Cyber Security Engineer
Hamilton Barnes 🌳 · New York, United States
Apply & track with Apply EdgeCyber Security Engineer (Microsoft Security)New York, NY (Hybrid) | Full-time | $145,000 – $185,000 + bonusAbout our clientWe’re partnering with a growing Managed Security Services Provider and Microsoft Solutions Partner for Security, based in New York City. They run a 24/7 security operations center and protect organizations across financial services, healthcare, legal and professional services, delivering managed detection and response, Microsoft security deployments and ongoing security engineering.As they continue to grow their client base, they’re adding an experienced Cyber Security Engineer to their Microsoft security team.The roleYou’ll design, deploy and run Microsoft security platforms across a portfolio of client environments built on Microsoft Defender XDR, Microsoft Sentinel, Entra ID, Intune and Defender for Cloud.You’ll work across several clients at once, lead new client onboardings, and act as the technical escalation point for SOC analysts. This role suits an engineer who enjoys variety, client contact and hands-on depth across the full Microsoft security stack.What you’ll doPlatform engineeringDeploy, configure and maintain Microsoft Sentinel across multiple client tenants, including data connectors, log ingestion and cost optimization.Manage client environments centrally through Azure Lighthouse and Defender XDR multi-tenant management.Deploy and tune Defender for Endpoint, Identity, Office 365, Cloud Apps and Cloud.Detection and responseBuild and tune analytics rules and hunting queries in KQL, mapped to MITRE ATT&CK.Build automation with Logic Apps playbooks and Sentinel automation rules.Serve as the escalation point for SOC analysts and support incident response engagements.Identity, endpoint and cloud hardeningImplement Zero Trust controls, including Entra ID Conditional Access, PIM, MFA and Identity Protection.Deploy Intune compliance and configuration policies.Harden Microsoft 365 and Azure tenants using Secure Score and CIS Benchmarks.Client deliveryLead technical onboarding for new clients, from discovery through go-live.Write runbooks, architecture documents and client-facing reports.Present findings and recommendations to client IT and security leaders.What you’ll bring4+ years in security engineering, SOC engineering or a related role.Hands-on production experience with Microsoft Sentinel and the Defender XDR suite.Strong KQL skills for detections, hunting and workbooks.Working knowledge of Entra ID, Conditional Access, PIM and Intune.Understanding of Azure networking and security controls (NSGs, Azure Firewall, Key Vault, Azure Policy).Scripting in PowerShell or Python.Familiarity with MITRE ATT&CK, NIST CSF and CIS Controls.Clear communication with both technical and non-technical audiences.Nice to haveMicrosoft certifications: SC-200, AZ-500, SC-100 or SC-300.CISSP, GIAC (GCIH, GCDA) or CompTIA Security+.Previous MSSP, MDR or consulting experience.Azure Lighthouse, Bicep, ARM templates or Terraform.Experience in regulated sectors such as financial services (NYDFS Part 500), healthcare (HIPAA) or SOC 2 environments.What’s on offer$145,000 – $185,000 base salary, plus annual performance bonus.Medical, dental and vision insurance.401(k) with company match.Generous PTO plus paid holidays.Paid Microsoft and industry certifications, plus a yearly training budget.Hybrid working: 1 day a week in their Manhattan office.