> Markdown version of [/jobs/ext/2267103-microsoft-365-engineer](https://www.wearedevelopers.com/jobs/ext/2267103-microsoft-365-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Microsoft 365 Engineer - **Company:** Conviso Inc. - **Location:** United States (Remote available) - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Microsoft Access, Microsoft Windows, Application Programming Interfaces (APIs), Software as a Service, Data Governance, Document Management Systems, Multi-Factor Authentication, Federated Identity Management, Identity and Access Management, Local Security Policy, OAuth, OpenID, Windows PowerShell, Role-Based Access Control, Azure Active Directory, Zero Trust Network Access, Security Assertion Markup Language (SAML), Microsoft SharePoint, Security Information and Event Management, Enterprise Software Applications, Microsoft InTune, Information Technology, Microsoft Sentinel, Splunk - **Published:** August 27, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9119576/microsoft-365-engineer ## About the Role * Bachelor's degree in IT, Computer Science, or related field (or equivalent experience) * 3+ years of experience administering Microsoft 365 environments * Hands-on experience with: * Microsoft Entra ID (Azure AD) * SharePoint Online * Access Management (RBAC, MFA, Conditional Access) * Experience implementing or supporting SCuBA (Secure Configuration Baseline) compliance - Preferred * Knowledge of identity federation (SAML, OAuth, OIDC), * Experience supporting federal environments * Microsoft certifications such as: * Microsoft Certified: Identity and Access Administrator Associate * Microsoft 365 Certified: Enterprise Administrator Expert * Experience with: * Microsoft Defender Suite * Microsoft Purview / Compliance Center * Microsoft Intune / Endpoint Management * Familiarity with hybrid identity (on-prem AD + Entra ID) * Experience using compliance assessment tools and automation for baseline enforcement ## Description Conviso Inc is hiring M365 Engineer position. This is a 100% REMOTE set-up position & comes with benefits, 401K & some accrued PTO. The ideal candidate will assist in managing user requests, maintaining cloud and on-prem identity systems, and supporting core M365 services including Entra ID, SharePoint, Access Management & SCuBA Compliance, Exchange Online, Intune., Identity & Access Management (Entra ID) * Administer and maintain Microsoft Entra ID (Azure Active Directory), including users, groups, roles, and enterprise applications * Implement and manage RBAC, Conditional Access Policies, and MFA enforcement aligned with Zero Trust * Support identity lifecycle processes (provisioning, deprovisioning, role changes, and access reviews) * Configure and maintain SSO integrations with SaaS and enterprise applications * Monitor and respond to identity-related security alerts and risks (Identity Protection, sign-in risk policies) SharePoint Online Administration * Administer and manage SharePoint Online environments, including site collections, permissions, and governance policies * Support document management, collaboration workflows, and content lifecycle management * Implement data governance and compliance policies (retention labels, DLP, sensitivity labels) * Troubleshoot user access issues and optimize SharePoint performance and usability * Design and enforce secure collaboration architectures aligned with compliance standards Access Management & Governance * Enforce least privilege access and Zero Trust architecture principles across M365 services * Conduct periodic access reviews and entitlement audits to ensure compliance * Implement and manage Privileged Identity Management (PIM) for elevated access control * Maintain access governance policies, SOPs, and audit artifacts * Integrate identity controls with enterprise SIEM/SOC tools (e.g., Splunk, Microsoft Sentinel) SCuBA Compliance & Security Hardening * Implement and maintain Microsoft 365 Secure Configuration Baseline (SCuBA) controls across M365 services * Assess tenant configurations against CISA SCuBA baselines and remediate gaps * Enforce secure configurations across: * Entra ID (identity protection, authentication strength, CA policies) * Exchange Online, SharePoint Online, and Teams security settings * Develop and maintain SCuBA compliance documentation and audit artifacts * Support continuous monitoring and reporting of compliance posture and deviations * Partner with cybersecurity teams to ensure alignment with federal mandates and Zero Trust maturity models Operations & Continuous Improvement * Provide Tier 2/3 support for M365-related issues and service requests * Develop automation using PowerShell and Microsoft Graph API * Monitor system health, usage, and performance across M365 services * Identify opportunities for automation, optimization, and cost efficiency * Maintain technical documentation, SOPs, and knowledge base articles ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Develop enterprise-ready applications for Microsoft Teams with Azure resources on modern web technologies](https://www.wearedevelopers.com/videos/187-develop-enterprise-ready-applications-for-microsoft-teams-with-azure-resources-on-modern-web-technologies) - [Get started with securing your cloud-native Java microservices applications](https://www.wearedevelopers.com/videos/123-get-started-with-securing-your-cloud-native-java-microservices-applications) - [Delegating the chores of authenticating users to Keycloak](https://www.wearedevelopers.com/videos/1558-delegating-the-chores-of-authenticating-users-to-keycloak) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 176: Expensive Agents, Taking Over VSCode and Safer Vibe Coding](https://www.wearedevelopers.com/magazine/603-dev-digest-176-expensive-agents-taking-over-vscode-and-safer-vibe-coding) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents)