Cyber Security Administrator

System Soft Technologies

Rosemont (IL)

On-site

USD 90,000 - 140,000

Full time

13 hours ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

System Soft Technologies seeks a hands-on Cybersecurity Administrator to join the Information Security team in Rosemont, IL. This role focuses on administering, hardening, and operating security controls across a hybrid Azure and on‑prem environment.

You will work on incident response, identity hardening, cloud security engineering, and vulnerability remediation, leveraging Defender XDR, Sentinel, Entra ID, and automation to strengthen security across the ecosystem.

Qualifications

  • 3–5+ years IT experience with at least 3 years in Cybersecurity.
  • 2+ years hands-on with Microsoft technologies in admin/engineering/operational capacity.
  • Advanced cybersecurity certifications in good standing (e.g., CEH, OSCP, AZ-500, SC-300).
  • Deep, hands-on knowledge of Defender (Cloud/Endpoint/XDR), Intune, Sentinel, and Entra ID.
  • Extensive experience operating hybrid cloud security architecture and controls.
  • Strong background in security tooling administration, configuration, and tuning.
  • Proven experience with endpoint security and modern device management (Intune).
  • Advanced knowledge of network security concepts, including VPNs, firewalls, and SASE.

Responsibilities

  • Operate, tune, and build detections in Microsoft Sentinel (KQL) and Microsoft Defender XDR to detect, investigate, and respond to threats.
  • Design and automate response with SOAR playbooks (Logic Apps / Sentinel) to reduce mean time to respond.
  • Lead and coordinate hands-on incident response for data breaches, malware outbreaks, and identity compromises across cloud and on‑prem.
  • Partner with Security and Risk leadership to translate policies and frameworks into enforceable controls.
  • Develop, test, and validate disaster recovery and resilience strategies from a security perspective.
  • Engineer and administer Microsoft Entra ID: CA, PIM, and hybrid identity management.
  • Coordinate third-party penetration testing and remediate findings.

Skills

Microsoft Sentinel
Microsoft Defender
Entra ID
Azure
PowerShell
Python
Terraform
Bicep
ARM
IAM expertise
Incident response
Cloud security
Hybrid IT

Education

CEH
OSCP
AZ-500
SC-300

Tools

Logic Apps
KQL

Job description

The Cybersecurity Administrator is a hands-on technical role on the Information Security team, responsible for Administering, hardening, and operating security controls across a hybrid environment spanning Microsoft Azure, Microsoft Entra ID, Microsoft 365, and traditional infrastructure. This is not a policy-focused position. The ideal candidate is an accomplished Cybersecurity Administrator who can walk into an existing complex environment, quickly understand the architecture, and immediately contribute to incident response, identity and access hardening, cloud security engineering, and vulnerability remediation.

Success in this role requires deep, current technical expertise in Information Security, Security Operations, Microsoft Ecosystem, a DevSecOps mindset, and fluency with automation and infrastructure-as-code / security-as-code practices. The organization operates in a highly regulated financial services environment, so the candidate must apply strong engineering discipline while meeting compliance obligations.

Responsibilities
Security Operations & Incident Response
  • Operate, tune, and build detections in Microsoft Sentinel (KQL for analytics rules, hunting queries, workbooks) and Microsoft Defender XDR to detect, investigate, and respond to threats.
  • Design and automate response with SOAR playbooks (Logic Apps / Sentinel automation rules) to reduce mean time to respond.
  • Lead and coordinate hands-on incident response for events such as data breaches, malware outbreaks, and identity compromises, including containment, eradication, and root-cause analysis across cloud and on-premises systems.
  • Partner with Security and Risk leadership to translate policies and frameworks into enforceable, technically implemented controls.
  • Develop, test, and validate disaster recovery and resilience strategies from a security perspective.
Access Management & Compliance
  • Engineer and administer Microsoft Entra ID: Conditional Access, PIM, Privileged Access Groups, authentication methods, identity protection, and hybrid identity.
  • Manage privileged access controls and conduct recurring, evidence-based access reviews across cloud and on-premises systems.
  • Ensure technical controls map to financial industry regulatory and compliance requirements; produce audit-ready evidence and documentation.
  • Coordinate with compliance officers on security-related regulatory requirements.
  • Maintain asset inventory and system/component security documentation.
  • Coordinate and oversee third-party penetration testing and remediate findings.
Security Infrastructure Management
  • Administer and continuously improve security solutions across our hybrid environment.
  • Harden PaaS/IaaS workloads and partners with engineering teams on secure-by-design cloud implementations (e.g., network segmentation, private endpoints, Key Vault, managed identities, RBAC).
  • Conduct regular security assessments and vulnerability scans; drive remediation to closure.
  • Perform periodic access and configuration reviews of enterprise systems.
  • Build automation and infrastructure-as-code solutions (PowerShell, Python, Bicep/ARM/Terraform) to deploy controls consistently and reliably.
  • Recommend and implement improvements, upgrades, and modernization of the security stack.
Leadership & Guidance
  • Provide security architecture guidance for cloud and infrastructure initiatives.
  • Mentor IT team members on security best practices and secure engineering patterns.
  • Partner with network, application, and database teams to implement secure solutions.
Qualifications
  • 3-5+ of Information Technology experience, with at least 3 years focused on Cybersecurity
  • Minimum of 2 years on Microsoft technologies in hands-on administration, engineering or operations capacity.
  • Advanced cybersecurity certifications in good standing (e.g., CEH, OSCP, AZ-500, SC-300, SC-200, SC-100).
  • Deep, hands-on knowledge of Microsoft services such as Defender (Cloud/Endpoint/XDR), Intune, Sentinel, and Entra ID, sufficient to operate and troubleshoot in a live environment on day one.
  • Extensive experience operating hybrid cloud security architecture and controls.
  • Strong background in security tooling administration, configuration, and tuning.
  • Proven experience with endpoint security and modern device management (Intune).
  • Advanced knowledge of network security concepts, including VPNs, firewalls, and SASE.
  • Demonstrated experience leading security monitoring, incident response, and day-to-day security operations
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Security & Systems Administrator
Senior Security & Systems Administrator

Alpha Global Search LLC • Secaucus (NJ)

On-site
USD 120,000 - 160,000
Security Administrator
Security Administrator

The Phoenix Group • New York (NY)

On-site
USD 120,000 - 180,000
Senior Cloud Security Engineer
Senior Cloud Security Engineer

Maestro Technologies, Inc. • Santa Monica (CA)

Hybrid
USD 150,000 - 210,000
Director, Cybersecurity
Director, Cybersecurity

Cybersecurity Jobs • Atlanta (GA)

On-site
USD 180,000 - 230,000
Security Engineering and Operations Manager
Security Engineering and Operations Manager

Assetliving • Dallas (TX)

On-site
USD 120,000 - 180,000
Senior Cloud Security Engineer
Senior Cloud Security Engineer

Eleven Recruiting • Santa Monica (CA)

On-site
USD 140,000 - 190,000
Azure Security Engineer
Azure Security Engineer

Zeektek • Sacramento (CA)

On-site
USD 140,000 - 170,000
Cyber Security Engineer
Cyber Security Engineer

Qualibar • United States

Hybrid
USD 120,000 - 180,000
Sr. Cloud Security Engineer (Remote)
Sr. Cloud Security Engineer (Remote)

inspiracareers • Oak Brook (IL)

Hybrid
USD 160,000 - 190,000
Identity & Security Engineer
Identity & Security Engineer

Coda Search│Staffing • Town of Texas (WI)

Hybrid
USD 110,000 - 170,000