← Back to jobs

FUSTIS Logo
Senior Security Engineer

FUSTIS

 

United States

Posted On: 15+ days ago
Experience: 8+ years
Availability: Onsite
Openings: 1
Category: Senior Security Engineer.
Tenure: Contract - W2
Related Jobs

No related jobs found

Description

Core Responsibilities

  • Implement and support security controls across Microsoft cloud services, endpoint platforms, identity systems, infrastructure, SaaS applications, and network environments.
  • Support vulnerability management activities, including validation, prioritization, remediation coordination, patching support, and closure documentation.
  • Configure and improve Microsoft security capabilities across Microsoft 365, Entra ID, Intune, Defender, Sentinel, Purview, Azure, and related security platforms.
  • Support endpoint security improvements, including endpoint protection, device compliance, encryption, patching, configuration baselines, and secure administration practices.
  • Support identity and access security controls, including MFA, Conditional Access, privileged access, service accounts, vendor access, and access review processes.
  • Support Azure security controls, including RBAC, policy enforcement, logging, secure networking, resource configuration, and cloud security posture improvements.
  • Support Microsoft Purview and data protection capabilities, including DLP, sensitivity labels, data classification, audit support, eDiscovery support, and policy tuning.
  • Support web security controls, including web proxy, secure web gateway, URL filtering, browser controls, internet access logging, and related policy enforcement.
  • Configure, validate, and improve security logging to support monitoring, investigation, reporting, and audit evidence.
  • Investigate security alerts and incidents, perform technical analysis, support containment and recovery actions, and document findings.
  • Partner with infrastructure, cloud, network, application, compliance, vendor, and business teams to implement practical security improvements.
  • Produce technical documentation, including implementation notes, runbooks, standards, evidence, and operational procedures.
  • Support security reviews and remediation activities for third-party platforms, hosted systems, applications, and infrastructure services.
  • Support business continuity and disaster recovery security activities, including technical validation, documentation, and remediation support.
  • Recommend practical security improvements that are achievable in an operational healthcare environment.

 

Required Qualifications

  • Bachelor’s degree and 6+ years of experience in cybersecurity, cloud security, infrastructure security, systems engineering, network security, endpoint security, or data protection. Additional relevant experience may be considered in lieu of degree.
  • Hands-on experience implementing, configuring, and supporting security controls in Microsoft Azure, Microsoft 365, Entra ID, Intune, Defender, Sentinel, Purview, and related Microsoft security platforms.
  • Strong practical understanding of identity security, endpoint protection, cloud security, data protection, network security, server hardening, logging, vulnerability management, and incident response.
  • Hands-on experience with Microsoft Purview, DLP, sensitivity labels, data classification, eDiscovery support, audit logging, or related data protection controls.
  • Experience supporting web proxy, secure web gateway, URL filtering, CASB, browser controls, SSL inspection, or internet access security controls.
  • Experience working with vulnerability management tools, EDR/XDR platforms, SIEM/logging platforms, IAM tools, endpoint management platforms, DLP tools, web proxy platforms, and cloud security posture tools.

 

  • Ability to review technical findings, determine practical remediation steps, implement improvements, validate results, and produce clear evidence.
  • Working knowledge of Microsoft 365 security, Entra ID, Conditional Access, Intune, Defender for Endpoint, Defender for Cloud, Sentinel, Purview, Azure Policy, RBAC, and cloud logging concepts.
  • Practical understanding of data loss prevention, PHI/PII protection, cloud app access, file movement controls, web activity monitoring, and data protection practices.
  • Experience supporting endpoint security improvements, including patching, encryption, EDR coverage, device compliance, configuration baselines, application control, and local administrator controls
  • Experience supporting network security controls, including firewalls, segmentation, VPN, remote access, DNS, certificates, and secure administration practices.
  • Familiarity with HIPAA, PHI/PII handling, NIST CSF, CIS benchmarks, Microsoft security baselines, and security evidence requirements.
  • Ability to work with infrastructure, cloud, network, application, compliance, vendor, and business teams to complete security improvement activities.
  • Strong troubleshooting, documentation, and communication skills.
  • Healthcare experience or experience supporting regulated environments with sensitive data is preferred.
  • Microsoft security and cloud certifications such as AZ-500, SC-200, SC-300, SC-400, SC-100, MS-102, or MD-102 are strongly preferred. Security+, CySA+, CISSP, CCSP, CCNA Security, or similar certifications are also preferred

Education

Bachelor's degree

Related Jobs

No related jobs found

← Back to jobs