Associate Cybersecurity Platform Engineer

Qnity

Wilmington (DE)

On-site

USD 70,000 - 110,000

Full time

3 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Qnity is seeking an early-to-mid career Cybersecurity Platform Operations Analyst to support day-to-day security request triage and operational follow-up across SIEM, identity, endpoint security, email security, SaaS access, and onboarding workflows.

The role develops broader cybersecurity engineering skills under senior guidance, handling routine requests, gathering evidence, and escalating when needed to ensure timely resolution.

Qualifications

  • 1–3 years in cybersecurity or IT infrastructure.
  • Strong troubleshooting and analytical skills.
  • Familiar with Microsoft 365 and Entra ID.
  • Experience with Windows endpoints in enterprise environments.
  • Ability to gather evidence from administrative consoles and logs.
  • Excellent written communication and documentation.

Responsibilities

  • Review incoming security requests and determine the domain and next steps.
  • Gather technical details, logs, screenshots, configuration information, and other evidence needed to evaluate requests.
  • Perform routine, documented security administration activities within established procedures and delegated permissions.
  • Identify requests involving elevated risk, privileged access, architectural changes, exceptions, or unfamiliar technologies and escalated them to senior cybersecurity staff.
  • Track open requests and coordinate with users, application teams, infrastructure teams, and cybersecurity engineers through resolution.
  • Assist with endpoint security operations and email/security investigations as needed.

Skills

Cybersecurity concepts
Troubleshooting
Documentation
Communication
Windows administration

Tools

Microsoft Sentinel
Microsoft Defender
Intune
Entra ID
Microsoft 365

Job description

Are you looking to power the next leap in the exciting world of advanced electronics? Do you want to help solve problems that drive success in the rapidly evolving technology and connectivity landscape? Then bring your problem-solving, passion, and creativity to help us power the next leap in electronics.

At Qnity, we're more than a global leader in materials and solutions for advanced electronics and high-tech industries - we're a tight-knit team that is motivated by new possibilities, and always up for a challenge. All our dedicated teams contribute to making cutting-edge technology possible. We value forward-thinking challengers, boundary-pushers, and diverse perspectives across all our departments, because we know we play a critical role in the world enabling faster progress for all. Learn how you can start or jumpstart your career with us.

Associate Cybersecurity Platform Engineer
Position Summary

We are seeking an early-to-mid career Cybersecurity Platform Operations Analyst to support day-to-day security request triage, light security administration, evidence gathering, and operational follow-up across SIEM ingest, identity, endpoint security, email security, SaaS access, and application onboarding workflows.

This role is intended for someone developing broad cybersecurity engineering experience while working under the direction of more senior cybersecurity engineers and architects. The analyst will handle routine security requests, perform defined administrative activities within established standards, gather technical evidence, identify issues requiring escalation, and help ensure requests move efficiently through the cybersecurity organization.

The successful candidate should have practical familiarity with Microsoft enterprise technologies and a strong interest in developing broader cybersecurity engineering skills.

