Security Administrator

Kuvare Holdings

California (MO)

Hybrid

USD 120,000 - 165,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Kuvare Holdings is seeking a hands-on Security Administrator to join the Information Security team. The role focuses on engineering, hardening, and operating security controls across a hybrid environment spanning Microsoft Azure, Entra ID, and Microsoft 365.

You will directly contribute to incident response, identity hardening, cloud security engineering, and vulnerability remediation from day one. The ideal candidate will have deep technical security expertise, a DevSecOps mindset, and fluency

Qualifications

  • 7+ years of Information Technology experience, with at least 3 years focused on cybersecurity.
  • Minimum of 4 years on Microsoft technologies in hands-on administration, engineering, or operations capacity.
  • Advanced cybersecurity certifications in good standing (e.g., CEH, OSCP, AZ-500, SC-300, SC-200, SC-100).
  • Deep, hands-on knowledge of Microsoft services such as Defender (Cloud/Endpoint/XDR), Intune, Sentinel, and Entra ID, sufficient to operate and troubleshoot in a live environment on day one.
  • Extensive experience operating hybrid cloud security architecture and controls.
  • Strong background in security tooling administration, configuration, and tuning.
  • Proven experience with endpoint security and modern device management (Intune).
  • Advanced knowledge of network security concepts, including VPNs, firewalls, and SASE.
  • Demonstrated experience leading security monitoring, incident response, and day-to-day security operations.

Responsibilities

  • Operate, tune, and build detections in Microsoft Defender XDR and Sentinel.
  • Design and automate response with SOAR playbooks (Logic Apps / Sentinel automation rules).
  • Lead and coordinate hands-on incident response for data breaches, malware outbreaks, and identity compromises across cloud and on‑premises systems.
  • Partner with Security and Risk leadership to translate policies into enforceable, technically implemented controls.
  • Develop, test, and validate disaster recovery and resilience strategies from a security perspective.
  • Engineer and administer Microsoft Entra ID: CA, PIM, Privileged Access Groups, and hybrid identity.
  • Coordinate third-party penetration testing and remediate findings.
  • Harden PaaS/IaaS workloads and secure-by-design cloud implementations (RBAC, private endpoints, Key Vault).
  • Perform regular security assessments and vulnerability scans; drive remediation to closure.
  • Build automation and IaC solutions (PowerShell, Python, Terraform) to deploy controls reliably.
  • Provide security architecture guidance for cloud and infrastructure initiatives.
  • Mentor IT team members on security best practices and secure engineering patterns.
  • Partner with network, application, and database teams to implement secure solutions.

Skills

Cybersecurity
Security Operations
Incident Response
Cloud Security
DevSecOps
Hybrid Cloud
Automation

Tools

Microsoft Sentinel
Microsoft Defender XDR
Entra ID
Intune
PowerShell
Python
Terraform
Bicep/ARM

Job description

About the role

The Security Administrator is a hands-on technical role on the Information Security team, responsible for engineering, hardening, and operating security controls across a hybrid environment spanning Microsoft Azure, Microsoft Entra ID, Microsoft 365, and traditional infrastructure. This is not a policy-focused position. The ideal candidate is an accomplished Security Administrator who can walk into an existing complex environment, quickly understand the architecture, andimmediatelycontribute to incident response, identity and access hardening, cloud security engineering, and vulnerability remediation.

Success in this role requires deep, current technicalexpertisein Information Security, Security Operations, Microsoft Ecosystem, aDevSecOpsmindset, and fluency with automation and infrastructure-as-code / security-as-code practices. The organizationoperatesin a highly regulated financial services environment, so the candidate must apply strong engineering discipline while meeting compliance obligations.

What you’ll do
Security Operations & Incident Response
  • Operate, tune, and build detections inMicrosoft Sentinel(KQL foranalytics rules, hunting queries, workbooks) andMicrosoft Defender XDRto detect, investigate, and respond to threats.

  • Design and automate response withSOAR playbooks(Logic Apps / Sentinel automation rules) to reduce mean time to respond.

  • Lead and coordinate hands-on incidentresponsefor events such as data breaches, malware outbreaks, and identitycompromises, including containment, eradication, and root-cause analysis across cloud and on-premises systems.

