> Markdown version of [/jobs/ext/3087182-microsoft-security-engineer](https://www.wearedevelopers.com/jobs/ext/3087182-microsoft-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Microsoft Security Engineer - **Company:** Edgewater Federal Solutions - **Location:** Ballenger Creek, MD, United States (Remote available) - **Experience:** Experienced - **Salary:** $90,000.0 - $100,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Microsoft Azure, Bash Shell, Microsoft Online Services, Cloud Computing, Cloud Computing Security, CompTIA Security+, Cyber Security, Information Leak Prevention, Domainkeys Identified Mail, Domain-Based Message Authentication Reporting and Conformance (DMARC), Multi-Factor Authentication, Identity and Access Management, Python (Programming Language), Microsoft Security Essentials, Microsoft Office, Windows PowerShell, Azure Active Directory, Phishing, Kusto Query Language, Microsoft SharePoint, Software Vulnerability Management, Microsoft Power Automate, Azure Security Center, Microsoft Onedrive, Sender Policy Framework (SPF), Microsoft Fabric, Information Technology, Microsoft Sentinel, Security Orchestration, Automation & Response - **Published:** September 26, 2026 - **Apply:** https://diversityjobs.com/main/sendform/8/8/28176/1/18393519?backUrl=%2Fcareer%2F18393519%2FMicrosoft-Security-Engineer-Maryland-Frederick ## About the Role * Bachelor's degree in Cybersecurity, Information Technology, Computer Science, a related field, or equivalent practical experience. * Three or more years of cybersecurity, information security, systems administration, or security operations experience. * Hands-on experience administering security controls in Microsoft 365, Microsoft Entra ID, or Microsoft Azure. * Experience investigating alerts in Microsoft Defender and/or Microsoft Sentinel. * Working knowledge of Conditional Access, multifactor authentication, endpoint protection, email security, and identity security concepts. * Familiarity with vulnerability management, incident response, security monitoring, and cloud security practices. * Working knowledge of PowerShell and basic Kusto Query Language. * Ability to follow established standards, document work clearly, recognize when escalation is required, and manage multiple priorities. * Strong analytical, troubleshooting, communication, customer service, and collaboration skills., * Microsoft Certified: Security Operations Analyst Associate (SC-200). * Microsoft Certified: Identity and Access Administrator Associate (SC-300). * Microsoft Certified: Azure Security Engineer Associate (AZ-500). * CompTIA Security+ or a comparable foundational security certification. * Experience with Microsoft Defender for Endpoint, Defender for Office 365, Microsoft Purview, Logic Apps, or security automation. * Experience supporting audit evidence collection or regulatory compliance activities. Technical Skills * Microsoft Security Platforms * Microsoft Sentinel * Microsoft Defender XDR * Microsoft Defender for Endpoint * Microsoft Defender for Office 365 * Microsoft Defender for Identity * Microsoft Entra ID * Microsoft Purview Identity, Cloud, and Security Operations * Conditional Access and multifactor authentication * Microsoft Azure and Microsoft 365 * Identity Protection and Privileged Identity Management * Incident investigation and security monitoring * Vulnerability remediation coordination * Data Loss Prevention and information protection Scripting and Automation * PowerShell * Kusto Query Language * Logic Apps * Familiarity with Python or Bash is beneficial but not required, Intermediate. This role is designed for a technically capable security professional who can independently perform assigned operational work while receiving strategic direction, architectural guidance, and final decision-making support from the Director of IT. ## Description The Microsoft Security Engineer supports the organization's cybersecurity operations through the administration, monitoring, and maintenance of Microsoft security technologies. Working under the direction of the Director of IT, this role assists with identity security, security monitoring, vulnerability remediation, incident response, and security compliance initiatives across Microsoft 365, Microsoft Azure, Microsoft Entra ID, and hybrid environments. This is a hands-on operational role. The position helps implement and maintain established security controls, investigates and escalates security events, documents procedures, and collaborates with IT teams to reduce risk. Security strategy, architecture, program governance, risk acceptance, and final policy decisions remain with the Director of IT and other designated leadership stakeholders. The ideal candidate can work remotely but may be needed on-site at the Frederick MD or Reston VA offices for special operations. Candidates that live in the MD/DC/VA area are strongly preferred. Responsibilities Identity and Access Security Administer Microsoft Entra ID security controls in accordance with approved standards and direction. * Support implementation