Key Responsibilities
Security Request Triage and Operations
  • Review incoming cybersecurity requests and determine the appropriate security domain, owner, and required next steps.
  • Gather technical details, logs, screenshots, configuration information, and other evidence needed to evaluate requests.
  • Perform routine, documented security administration activities within established procedures and delegated permissions.
  • Identify requests involving elevated risk, privileged access, architectural changes, exceptions, or unfamiliar technologies and escalated them to senior cybersecurity staff.
  • Track open requests and coordinate with users, application teams, infrastructure teams, and cybersecurity engineers through resolution.
Microsoft Security Platforms
  • SIEM engineering, log forwarding, ingest, table management, such as Microsoft Sentinel or Google Chronicle or similar systems.
  • DLP engineering, and backend system management for intermediate database storage of policies in Microsoft Purview or leading DLP products.
  • Support operational use of Microsoft Sentinel, Defender XDR, Microsoft Defender for Endpoint, Microsoft Defender for Office 365, Microsoft Entra ID, Microsoft Intune, and email security.
  • Review endpoint onboarding status, device health, basic alert context, email quarantine status, phishing submissions, risky sign-ins, and other routine security events.
  • Assist senior engineers with troubleshooting Microsoft security platform integrations and configuration issues.
  • Validate that systems and endpoints are correctly reporting into required security platforms.
  • Gather evidence from Microsoft security consoles to support investigations, security reviews, audits, and operational troubleshooting.
Identity and Application Access
  • Review basic Entra enterprise application configuration, authentication requirements, group assignments, and application access information from a security (not IAM) perspective.
Endpoint Security
  • Support endpoint-security operational activities involving Microsoft Defender for Endpoint and Intune-managed devices.
  • Review endpoint security status, onboarding health, security configuration status, and basic device information.
  • Gather relevant device evidence when investigating security requests or endpoint issues.
  • Assist with routine troubleshooting of endpoint security controls.
  • Escalate endpoint issues that require containment, forensic review, policy changes, or senior engineering action.
Email and Collaboration Security
  • Assist with administration of email security products related to phishing reports, message investigation, quarantine issues, and other routine email-security requests.
Documentation and Operational Improvement
  • Maintain clear documentation for recurring security procedures, troubleshooting steps, and request-handling processes.
  • Develop and improve checklists and standard operating procedures for common cybersecurity requests.
  • Identify repetitive work that could be standardized, automated, or moved to self-service.
  • Document recurring problems and work with senior engineers to improve underlying processes and controls.
  • Help maintain accurate records of security platforms, integrations, ownership, and operational dependencies.
Qualifications
Required
  • 1–3 years of experience in cybersecurity, IT infrastructure, endpoint management, identity administration, systems administration, or a related technical field.
  • Basic understanding of cybersecurity concepts including authentication, authorization, least privilege, endpoint security, phishing, malware protection, logging, and network access.
  • Familiarity with Microsoft 365 and Microsoft Entra ID.
  • Experience working with Windows endpoints and enterprise IT environments.
  • Ability to gather and interpret technical information from administrative consoles, logs, and configuration screens.
  • Strong troubleshooting and analytical skills.
  • Ability to follow established procedures while recognizing situations requiring escalation.
  • Clear written communication and documentation skills.
Preferred
  • Exposure to Microsoft Sentinel, Defender XDR, Defender for Endpoint, Defender for Office 365, Intune, or Entra ID.
  • Experience supporting SSO or enterprise application onboarding.
  • Familiarity with SaaS security and enterprise web-access controls.
  • Exposure to Microsoft Azure.
  • Familiarity with ticketing or workflow platforms such as ServiceNow.
  • Basic PowerShell knowledge.
  • Microsoft or other relevant cybersecurity certifications are helpful but not required.
Role Boundaries

This is an operational cybersecurity engineering role, not a security operations center analyst or senior security architecture position.

The Role Is Not Expected To Independently Perform
  • Detection engineering.
  • Advanced incident response or digital forensics.
  • Vulnerability-management program ownership.
  • Firewall engineering or network security architecture.
  • Security architecture approval.
  • Privileged-access approval.
  • High-risk application permission approval.
  • Cybersecurity exception or risk acceptance decisions.

These activities should be escalated to the appropriate senior cybersecurity engineer, architect, IAM engineer, security operations team, or cybersecurity leadership function.

Success Measures

Success in this role means routine cybersecurity requests are handled accurately and promptly, technical evidence is gathered before escalation, senior engineers receive well-formed escalation packages rather than incomplete requests, and an increasing percentage of standard security activities are documented and repeatable.

Qnity is an equal opportunity employer. Qualified applicants will be considered without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability or any other protected class. If you need a reasonable accommodation to search or apply for a position, please visit our Accessibility Page for Contact Information.

Qnity offers a comprehensive pay and benefits package. To learn more visit the Compensation and Benefits page.

We use Artificial Intelligence (AI) to enhance our recruitment process.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Associate Cybersecurity Platform Engineer
Associate Cybersecurity Platform Engineer

5195 EKC Advanced Electronics USA, LLC • Delaware

On-site
USD 60,000 - 90,000
Cybersecurity Platform Engineer - Early Career
Cybersecurity Platform Engineer - Early Career

5195 EKC Advanced Electronics USA, LLC • Delaware

On-site
USD 60,000 - 90,000
SOC Manager
SOC Manager

5195 EKC Advanced Electronics USA, LLC • Delaware

On-site
USD 120,000 - 180,000
SOC Manager
SOC Manager

Qnity • Wilmington (DE)

On-site
USD 140,000 - 190,000
Competitive pay
Benefits package
Senior Cloud Engineer
Senior Cloud Engineer

1027 EKC Technology, Inc. • Delaware

On-site
USD 140,000 - 190,000
Manufacturing Security Specialist
Manufacturing Security Specialist

Qnity • Wilmington (DE)

On-site
USD 130,000 - 205,000
Security Operations Engineer
Security Operations Engineer

Reserv • Atlanta (GA)

Hybrid
USD 80,000 - 100,000
Generous health-insurance package
401(k) retirement plan with employer matching
Competitive PTO policy
+1
M365 Administrator
M365 Administrator

Qnity • Wilmington (DE)

On-site
USD 110,000 - 160,000
Security Engineer
Security Engineer

Gravity IT Resources • Salt Lake City (UT)

On-site
USD 120,000 - 160,000
Security Engineer
Security Engineer

Insight Global • Naperville (IL)

On-site
USD 100,000 - 130,000