** May 19, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=fccc65a44fe6d115 ## About the Role We are seeking a highly skilled and advanced technical cybersecurity professional, preferably a Microsoft MVP (Most Valuable Professional) to our Global Security Operations and Engineering team. The successful candidate will lead technical security initiatives, with a particular focus on Microsoft Cloud Security covering the full scope, i.e., to plan (architect), implement (build), and manage the security platforms and tools in use at WSP, especially the SOAR capabilities, including automation for the SOC using Microsoft security tools (Microsoft Sentinel, Defender, etc). An important part of this role would be to coach and build the overall knowledge and capabilities within the team. And so, naturally, the incumbent would be an integral member of the team and would also get some good insight into other technology platforms, e.g. AD auditing solutions, PAM, our Threat Intelligence platforms etc. This position can be located at any WSP USA office location. Candidates MUST have: * Demonstrable, current, and verifiable technical skills with the Microsoft security tools, especially MS Sentinel, Defender, LogicApp. * Robust experiences with EntraID, AD, e.g., and creating and managing complex role creations, assignments and permissions * Experiences with Purview. * A proven, recent, and verifiable track record in improving and maturity existing security implementations and configurations in the Microsoft Cloud landscape * Substantial expertise implementing SIEM/ SOAR automations, developing and finetuning the SIEM detection rules to reduce manual efforts, including SIEM log ingestion, connector options, and cost analysis for current and future needs * Solid current experiences in securing the attack landscape in a Microsoft environment, and hardening the existing systems in the enterprise hybrid landscape (end-user devices, servers, etc); skills and experiences with other vendors and services would be an added advantage * Substantial expertise about the overall security landscape, including Threat and Vulnerability Management, and the ability to guide on their remediation. * Deep knowledge of EntraID, including identity protection, conditional access, zero trust architecture and advanced threat detection * Cyber professional at heart, tracking and mitigating emerging cyber threats against the company (e.g. zero-day exploits, APTs etc). * Experiences with other concepts and systems like Privileged Account Management, Key Management (certificates, keys, ciphers, etc.). * Ability to lead security systems integration, e.g., defining the architecture to work with ticketing systems, e.g. integrating Defender to create-manage the tickets and communications in ServiceNow * Knowledge of extracting relevant data, creating security reports etc. would be a definite advantage.Solid abilities to lead and plan the architecture, deliveries, and even more importantly coach and teach other members of the technical team to high levels of technology excellence, * Previous experiences in security tools and systems administration, including experience as a security administrator for security platforms * Knowledge and experience in SIEM and Microsoft platforms (Microsoft Azure ecosystems), other vendor security systems are good experiences as well (e.g. CyberArk, Akeyless) * Good knowledge of EDR systems e.g. MS Defender, KQL etc. (or alternatively the willingness to learn them) * Planned and meticulous approach to deliveries. * Knowledge and/or willingness to learn about advanced security capabilities, including integrations with other systems * 10+ years of related experience with at least 4+ years of specialization in information technology roles, and security experiences with Microsoft solutions. * Bachelor's degree or equivalent in Information Technology, Computer Science, Engineering, data sciences, or related fieldStrong analytical skills with a keen eye for detail and accuracy. Preferred Master's degree in information technology, Computer Science, Engineering, data sciences, or related field ## Description * Work with a globally distributed team, taking inputs from the business, SOC, and management to roll out systems and troubleshoot (Tier-3) support for security issues * Lead-guide the local Service Desk/ OSS teams with knowledge bases to resolve tickets at first instance for issues relating to security software and configurations * Develop the automation (including playbooks, SOAR), scripts to monitor system-health, as well as management the SOC tools in use * Extract data from systems and build reports for management; PowerBI skills would be an advantage * Knowledge transfer and sharing * Monitor and respond to feedback from the customers (employees and business stakeholders) * Bring a problem-solving and solutions-mindset, coordinate with the IT teams as needed * Finance/Budgetary Responsibilities * Provide feedback on tooling and identify additional needs * Plan for expanse of security tools to cover ongoing needsEvaluation of license usage and potential growth ## Related Videos - [Beyond Dashboards: Fixing Text-to-SQL with Semantic RAG](https://www.wearedevelopers.com/videos/2036-beyond-dashboards-fixing-text-to-sql-with-semantic-rag) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [REST, GraphQL, gRPC, and more: A comparison of modern API styles](https://www.wearedevelopers.com/videos/100247-rest-graphql-grpc-and-more-a-comparison-of-modern-api-styles) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Data Analytics with Microsoft Fabric: End-to-End Use Case with Data Agents](https://www.wearedevelopers.com/videos/1547-data-analytics-with-microsoft-fabric-end-to-end-use-case-with-data-agents) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers)