Senior Cybersecurity Engineer

Teleion Consulting LLC.

Seattle (WA)

On-site

USD 155,000 - 200,000

Full time

22 hours ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Benefits package
Paid time off (PTO)
Company holidays
401(k)

Job summary

Teleion Consulting LLC. is seeking a Senior Cybersecurity Engineer to strengthen cloud security posture, mature incident response, and advance data security for enterprise clients.

The role covers detection engineering, real incidents, and Azure/multi‑cloud hardening within the Microsoft security ecosystem. The ideal candidate has deep hands-on experience with Microsoft Sentinel, Defender XDR, Defender for Cloud, Entra ID, Intune, and Purview, and leads real incidents from containment through

Qualifications

  • 7+ years of security engineering or security operations in enterprise settings.
  • Hands-on, production-grade experience across the Microsoft security stack.
  • Experience leading real incidents end-to-end including containment and reporting.
  • Strong KQL skills: create rules, hunting queries, MITRE mapping.

Responsibilities

  • Configure and operate the Microsoft security stack in client environments.
  • Lead end-to-end incident response for real security events.
  • Coordinate with MXDR or SOC providers on escalation and handoffs.
  • Develop automation via PowerShell and Microsoft Graph API.
  • Design and tune Purview DLP policies and sensitivity labels.

Skills

Security engineering
Microsoft security stack
KQL
PowerShell
Microsoft Purview
Incident response leadership
Azure security
Security automation
Cloud security
SOC coordination
Certification prep (AZ-500, CISSP etc)

Education

Certifications: AZ-500, SC-200, SC-400, SC-100, GCIH, GCFA, CISSP

Tools

Microsoft Sentinel
Defender XDR
Defender for Cloud
Entra ID
Intune
Microsoft Purview
PowerShell
Microsoft Graph API

Job description

  • Must be living in the following states to be considered: Florida (FL), Georgia (GA) , Illinois (IL), Iowa (IA), Nevada (NV), North Carolina (NC), South Dakota (SD), Texas (TX), Washington (WA), Virginia (VA), Wisconsin (WI)

Senior Cybersecurity Engineer, Cloud & IR

Come join one of Pacific Northwest's Best Places to work! Our culture at Teleion embodies the spirit of a startup with a sense of ownership and an employee-led business model. Employees can grow their career and have fun while doing it!

About the Role

Teleion is seeking a Senior Cybersecurity Engineer to strengthen cloud security posture, mature incident response capabilities, and advance data security and zero trust for our enterprise clients. This is a hands‑on, client‑facing contract role spanning detection engineering, real incident ownership, Microsoft Purview and DLP, and Azure cloud hardening — all within the Microsoft security ecosystem. The ideal candidate brings deep, production-configured expertise across the full Microsoft security stack and has led real incidents from containment through post‑incident reporting.

