Cyclotron, Inc. is a Microsoft Solutions Partner focused on the modern workplace, data, and AI. They are seeking a Threat Protection Security Engineer to assist enterprise organizations in deploying Microsoft security solutions and improving their security posture in both cloud and on-premises environments.
Responsibilities:
- Work directly with client teams to drive discovery, design, configuration, validation, piloting, deployment and support of Microsoft cloud and on-premises security capabilities
- Work across Cyclotron business units to provide a holistic approach that combines your areas of expertise in threat protection with identity & devices, compliance, and more
- Contribute to the development of new Threat Protection and SIEM services offered by Cyclotron
- Engage with other Cyclotron and customer teams to get and share information to improve processes and security posture
Requirements:
- Demonstrated knowledge and skill with Microsoft cloud security solutions and services such as Microsoft Defender for Office 365, Microsoft Defender for Endpoint, Microsoft Defender for Identity, Microsoft Defender for Cloud Apps, Microsoft Defender for Cloud, and Sentinel
- Strong and demonstrated experience with KQL queries, Attack Simulation services, on-premises Microsoft security solutions including Windows 10 and 11, Windows Server and Active Directory as well as third party solutions used to protect hosts
- Strong communication skills, experience in leading technical discussions, providing guidance and direction when resolving technical challenges along with demonstrated technical writing experience
- History with competitive security tools (Crowdstrike, Cortex, Webroot, Soti, XenMobile, Workspace ONE, Okta, PingFederate, etc.)
- Experience with Microsoft Intune, Configuration Manager, Entra ID, Entra ID Connect, SSO and Microsoft Purview capabilities
- Experience with data connectors, data sources, and Logic Apps
- Experience with migration of third party email security applications (Proofpoint, Mimecast, Cisco Secure Email, Tessian and Ironscales)
- Currently holds a Microsoft 365 Certified Security Administrator Associate or Azure Security Engineer Associated certification
- Currently holds a Certified Information Systems Security Professional (CISSP) and/or Certified Information Security Manager (CISM)
- Security Operations (SecOps) experience with Microsoft Defender XDR
- A sanitized example deliverable will be required, representing quality of your written work This can be a public blog, deliverable or documentation you have created (non-client-identifiable, and adhering to confidentiality requirements where appropriate), or something comparable