GuidePoint Security is a rapidly growing cybersecurity firm that provides trusted expertise and solutions to help organizations minimize risk. The Microsoft Security Engineer will deliver hands-on security engagements focusing on Microsoft Entra ID and Microsoft Purview, managing technical delivery and contributing to knowledge-sharing efforts.
Responsibilities:
- Design and implement identity architecture, hybrid sync (Entra Connect), Conditional Access, MFA/passwordless, and identity governance (PIM, RBAC, access reviews, entitlement management)
- Integrate applications via SSO (SAML/OIDC), enterprise app registrations, and SCIM provisioning
- Investigate and remediate identity risks using Entra ID Protection, sign-in and audit logs; drive hybrid identity hygiene (stale object cleanup, privileged account reduction, tiered admin models)
- Design and implement sensitivity labels, DLP, and retention policies across M365; support data classification, information protection rollouts, and data security posture assessments
- Support eDiscovery, Insider Risk Management, communication compliance, and AI data security readiness (DSPM for AI) as engagements require
- Configure device compliance, configuration profiles, and app deployments across platforms; support Defender for Endpoint, Office 365, Identity, and Cloud Apps in cloud and hybrid environments
- Other duties as assigned
- Adhere to GuidePoint Security Core Values
Requirements:
- Bachelor's degree preferred
- 2–5 years in IT administration, identity management, or security operations
- Hands-on production experience with Microsoft Entra ID and on-premises Active Directory, including Conditional Access, MFA, RBAC, and hybrid identity (Entra Connect)
- Knowledge of core authentication protocols: SAML, OAuth 2.0/OIDC, Kerberos, LDAP
- Experience implementing Microsoft Purview (sensitivity labels, DLP, retention, or eDiscovery) and comfort supporting Intune and Defender XDR
- Basic PowerShell scripting for automation and reporting (e.g., Microsoft Graph PowerShell)
- Strong troubleshooting skills, attention to detail, and clear written and verbal communication
- Embraces emerging technologies, including AI tools, to work smarter, solve problems, and drive better business outcomes
- Advanced AD work: multi-domain/forest design, migrations, tiered administration, legacy auth cleanup
- Microsoft Sentinel: log onboarding, detection development, or broader SIEM/SOAR experience
- Azure infrastructure and security (Azure Policy, network security, landing zones, RBAC)
- SharePoint Online governance, Teams Voice, Power BI/Fabric, or Copilot Studio/Azure AI Foundry experience