Platform Engineer - Security Focus

Arena Technical Resources
United States
2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Compensation
$70,000.0 - $85,000.0
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Active Directory Authentication Protocols Microsoft Azure Bioinformatics Business Software Cyber Security Domainkeys Identified Mail Domain-Based Message Authentication Reporting and Conformance (DMARC) Domain Name System (DNS) Hyper-V Identity and Access Management
+14 more
Virtual Private Networks (VPN) Microsoft Security Essentials Microsoft Office Microsoft SQL Server Windows Servers Virtual Desktops Windows PowerShell Phishing Security Information and Event Management Software Vulnerability Management Firewalls (Computer Science) Azure Security Center Sender Policy Framework (SPF) Fortinet

Job description

We are seeking a senior-level Platform Engineer with a strong background in managed services and security operations to support multi-tenant client environments. This role blends infrastructure engineering (approximately 75%) with hands-on security operations (approximately 25%). The Platform Engineer will be responsible for maintaining, troubleshooting, and optimizing Windows Server, Microsoft 365, Azure, and line-of-business systems while also supporting security incident response, email threat analysis, endpoint protection, and identity security. This position requires a professional who can operate confidently in production environments, manage client communications, and make sound technical decisions under pressure.

Responsibilities (include but are not limited to):

Infrastructure & Application Support:

  • Serve as the escalation point for complex infrastructure and application issues across multi-tenant environments.

  • Triage and optimize monitoring and alerting systems to reduce noise and prevent incidents.

  • Diagnose and restore line-of-business applications, including payroll,

HR, accounting, and public safety systems.

  • Manage Windows Server environments including services, storage, permissions, and diagnostics.

  • Perform SQL Server operator-level administration and health checks.
  • Manage endpoints, virtual desktop environments, and mobile device management policies.

  • Lead change management processes including patching, deployments, and validation.

  • Maintain accurate ticketing and coordinate high-priority incidents and vendor escalations.

Microsoft 365 & Identity:

  • Administer Microsoft 365 and Exchange Online environments.
  • Manage identity lifecycle across Active Directory and Entra ID.
  • Configure and troubleshoot email authentication protocols (SPF, DKIM, DMARC) and DNS records.

  • Administer firewall and VPN solutions, including FortiGate systems.

Security Operations:

  • Triage and investigate phishing emails and user-reported threats.
  • Analyze DMARC reports and recommend policy improvements.
  • Configure and maintain Microsoft Defender for Office 365 protections.
  • Administer application control tools such as ThreatLocker.
  • Perform identity security tasks including MFA resets and session revocation.

  • Coordinate with MDR/SOC providers to respond to alerts and incidents.
  • Investigate suspicious sign-ins and audit logs within Entra ID.
  • Execute rapid response actions such as IP or domain blocking during threats.

Requirements

5+ years of experience in a Managed Service Provider (MSP) environment in a senior or Level 3 role.

  • Strong expertise in Windows Server administration, including Group Policy and Hyper-V.

  • Proven experience with Microsoft 365 and Exchange Online administration.

  • Proficiency in Active Directory and Entra ID identity management.
  • Experience with email authentication protocols (SPF, DKIM, DMARC).
  • Firewall and VPN administration experience (FortiGate preferred).
  • Experience with RMM tools such as Datto RMM or NinjaOne.
  • Hands-on experience with phishing triage and security incident response.

  • Familiarity with endpoint application control platforms such as ThreatLocker.

  • Experience working with MDR/SOC providers.
  • SQL Server operator-level knowledge.
  • PowerShell scripting experience.
  • Demonstrated ability to manage multiple environments under change control.

  • Strong communication skills for technical and non-technical audiences.

Desired Qualifications:

  • Experience with Microsoft Defender for Endpoint (MDE).
  • Familiarity with SIEM platforms such as Todyl, Adlumin, or Azure Log Analytics.

  • Experience with Azure infrastructure including VMs, AVD, and networking.

  • Experience supporting payroll, HR, or financial applications.
  • Familiarity with vulnerability management tools such as Tenable.io.
  • Experience administering security awareness platforms.
  • Knowledge of compliance frameworks such as CIS and SOC 2.
  • Familiarity with Microsoft 365 Government (GCC High).
  • Relevant Microsoft security certifications (SC-900, MS-500, AZ-500).

Education:

  • Bachelors Degree

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on atr.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:17 min

Fortinet firewall administrative passwords leaked on the dark net

Chris Heilmann +1 · LIVE

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa · LIVE

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 · Coffee With Developers

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:39 min

Exposing stored XSS and phishing attacks via markdown

Ramona Schwering Ramona Schwering · WWC Europe 2026

2:04 min

Designing an automated phishing attack pipeline

Wolfgang Ettlinger +1 · WWC 2023

Videos

See all

Related articles

See all