Turn this role into an interview — a resume and cover letter built around what this employer wants.
Kuvare Holdings is seeking a hands-on Security Administrator to join the Information Security team. The role focuses on engineering, hardening, and operating security controls across a hybrid environment spanning Microsoft Azure, Entra ID, and Microsoft 365.
You will directly contribute to incident response, identity hardening, cloud security engineering, and vulnerability remediation from day one. The ideal candidate will have deep technical security expertise, a DevSecOps mindset, and fluency
The Security Administrator is a hands-on technical role on the Information Security team, responsible for engineering, hardening, and operating security controls across a hybrid environment spanning Microsoft Azure, Microsoft Entra ID, Microsoft 365, and traditional infrastructure. This is not a policy-focused position. The ideal candidate is an accomplished Security Administrator who can walk into an existing complex environment, quickly understand the architecture, andimmediatelycontribute to incident response, identity and access hardening, cloud security engineering, and vulnerability remediation.
Success in this role requires deep, current technicalexpertisein Information Security, Security Operations, Microsoft Ecosystem, aDevSecOpsmindset, and fluency with automation and infrastructure-as-code / security-as-code practices. The organizationoperatesin a highly regulated financial services environment, so the candidate must apply strong engineering discipline while meeting compliance obligations.
Operate, tune, and build detections inMicrosoft Sentinel(KQL foranalytics rules, hunting queries, workbooks) andMicrosoft Defender XDRto detect, investigate, and respond to threats.
Design and automate response withSOAR playbooks(Logic Apps / Sentinel automation rules) to reduce mean time to respond.
Lead and coordinate hands-on incidentresponsefor events such as data breaches, malware outbreaks, and identitycompromises, including containment, eradication, and root-cause analysis across cloud and on-premises systems.
Partner with Security and Risk leadership to translate policies and frameworks into enforceable, technically implemented controls.
Develop, test, andvalidatedisaster recovery and resilience strategies from a security perspective.
Engineer and administerMicrosoft Entra ID: Conditional Access, PIM, Privileged Access Groups, authentication methods, identity protection, and hybrid identity.
Manage privileged access controls and conduct recurring, evidence-based access reviews across cloud and on-premises systems.
Ensure technical controls map tofinancial industryregulatory and compliance requirements; produce audit-ready evidence and documentation.
Coordinate with compliance officers on security-related regulatory requirements.
Maintain asset inventory and system/component security documentation.
Coordinate and oversee third-party penetration testing and remediate findings.
Administer and continuously improve security solutions across our hybrid environment.
Harden PaaS/IaaS workloads andpartnerswith engineering teams on secure-by-design cloud implementations (e.g., network segmentation, private endpoints, Key Vault, managed identities, RBAC).
Conduct regular security assessments and vulnerability scans; drive remediation to closure.
Perform periodic access and configuration reviews of enterprise systems.
Buildautomation and infrastructure-as-codesolutions (PowerShell, Python, Bicep/ARM/Terraform) to deploy controls consistently and reliably.
Recommend and implement improvements, upgrades, and modernization of the security stack.
Providesecurity architecture guidance for cloud and infrastructure initiatives.
Mentor IT team members on security best practices and secure engineering patterns.
Partner with network, application, and database teams to implement secure solutions.
7+ years of Information Technology experience, with at least3 years focused on Cybersecurity
Minimum of 4 years on Microsoft technologiesin hands-onadministration,engineeringor operations capacity.
Advanced cybersecurity certifications in good standing (e.g., CEH, OSCP, AZ-500, SC-300, SC-200, SC-100).
Deep, hands-on knowledge of Microsoft servicessuch as Defender (Cloud/Endpoint/XDR), Intune, Sentinel, and Entra ID, sufficient tooperateand troubleshoot in a live environment on day one.
Extensiveexperience operatinghybrid cloud security architecture and controls.
Strong background in security tooling administration, configuration, and tuning.
Proven experience with endpoint security and modern device management (Intune).
Advanced knowledge of network security concepts, includingVPNs, firewalls, and SASE.
Demonstrated experience leading security monitoring, incident response, and day-to-day security operations.