
Senior Security Administrator, Microsoft
Posted 2 days ago

Posted 2 days ago
This is a fully remote position, open to applicants in Virginia.
• Continuously assess the health of Defender, monitor alerts, onboarding status, sensor functionality, policy enforcement, and security configurations.
• Ensure optimal performance of Next-Generation Antivirus solutions; address alerts and carry out regular checks and updates.
• Maintain rules and controls for attack surface reduction; report any discrepancies to the engineering team.
• Verify that updates for cloud-delivered protection and threat intelligence are received and applied appropriately.
• Ensure integration of Microsoft Defender with Microsoft Sentinel and other Security Information and Event Management (SIEM) tools.
• Monitor centralized logging, analytics, and reporting dashboards; conduct SIEM data analysis as needed.
• Validate security measures across Windows, Linux, and mobile devices.
• Generate and review reports regarding security posture, incidents, and compliance.
• Ensure the proper functioning of dashboards and alerts.
• Adhere to established procedures and escalate any issues or anomalies to the engineering team.
• Confirm that Windows Defender Application Control policies are applied correctly.
• Implement and supervise Data Loss Prevention (DLP) policies across endpoints, mobile devices, and cloud services using Microsoft Defender, Intune, and Purview.
• Enforce approved DLP waivers and report any policy violations or attempts of data exfiltration.
• Maintain comprehensive DLP reporting and alerts.
• A bachelor’s degree in computer science, Information Security, or a related discipline.
• A minimum of 3 years of relevant experience.
• Proficient with Microsoft Defender for Endpoint and Microsoft Defender for Cloud, including Defender for Servers.
• Familiar with endpoint security, threat hunting, and incident response methodologies.
• Knowledgeable about SIEM solutions, particularly Microsoft Sentinel.
• Understanding of industry compliance standards (e.g., NIST SP 800-53) and relevant regulations (e.g., RMF, DISA STIGs, DoDI 8500.01/8510.01, CMMC/NIST 800-171) is advantageous.
• Eagerness to stay informed about the latest cybersecurity trends and emerging security tools.
• Required DoD 8140 compliant certification such as CompTIA Security+.
• Active DoD Secret Clearance is necessary.
• Experience with ServiceNow or other ticketing systems.
• Experience in administering and working with Windows and Linux operating systems.
• Familiarity with Microsoft Active Directory/Entra.
• Competence in Microsoft PowerBI Dashboarding.
• Advanced PowerShell scripting skills or prior experience in software development.
• Knowledge of DoD PKI.
• Competitive salary and performance-based bonuses.
• Comprehensive health, dental, and vision insurance.
• Professional development opportunities and training programs.
• Flexible work hours and remote work options.
• Retirement savings plans with company matching.
AbbVie
Biogen
RunPod
MrBeast
Get handpicked remote jobs straight to your inbox weekly.