
Senior Microsoft Defender Engineer
Posted Jul 23

Posted Jul 23
This is a fully remote position, open to applicants in United States.
• Mentor mid-level engineers in the deployment and optimization of EDR solutions to monitor and address threats in real-time.
• Evaluate and authorize automated response playbooks developed by your team.
• Oversee the installation and configuration of NGAV to deliver behavioral-based protection.
• Ensure that NGAV algorithms are fine-tuned for optimal performance under your team’s oversight.
• Manage continuous vulnerability assessments performed by your team and provide recommendations for remediation.
• Formulate and implement strategies to reduce endpoint vulnerabilities in partnership with the broader vulnerability management team.
• Direct the implementation and maintenance of rules and controls to minimize the attack surface of endpoints.
• Ensure your team incorporates real-time updates and threat intelligence from the Microsoft cloud.
• Guarantee comprehensive security across Windows, Linux, and mobile devices managed by your team.
• Supervise the generation of detailed reports concerning security posture, incidents, and compliance by your team.
• Lead the design, execution, and management of WDAC policies to regulate which applications are permitted to run on endpoints.
• Oversee the establishment and management of DLP policies using Microsoft Defender for Endpoint.
• Develop and enforce DLP policies within Microsoft 365 and other cloud services to ensure data compliance and security.
• A Bachelor’s degree in Computer Science, Information Security, or a related discipline.
• Over 12 years of pertinent experience, including a minimum of 3 years in a leadership or senior engineering role.
• Significant experience with Microsoft Defender for Endpoint, Cloud, and Servers.
• Strong background in endpoint security, threat hunting, and incident response.
• Proficiency with SIEM solutions, particularly Microsoft Sentinel.
• Experience in automating workflows with automation tools.
• Familiarity with administering and working with Linux operating systems, especially Red Hat Enterprise Linux.
• Must possess a DoD 8140 compliant certification such as CompTIA Security+.
• Additional relevant cybersecurity certifications like Certified Information Systems Security Professional (CISSP) or Certified Information Security Manager (CISM) are advantageous.
• Health insurance
• Paid time off
• Professional development opportunities
Anduril Industries
Sargent & Lundy
Sargent & Lundy
Get handpicked remote jobs straight to your inbox weekly.