  • Partner with Security and Risk leadership to translate policies and frameworks into enforceable, technically implemented controls.

  • Develop, test, andvalidatedisaster recovery and resilience strategies from a security perspective.

Access Management & Compliance
  • Engineer and administerMicrosoft Entra ID: Conditional Access, PIM, Privileged Access Groups, authentication methods, identity protection, and hybrid identity.

  • Manage privileged access controls and conduct recurring, evidence-based access reviews across cloud and on-premises systems.

  • Ensure technical controls map tofinancial industryregulatory and compliance requirements; produce audit-ready evidence and documentation.

  • Coordinate with compliance officers on security-related regulatory requirements.

  • Maintain asset inventory and system/component security documentation.

  • Coordinate and oversee third-party penetration testing and remediate findings.

Security Infrastructure Management
  • Administer and continuously improve security solutions across our hybrid environment.

  • Harden PaaS/IaaS workloads andpartnerswith engineering teams on secure-by-design cloud implementations (e.g., network segmentation, private endpoints, Key Vault, managed identities, RBAC).

  • Conduct regular security assessments and vulnerability scans; drive remediation to closure.

  • Perform periodic access and configuration reviews of enterprise systems.

  • Buildautomation and infrastructure-as-codesolutions (PowerShell, Python, Bicep/ARM/Terraform) to deploy controls consistently and reliably.

  • Recommend and implement improvements, upgrades, and modernization of the security stack.

Leadership & Guidance
  • Providesecurity architecture guidance for cloud and infrastructure initiatives.

  • Mentor IT team members on security best practices and secure engineering patterns.

  • Partner with network, application, and database teams to implement secure solutions.

Qualifications
  • 7+ years of Information Technology experience, with at least3 years focused on Cybersecurity

  • Minimum of 4 years on Microsoft technologiesin hands-onadministration,engineeringor operations capacity.

  • Advanced cybersecurity certifications in good standing (e.g., CEH, OSCP, AZ-500, SC-300, SC-200, SC-100).

  • Deep, hands-on knowledge of Microsoft servicessuch as Defender (Cloud/Endpoint/XDR), Intune, Sentinel, and Entra ID, sufficient tooperateand troubleshoot in a live environment on day one.

  • Extensiveexperience operatinghybrid cloud security architecture and controls.

  • Strong background in security tooling administration, configuration, and tuning.

  • Proven experience with endpoint security and modern device management (Intune).

  • Advanced knowledge of network security concepts, includingVPNs, firewalls, and SASE.

  • Demonstrated experience leading security monitoring, incident response, and day-to-day security operations.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Systems Security Administrator
Systems Security Administrator

Confidential Company • Dallas (TX)

On-site
USD 80,000 - 100,000
Security Administrator
Security Administrator

Kuvare • Baton Rouge (LA)

Hybrid
USD 100,000 - 125,000
Security Engineer
Security Engineer

Gravity IT Resources • Salt Lake City (UT)

On-site
USD 120,000 - 160,000
Enterprise Services - Enterprise Technical Team Lead
Enterprise Services - Enterprise Technical Team Lead

F12.net • California (MO)

Hybrid
USD 130,000 - 170,000
Security Administrator
Security Administrator

Kuvare • Rosemont (IL)

On-site
USD 100,000 - 125,000
Security Engineer
Security Engineer

CRG • Greensboro (NC)

On-site
USD 90,000 - 120,000
Senior Cloud Security Engineer – Microsoft Security & Cybersecurity Architecture 3665754
Senior Cloud Security Engineer – Microsoft Security & Cybersecurity Architecture 3665754

Axiom Path • Los Angeles (CA)

Hybrid
USD 140,000 - 190,000
Healthcare coverage
Retirement matching
Paid vacation
+1
Security Administrator
Security Administrator

Kuvare • Cedar Rapids (IA)

On-site
USD 100,000 - 125,000
Security Administrator
Security Administrator

Kuvare • Des Moines (IA)

On-site
USD 100,000 - 125,000
Senior Security Engineer
Senior Security Engineer

Recru • Houston (TX)

On-site
USD 120,000 - 170,000