Microsoft 365 Engineer

Conviso Inc.
United States
9 days ago
Apply on www.clearancejobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Regular working hours

Tech stack

Microsoft Access Microsoft Windows Application Programming Interfaces (APIs) Software as a Service Data Governance Document Management Systems Multi-Factor Authentication Federated Identity Management Identity and Access Management Local Security Policy OAuth OpenID
+12 more
Windows PowerShell Role-Based Access Control Azure Active Directory Zero Trust Network Access Security Assertion Markup Language (SAML) Microsoft SharePoint Security Information and Event Management Enterprise Software Applications Microsoft InTune Information Technology Microsoft Sentinel Splunk

Job description

Conviso Inc is hiring M365 Engineer position. This is a 100% REMOTE set-up position & comes with benefits, 401K & some accrued PTO. The ideal candidate will assist in managing user requests, maintaining cloud and on-prem identity systems, and supporting core M365 services including Entra ID, SharePoint, Access Management & SCuBA Compliance, Exchange Online, Intune., Identity & Access Management (Entra ID)

  • Administer and maintain Microsoft Entra ID (Azure Active Directory), including users, groups, roles, and enterprise applications
  • Implement and manage RBAC, Conditional Access Policies, and MFA enforcement aligned with Zero Trust
  • Support identity lifecycle processes (provisioning, deprovisioning, role changes, and access reviews)
  • Configure and maintain SSO integrations with SaaS and enterprise applications
  • Monitor and respond to identity-related security alerts and risks (Identity Protection, sign-in risk policies)

SharePoint Online Administration

  • Administer and manage SharePoint Online environments, including site collections, permissions, and governance policies
  • Support document management, collaboration workflows, and content lifecycle management
  • Implement data governance and compliance policies (retention labels, DLP, sensitivity labels)
  • Troubleshoot user access issues and optimize SharePoint performance and usability
  • Design and enforce secure collaboration architectures aligned with compliance standards

Access Management & Governance

  • Enforce least privilege access and Zero Trust architecture principles across M365 services
  • Conduct periodic access reviews and entitlement audits to ensure compliance
  • Implement and manage Privileged Identity Management (PIM) for elevated access control
  • Maintain access governance policies, SOPs, and audit artifacts
  • Integrate identity controls with enterprise SIEM/SOC tools (e.g., Splunk, Microsoft Sentinel)

SCuBA Compliance & Security Hardening

  • Implement and maintain Microsoft 365 Secure Configuration Baseline (SCuBA) controls across M365 services
  • Assess tenant configurations against CISA SCuBA baselines and remediate gaps
  • Enforce secure configurations across:
  • Entra ID (identity protection, authentication strength, CA policies)
  • Exchange Online, SharePoint Online, and Teams security settings
  • Develop and maintain SCuBA compliance documentation and audit artifacts
  • Support continuous monitoring and reporting of compliance posture and deviations
  • Partner with cybersecurity teams to ensure alignment with federal mandates and Zero Trust maturity models

Operations & Continuous Improvement

  • Provide Tier 2/3 support for M365-related issues and service requests
  • Develop automation using PowerShell and Microsoft Graph API
  • Monitor system health, usage, and performance across M365 services
  • Identify opportunities for automation, optimization, and cost efficiency
  • Maintain technical documentation, SOPs, and knowledge base articles

Requirements

  • Bachelor’s degree in IT, Computer Science, or related field (or equivalent experience)
  • 3+ years of experience administering Microsoft 365 environments
  • Hands-on experience with:
  • Microsoft Entra ID (Azure AD)
  • SharePoint Online
  • Access Management (RBAC, MFA, Conditional Access)
  • Experience implementing or supporting SCuBA (Secure Configuration Baseline) compliance - Preferred
  • Knowledge of identity federation (SAML, OAuth, OIDC), * Experience supporting federal environments
  • Microsoft certifications such as:
  • Microsoft Certified: Identity and Access Administrator Associate
  • Microsoft 365 Certified: Enterprise Administrator Expert

  • Experience with:
  • Microsoft Defender Suite
  • Microsoft Purview / Compliance Center
  • Microsoft Intune / Endpoint Management
  • Familiarity with hybrid identity (on-prem AD + Entra ID)
  • Experience using compliance assessment tools and automation for baseline enforcement

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

3:46 min

Navigating a career in cloud transformation consulting

Piet Van Dongen · LIVE

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · World Congress 2024

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

Videos

See all

Related articles

See all