
A Microsoft Security Engineer is required for an initial 6 month contract. This is a hybrid role with 2-3 days per week on site in London and is inside IR35 so will require working via an FCSA accredited umbrella company
This role is for a proactive and skilled Microsoft Security Engineer/Analyst tasked with safeguarding digital assets by leveraging a comprehensive suite of Microsoft security technologies. The ideal candidate will use Microsoft Defender XDR for managing and responding to threats, implement Microsoft Purview to ensure data compliance, and secure identities and access through Microsoft Entra ID.
Essential skills/knowledge/experience:
Microsoft Defender XDR (Extended Detection and Response)
*Platform Expertise and Management: Act as a subject matter expert for the core components of the Defender XDR suite, including:
*Microsoft Defender for Endpoint: Manage endpoint protection, detection, and response across our device fleet.
*Microsoft Defender for Office 365: Protect against email-based threats, including phishing, malicious attachments, and compromised links.
*Microsoft Defender for Identity: Monitor on-premises Active Directory signals to identify and investigate threats related to compromised identities.
*Microsoft Defender for Cloud Apps: Enforce security policies and provide threat protection across our cloud applications.
*Microsoft Defender Vulnerability Management: Prioritize and address critical vulnerabilities and misconfigurations based on a risk-based assessment.
*Collaboration & Support: Work with internal IT and other security teams to ensure the effectiveness of the platform. Serve as a point of contact for external services like Microsoft Defender Experts for proactive hunting and expert guidance.
*Documentation & Reporting: Document incident response procedures, create reports on security posture, and provide regular briefings to leadership.
Microsoft Purview (Data Governance and Compliance)
*Data Lifecycle Management: Implement policies for records management and retention to ensure that data is retained according to legal and business requirements and securely disposed of when no longer needed.
*Data Security Posture Management (DSPM): Utilize DSPM capabilities to understand data risk, identify sensitive data across the environment, and implement controls to mitigate risk. This includes managing data security posture related to AI applications and models.
*eDiscovery & Auditing: Support legal and compliance teams by utilizing Purview's eDiscovery and audit capabilities for investigations.
*Education: Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field.
*Experience: 8-10 years of experience in a cybersecurity role, with a strong focus on Microsoft security solutions.
*Technical Skills:
*In-depth practical knowledge of the Microsoft security stack, including Defender XDR, Purview, and Entra ID.
*Experience with scripting languages, particularly PowerShell, for automation and management.
*Familiarity with common cybersecurity frameworks and attack methodologies, such as the MITRE ATT&CK framework.
*Certifications (Preferred):
*Microsoft Certified: Security Operations Analyst Associate (SC-200)
*Microsoft Certified: Identity and Access Administrator Associate (SC-300)
*Microsoft Certified: Information Protection Administrator Associate (SC-400)
*Certified Information Systems Security Professional (CISSP)
Microsoft Entra ID (Identity and Access Management)
*Advanced Threat Protection: Utilize Microsoft Entra ID Protection to identify and respond to compromised credentials and other identity-based risks. Work closely with the Defender for Identity team to monitor on-premises Active Directory signals for threats.
*Privileged Access Management: Implement and maintain Privileged Identity Management (PIM) and Privileged Access Management (PAM) to provide just-in-time (JIT) access and enforce the principle of least privilege.
*Authentication Protocols: Ensure the proper configuration and integration of various authentication protocols, including SAML, OAuth, OIDC, and SCIM for application and service provisioning.
*Device Management: Secure Bring Your Own Device (BYOD) and other device access by implementing device-based access policies and configurations.
Desirable skills/knowledge/experience:
*Excellent analytical and problem-solving abilities.
*Strong communication and collaboration skills to work effectively with technical and non-technical teams.
*A proactive mindset and the ability to adapt to a fast-paced, evolving threat landscape.
LA International is a HMG approved ICT Recruitment and Project Solutions Consultancy, operating globally from the largest single site in the UK as an IT Consultancy or as an Employment Business & Agency depending upon the precise nature of the work, for security cleared jobs or non-clearance vacancies, LA International welcome applications from all sections of the community and from people with diverse experience and backgrounds.
Award Winning LA International, winner of the Recruiter Awards for Excellence, Best IT Recruitment Company, Best Public Sector Recruitment Company and overall Gold Award winner, has now secured the most prestigious business award that any business can receive, The Queens Award for Enterprise: International Trade, for the second consecutive period.