and ongoing maintenance of Conditional Access policies. * Assist with multifactor authentication, passwordless authentication, authentication methods, and Identity Protection investigations. * Support Privileged Identity Management, access reviews, and least-privilege access practices. * Escalate identity risks, policy exceptions, and proposed design changes to the Director of IT. Microsoft 365 and Endpoint Security * Administer and maintain Microsoft Defender for Endpoint, Defender for Office 365, Defender for Identity, and applicable Microsoft Defender XDR capabilities. * Monitor endpoint, email, identity, and cloud security alerts and perform initial investigation and response. * Maintain approved email security controls, including anti-phishing policies, Safe Links, Safe Attachments, SPF, DKIM, and DMARC. * Support security controls for Microsoft Teams, SharePoint Online, OneDrive, and other Microsoft 365 services. * implement approved Microsoft Secure Score and security posture recommendations and document completed improvements. Security Monitoring and Incident Support * Monitor, analyze, and respond to security alerts and incidents using Microsoft Sentinel, Microsoft Defender, and related security tools. * Maintain Sentinel data connectors, analytics rules, workbooks, dashboards, incident workflows, and approved automation. * Perform initial root-cause analysis, document findings, and coordinate assigned remediation activities. * Escalate significant or complex incidents in accordance with approved incident response procedures. * Assist the Director of IT and external specialists during major incidents, forensic investigations, and post-incident reviews. Vulnerability Management and Remediation Review vulnerability findings and Microsoft security recommendations. * Coordinate assigned remediation activities with infrastructure, cloud, network, application, and endpoint owners. * Validate remediation where practical and maintain status documentation and supporting evidence. * Support implementation of approved security baselines and hardening standards. * Escalate overdue, high-risk, or exception requests to the Director of IT for prioritization and risk decisions. Governance, Compliance, and Documentation * Assist with Microsoft Purview and other approved data protection controls, including Data Loss Prevention, sensitivity labels, information protection, and retention capabilities. * Support audits, compliance reviews, and risk assessments by collecting evidence and maintaining documentation. * Develop and maintain security procedures, configuration records, operational runbooks, and incident response documentation. * Assist with security awareness initiatives and provide technical guidance to internal IT teams within established standards. Automation and Continuous Improvement * Use PowerShell, Kusto Query Language, Logic Apps, or similar tools to improve repeatable security administration and reporting. * Recommend operational improvements and assist with approved implementation. * Stay current with Microsoft security technologies, emerging threats, vulnerabilities, and relevant industry practices., * Consistently administers Microsoft security technologies in accordance with approved standards. * Investigates alerts promptly, documents findings clearly, and escalates significant issues appropriately. * Completes assigned vulnerability and posture-improvement work and maintains reliable status information. * Builds effective working relationships across IT and balances security requirements with operational needs. * Demonstrates sound judgment, attention to detail, accountability, and a commitment to continuous learning. * Identifies practical automation and process improvements without assuming unassigned program or strategic ownership., * Possess the ability to fulfill any and all office activities normally expected in an office setting, to include, but not limited to: remaining seated for periods of time to perform computer entry, participating in filing activity, lifting and carrying office supplies. * The employee must occasionally lift and/or move up to fifteen (15) pounds. * Fine hand manipulation (keyboarding). Work Environment: The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. * May work prolonged or irregular hours. * The noise level in the work environment is usually moderate. * Exposure to general office conditions while conducting office duties. ## Related Videos - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Old tools, new tricks](https://www.wearedevelopers.com/videos/1916-old-tools-new-tricks) - [Passkeys: Truly Phishing-Resistant? Implementation and Pitfalls](https://www.wearedevelopers.com/videos/100156-passkeys-truly-phishing-resistant-implementation-and-pitfalls) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Skynet wants your Passwords! The Role of AI in Automating Social Engineering](https://www.wearedevelopers.com/videos/770-skynet-wants-your-passwords-the-role-of-ai-in-automating-social-engineering) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)