
Security Analyst – Identity and Access Management
Posted 2 days ago

Posted 2 days ago
This is a fully remote position, open to applicants in Arizona, +1 more state.
• Assist in the administration of EMCOR’s Security Program by managing identity systems, which include single sign-on (SSO), privileged access management (PAM), and user lifecycle management.
• Focus primarily on Microsoft Sentinel and Microsoft Defender, utilizing Kusto Query Language (KQL) to improve threat detection, automate responses, and enhance the organization’s overall security posture in support of SOC operations and Identity Threat Detection and Response (ITDR).
• Serve as a subject-matter expert during security incidents, documenting findings and recommending enhancements to incident response protocols.
• Possess experience in designing, implementing, and maintaining monitoring systems for Microsoft Sentinel and Microsoft Defender, including the development and optimization of custom KQL queries and automation to boost detection and response capabilities.
• Keep abreast of emerging threats and provide guidance to stakeholders on appropriate responses.
• Investigate and resolve IAM security incidents using established tools and procedures.
• Support and monitor the enterprise information security system as directed by management.
• Oversee daily operations and provide support for IAM products, including incident and ticket resolution.
• Administer Entra ID, demonstrating expertise in SSO, Conditional Access, and modern authentication methods.
• Deploy and maintain IAM systems focused on user lifecycle management, access governance, and PAM.
• Collaborate with security and IT teams to improve IAM maturity and awareness.
• Maintain and upgrade servers and applications that support security tools.
• Undertake special projects as required.
• Support and uphold EMCOR’s Security Program.
• A minimum of five years' experience with Microsoft Active Directory, ideally in a multi-domain environment.
• At least three years' experience with Microsoft Entra ID.
• A minimum of two years' experience using the Microsoft Defender Platform and/or Microsoft Sentinel.
• At least one year’s experience with Privileged Access Management systems.
• Proven proficiency in utilizing PowerShell for administrative and automation tasks.
• Practical experience and/or a thorough understanding of one or more of the following technologies: MFA, SSO, SAML, OAuth, OpenID, SCIM, and REST API.
• Demonstrated ability to communicate effectively and interact professionally with individuals at all organizational levels.
• Strong project management skills.
• Capability to consistently deliver an exceptional standard of customer service.
• Medical, dental, and vision coverage
• Health savings and flexible spending accounts
• Life insurance
• Disability
• 401(k) Savings Plan
• College Coach
• Employee assistance program
Solo Network
Agile Defense
ExtraHop
CoE | Centro de Excelência Votorantim
Get handpicked remote jobs straight to your inbox weekly.