Responsibilities
  • Configure, tune, and operate the full Microsoft security stack in production client environments: Microsoft Sentinel, Defender XDR, Defender for Cloud, Entra ID, Intune, and Microsoft Purview.
  • Lead incident response for real security events — account compromise, data exfiltration, insider risk, BEC — through the full lifecycle: containment, eradication, recovery, evidence preservation, and post-incident reporting.
  • Coordinate with MXDR or managed SOC providers on escalation quality, handoff, and case closure standards.
  • Author and maintain KQL analytic rules and hunting queries in Microsoft Sentinel, map detections to MITRE ATT&CK, close coverage gaps, and tune for signal quality and ingestion cost.
  • Develop SOAR playbooks to reduce false positive volume and automate analyst workflows.
  • Design, deploy, and tune Microsoft Purview DLP policies across email, endpoint, SharePoint, OneDrive, Teams, and cloud apps — driving findings to closure, not just alerting.
  • Implement and maintain sensitivity labels, auto-labeling at scale, Insider Risk Management, and eDiscovery support.
  • Harden Azure and multi‑cloud environments against benchmarks: remediate Defender for Cloud findings, drive secure score improvement, and address cloud identity and entitlement risk.
  • Advance zero trust maturity across identity, device, network, application, and data pillars using Conditional Access, PIM, device compliance, and least‑privilege access patterns.
  • Build PowerShell and Microsoft Graph API automations to scale security operations, reporting, and remediation.
  • Design and run tabletop exercises to test and mature the client's incident response capability.
Requirements
  • 7 or more years of security engineering or security operations experience in enterprise environments.
  • Deep, production‑configured hands‑on experience across the full Microsoft security stack: Sentinel, Defender XDR, Defender for Cloud, Entra ID, Intune, and Microsoft Purview.
  • Demonstrated leadership of real security incidents — not tabletop only — through the full lifecycle including containment, eradication, recovery, and post‑incident reporting.
  • Strong KQL proficiency: authoring analytic rules, developing hunting queries, tuning for cost and signal quality, and mapping to MITRE ATT&CK.
  • Direct, demonstrable Microsoft Purview experience: DLP policy design and tuning, sensitivity labels, Insider Risk Management, and eDiscovery.
  • Experience hardening Azure environments: remediating Defender for Cloud findings, driving secure score improvement, and addressing cloud identity and entitlement risk.
  • Experience implementing zero trust controls across multiple pillars using Conditional Access, PIM, and privileged access management.
  • Proficiency in PowerShell and Microsoft Graph API for security automation.
  • Experience coordinating with MXDR or managed SOC providers on escalation and case quality.
  • Certifications preferred: AZ-500, SC-200, SC-400, SC-100, GCIH, GCFA, or CISSP. Digital forensics experience in cloud and M365 environments is a plus.

Teleion offers full benefits, PTO, holiday, 401(k). See how other employees have reviewed us on Glassdoor. We are excited to announce we have made in on Seattle Business Magazines "Washingtons Best Place to Work" for the 6th year in a row. (https://seattlebusinessmag.com/100-best-companies-work/100-best-companies-work-midsize)

Teleion is minority owned and an Equal Opportunity Employer – We welcome all races, sexual orientations, gender identities, veterans, religions and disabilities.

Salary range: $155,000 - $200,000 - Based on experience

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Vulnerability Management Engineer
Vulnerability Management Engineer

Teleion Consulting LLC. • Seattle (WA)

On-site
USD 100,000 - 175,000
Full benefits
PTO
Holiday
+1
Cyber Security Analyst
Cyber Security Analyst

Clinisoltech • Huntsville (AL)

Hybrid
USD 80,000 - 90,000
Azure Cloud Engineer – Cybersecurity
Azure Cloud Engineer – Cybersecurity

EdgeByte Solutions • Northern (KY)

Hybrid
USD 75,000 - 150,000
Senior AI Security Engineer
Senior AI Security Engineer

Teleion Consulting LLC. • Seattle (WA)

On-site
USD 155,000 - 200,000
Full benefits
PTO
Holiday
+1
Senior Cloud Engineer
Senior Cloud Engineer

Thales Defense & Security, Inc. • Clarksburg (MD)

Hybrid
USD 124,290 - 158,815
Competitive salary
Yearly incentive plan
Medical insurance for self and family
+6
Cloud Security Engineer – Cleared (Polygraph)
Cloud Security Engineer – Cleared (Polygraph)

True Tandem • Reston (VA)

On-site
USD 175,000 - 190,000
Health insurance
Dental and vision plans
Paid time off (PTO)
+1
Senior Detection and Response Analyst
Senior Detection and Response Analyst

Prestige Staffing • Dallas (TX)

On-site
USD 120,000 - 180,000
Contract extension potential
Remote work
Career growth
+2
Senior Cloud Engineer
Senior Cloud Engineer

TDI (Tetrad Digital Integrity) • Arlington (VA)

On-site
USD 120,000 - 150,000
Security Analyst I
Security Analyst I

ABC Legal Services • Seattle (WA)

Hybrid
USD 90,000 - 105,000
Health insurance
Dental insurance
Vision insurance
+5
Cloud Engineer
Cloud Engineer

Advisor Group Inc. • Scottsdale (AZ)

Hybrid
USD 140,000 - 160,000
Health insurance
Dental insurance
401(k)
+2