Senior Information Security Engineer

The University of Tulsa
Tulsa, OK, United States
26 days ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Systems Engineering Cloud Computing Cyber Security Identity and Access Management Microsoft Security Essentials PCI Data Security Standards Windows PowerShell Azure Active Directory Scripting Enterprise Software Applications Software Security
+3 more
Microsoft InTune Information Technology CIS Benchmarks

Job description

The Senior Information Security Engineer serves as an advanced technical resource responsible for the implementation, administration, and continuous improvement of enterprise security technologies. This role leads technical security initiatives with a primary focus on Microsoft 365 security platforms, while also supporting the security and configuration of on-premises enterprise applications.

The position operates with a high degree of independence, providing technical leadership, mentoring peers, and partnering across IT and business units to ensure secure, complaint, and resilient systems., 1. Security Engineering (Cloud - Primary Responsibility)

  • Administer and optimize Microsoft security platforms, including Defender, Purview, and Intune
  • Configure and maintain security controls within Microsoft 365 and Entra ID (Azure AD)
  • Lead implementation of security tools, policies, and automation
  • Strengthening endpoint security, identity protection, and data-loss prevention capabilities
  • Partner with Security Operations to support monitoring, detection, and incident response
  1. Enterprise Application & On-Prem Security * Secure and support enterprise applications (e.g., Ellucian Colleague, Informer) * Perform secure installation, configuration, patching, and upgrades * Implement role-based access controls and least privilege models * Conduct application security reviews and system hardening

  2. Technical Leadership * Lead security-related projects and major system implementations * Provide guidance on secure design and architecture decisions * Develop and maintain security standards, procedures, and baselines * Mentor junior staff and provide subject matter expertise

  3. Risk, Compliance, and Governance * Support institutional compliance efforts (FERPA, GLBA, PCI-DSS as applicable) * Conduct risk assessments and recommend remediation strategies * Identify control gaps and drive continuous improvement * Participate in incident response as a senior technical contributor

Requirements

  • Bachelor’s degree in information technology, Cybersecurity, or related field (or equivalent combination of education and experience)
  • 5-7 years of progressive experience in information security, systems engineering, or related field
  • Hands-on experience with Microsoft 365 security technologies (Defender, Purview, Intune)
  • Experience securing enterprise systems and applications
  • Knowledge of identity and access management, endpoint security, and data protection principles
  • Demonstrated experience leading technical projects or implementations, * Experience in higher education or similarly complex environments
  • Familiarity with Ellucian Colleague, Informer, or comparable ERP systems
  • Experience with scripting/automation (PowerShell)
  • Knowledge of security frameworks (NIST, CIS Controls, ISO 27001)
  • Relevant certifications:
  • Microsoft (SC-200, SC-300, SC-400)
  • CISSP, CISM, or equivalent, * Advanced technical troubleshooting and analytical skills
  • Ability to lead initiatives without formal supervisory authority
  • Strong collaboration and communication skills across technical and non-technical teams
  • Ability to translate security risks into actionable recommendations

Reporting Relationship

  • Reports to: Chief Information Security Officer (CISO)
  • Supervisory Responsibility: None, * Primarily office or hybrid work environment
  • May require occasional after-hours support for incidents or system changes

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:15 min

Auditing container configurations against CIS benchmark security standards

Madhu Akula · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

3:39 min

Validating data queries and infrastructure security configurations

Philipp Krenn · World Congress 2023

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all