Source description
About the role
R ole Title: M365 Security Consultant
Location: UK (London, Leeds, Manchester Halifax, Edinburgh)
Duration: 12 Months
Working Mode: Hybrid
As one of our Microsoft 365 Security Engineers you'll provide both security guidance and hands on security expertise. You'll be designing, building, and implementing workplace technology solutions based on business requirements to support our modern workplace for colleagues and partners.
Key Responsibilities:
Experience of using Microsoft 365 Defender portals such as Microsoft Defender for: Office365, Endpoint, Identity, Cloud Apps and Microsoft 365 Compliance Centre.
Awareness of Security concepts like Defence in Depth, Data Loss Prevention, common threats and Zero-Trust.
An understanding of Cloud concepts such as Cloud types and Cloud service models.
Experience securing physical and virtual Windows clients (Windows 10, Windows 11) and a general understanding of the Microsoft Managed Desktop.
Awareness of a broad set Microsoft 365 technologies such as Exchange Online, SharePoint Online, Microsoft Teams, Windows 10.
An enthusiastic and positive mentality, with strong customer management skills and an ability to communicate with both technical and non-technical audiences.
Participate within each project as a primary resource ensuring commitment to attend all appropriate calls and meetings as agreed with the project manager.
Accept ownership for technical related deliverables as defined by the project scope. Agree these deliverables with the aligned Senior Security Engineer for the portfolio to ensure strategic and risk reduction adherence. Work with the project manager and business analyst to ensure any critical success factors or business objectives are reasonable and can be met.
Manage requirements from stakeholders within each project and collaborate with the Senior Security Engineer portfolio lead on challenges that need wider business discussion or escalation to the Lead Security Engineers.
Analyse security risk within each design as appropriate to the scope and ensure that all interested stakeholders are informed or consulted where necessary.
Design and implement security controls using a combination of Enterprise Architecture Patterns, Security Standards and bespoke deliverables.
Work closely with vendors, platform teams and SME’s where necessary in order to agree architectural decisions, design statements and exceptions. Where necessary support the project in obtaining waivers related to security design decisions taken.
Take the lead on security architecture decisions and issues where the problem scenario is not covered by a pattern or standard. Seek guidance from domain architects or domain engineers where appropriate.
Collaborating with alternative technical resources with the goal of supporting projects in the production of design documentation e.g., TSD’s or security documentation where necessary.
Ensuring that the drivers of Cost, Pace and Quality are maintained during production of or contribution to design artefacts.
Provide security architectural SME knowledge and design engineering effort that leads to the creation of high-quality solutions that comply with all relevant ITEC policies and Security Standards.
Provide security support for assigned projects at review committees, boards or forums in order to facilitate the project through governance.
Provide support for projects as they move into the delivery stage at a level suitable to ensure that the solution is implemented as per the design. Ensure the solution is taken back through governance where the design has changed during the implementation cycle.
Key Skills/ /Knowledge:
Good Security Engineer plus specific experience in: Windows Client Virtualisation, Azure Virtual Desktop, Azure, MS365 Security Control Environment
Awareness of Security concepts like Defence in Depth, Data Loss Prevention, common threats and Zero-Trust.
An understanding of Cloud concepts such as Cloud types and Cloud service models.
Experience securing physical and virtual Windows clients (Windows 10, Windows 11) and a general understanding of the Microsoft Managed Desktop.
Awareness of a broad set Microsoft 365 technologies such as Exchange Online, SharePoint Online, Microsoft Teams, Windows 10.
An enthusiastic and positive mentality, with strong customer management skills and an ability to communicate with both technical and non-technical audiences.
Experience of using Microsoft 365 Defender portals such as Microsoft Defender for: Office365, Endpoint, Identity, Cloud Apps and Microsoft 365 Compliance Centre.
Experience with ticketing systems such as JIRA or ServiceNow.
Understanding of agile and DevOps principles and practices.
Experience of PowerShell Scripting.
Experience of Windows Firewall, Defender Antivirus, Azure Information Protection, Bitlocker and Windows defender application control (WDAC).
Incident response with strong problem-solving skills.
Microsoft Certifications such as MS-900-Microsoft 365 Certified: Fundamentals, AZ-900-Microsoft Certified: Azure Fundamentals, MS-500-Microsoft 365 Certified: Security Administrator Associate, AZ-500- Microsoft Azure Security Technologies.
Experience Required: Must have 8-10 yrs. of experience Job type: Contract Division: eTeam Workforce Limited-Ireland Reference: 23-00400
More at eTeam