Senior Microsoft Cloud Security Engineer

CACI International Inc.
Arlington, VA, United States
26 days ago
Apply on www.techcareers.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Compensation
$131,800.0 - $290,000.0
Working hours
Regular working hours

Tech stack

Microsoft Windows Agile Methodology Software System Penetration Testing Microsoft Azure Microsoft Online Services Cloud Computing Cloud Computing Security CompTIA Security+ Cyber Security Data Loss Virtual Private Networks (VPN) Log Analysis
+17 more
Microsoft Office Azure Active Directory Cloud Services Kusto Query Language Zero Trust Network Access SAP Sales and Distribution Wide Area Networks EndPointSecurity Computer Networking Systems Cloud Platform System Data Classification Office365 Firewalls (Computer Science) Microsoft Sentinel Splunk Blue Team (Cyber Security) Vulnerability Analysis

Job description

CACI has an exciting position for a Senior Microsoft Cloud Security Engineer as we deploy, manage, and hardening our Microsoft cloud environment, including Azure, Office 365 and Microsoft 365. The Senior Microsoft Cloud Security Engineer should thrive on complexity, possess an analytical mindset, and bring deep expertise on managing and securing Microsoft’s cloud platform. You’ll collaborate across teams, collaborating with security engineers, cloud architects, identity teams, and incident response analysts to ensure our tenant is resilient, compliant, and always mission ready., * Serve as the go-to, subject matter expert (SME) for securing the Microsoft cloud tenant, advising on architecture, design, and implementation of secure solutions across Azure, O365, and M365.

  • Lead the development and enforcement of Conditional Access Policies, aligned with best practices for managing access control for personas, groups, and applications.
  • Act as the primary SME in optimizing the Microsoft Defender suite of components (Defender for Endpoint, Defender for Cloud, Defender for Identity, and Defender for Office 365)
  • Implement Microsoft Purview, including data classification and sensitivity labels, Data Loss Prevent (DLP), and eDiscovery workflows.
  • Design, run and optimize Kusto Query Language (KQL) queries for Azure Sentinel, Defender, and log analytics.
  • Review and remediate security controls through vulnerability assessments, penetration tests, and red/blue team engagements.
  • Guide cross-functional teams on security controls, compliance requirements, policy, and governance best practices

Requirements

Required:

  • Ability to Obtain DHS EOD Public Trust Clearance
  • Master’s Degree + 10 years’ experience OR Bachelor’s degree + 13 years OR 19 years total experience
  • Expert-level hands-on experience deploying, managing, and securing Azure, Entra, Defender, Purview, Office 365, and Microsoft 365 in large enterprises.
  • Deep understanding of Conditional Access Policies (CAPs), Azure AD/Entra, and Zero Trust principles.
  • Proven Track record implementing and managing the full suite of the Microsoft Defender ecosystem and Microsoft Purview (DLP, sensitivity labels, eDiscovery)
  • Advanced proficiency writing KQL for detection, investigation, response, and reporting
  • Active, expert-level certification such as Microsoft Certified Solutions Expert (MSCE), Microsoft 365 Admin Expert, Microsoft Cybersecurity Architect Expert, AZ-900, AZ-500, SC-900, SC-100, SC-200, SC-300, SC-400, SC-401
  • Cybersecurity certifications: Security- Strong networking, firewall, VPN, and segmentation knowledge as it relates to cloud deployments
  • Exceptional time management, written and communication skills.
  • Participate in rotating on-call schedule across the team, to provide incident response or support during outages.

Desired:

  • CISSP, OSCP, GCIH
  • ITIL, Agile, or PMP familiarity/certification
  • Experience with SOAR platforms (e.g. Splunk, Microsoft Sentinel)
  • Hands-on exposure to third-party cloud security tooling (CASBs, CNAAPs, SD-WANs)
  • Previous consulting or client-facing delivery experience

Benefits & conditions

There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits.

The proposed salary range for this position is

$131,800 - $290,000

About the company

At CACI, we place character and innovation at the center of everything we do. As a valued team member, you’ll be part of a high-performing group dedicated to our customer’s missions and driven by a higher purpose - to ensure the safety of our nation.

An environment of trust.

CACI values the unique contributions that every employee brings to our company and our customers - every day. You’ll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.

A focus on continuous growth.

Together, we will advance our nation’s most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground - in your career and in our legacy.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.techcareers.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

50 sec

Repurposing retired smartphones into servers and mitigating data loss

Chris Heilmann Chris Heilmann +1 · LIVE

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

41 sec

Massive client data loss and bio-digital storage

Chris Heilmann Chris Heilmann +1 · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

Videos

See all

Related articles

See all