Resumo da vaga

IT Security Engineer (L3)

Requisitos e responsabilidades

Conteúdo da vaga extraído em seções para revisão mais rápida.

Key Responsibilities

  • End-user IT support: first point of contact for the company across Microsoft 365, identity, devices, SaaS access, and general technology issues, with ownership of the internal support queue
  • Endpoint administration across macOS and Windows: Intune compliance and configuration policies, application deployment, endpoint DLP, OS update management
  • Entra ID operational ownership: Conditional Access lifecycle, group and license hygiene, access reviews, PIM
  • Microsoft Purview, Sentinel, Defender, and Global Secure Access: ongoing tuning, alert triage workflows, evidence pipelines, secure access policy management
  • Automation and integration: building and maintaining workflows across our SaaS estate using APIs, webhooks, and appropriate tooling
  • Joiner-mover-leaver execution and the tooling that supports it
  • Compliance evidence generation and audit support across our compliance frameworks
  • SaaS administration hygiene: Vanta posture, app registrations, license reconciliation
  • Identifying opportunities to improve, replace, or consolidate our existing tooling

What We’re Looking For

  • Microsoft Sentinel: KQL, data connectors, analytics rules, workbook authoring, cost management
  • Microsoft Purview hands-on: DLP, sensitivity labels, retention, eDiscovery
  • Microsoft Defender XDR: Defender for Endpoint, Defender for Office 365, Defender for Cloud Apps
  • macOS administration: configuration profiles, shell scripting (bash, zsh)Experience operating in a one-person or small-team IT environment, with the prioritization judgment that comes from it.

Preferred Qualifications

  • Microsoft 365 E5 or E7 license tier experience specifically
  • Microsoft Security Copilot exposure
  • Microsoft Global Secure Access: Internet Access, Private Access, traffic forwarding profiles
  • macOS administration at depth: declarative device management, Platform Single Sign-On
  • GCP IAM exposure: Workload Identity Federation, org policies, IAM roles and bindings
  • Vanta or comparable GRC automation tooling
  • Enterprise password management administration
  • HITRUST CSF i1 or r2 familiarity
  • ISO 27017 and ISO 27018 cloud-specific control familiarity
  • SCIM provisioning experience across multiple SaaS applications
  • Self-hosted automation platform experience including deployment, upgrades, and monitoring
  • Microsoft Graph PowerShell SDK at an advanced level: app-only authentication, custom Entra app registrations
  • Conditional Access policy design at scale, including structured policy taxonomies
  • Azure VM and Docker Compose administration
  • SharePoint Online administration and Viva Connections
  • Apple Business Manager and Automated Device Enrollment workflows
  • Windows Autopilot deployment experience
  • Experience supporting a SOC 2 Type II or ISO 27001 Stage 2 audit as the named technical owner.

Why You Should Join Us

  • Solve Our Toughest Puzzles: This is a high-leverage role. You will be working on the most impactful technical challenges that are critical to the company's success.
  • Define the Architecture: You won't just be maintaining a system; you will be a primary author of its future state, with the autonomy to make it happen.
  • Lead from the Front: This is a chance to establish yourself as a key technical voice in a rapidly growing company.
  • Competitive Compensation & Benefits: We offer a strong salary, a 100% remote culture, and significant opportunities for growth.

Why You Should Join Us

  • Clinical service first.
  • Collaborate with our customers.
  • Listen, respect, learn.
  • Innovate to excel.

The behaviors we look for:

  • Be nice.
  • Be creative.
  • Be honest.
  • Be helpful.
Vagas similares

Mantenha uma lista reserva.

Ver stack
FocoIT SecurityÁrea da vaga
Sinal de senioridadeSeniorNível do candidato
StackAzure, Docker, GCPSkills principais
Localização1 país aceitoElegibilidade

Stack

Use estas tags para comparar vagas remotas similares.

Elegibilidade de localização

Candidatos devem aplicar apenas quando o país do perfil estiver listado aqui.

Seu perfilPaís não definidoEntre para comparar seu país com esta vaga.

Fluxo de contratação

O WithMira mostra a vaga e depois envia candidatos para a aplicação da empresa.

1Confira fit da vaga, stack e elegibilidade de localização no WithMira.
2Abra a página de aplicação da empresa pelo link rastreado.
3Salve a vaga ou assine oportunidades similares antes de sair.
Aplicar no site da empresaSite da empresaAbrir link