Senior Microsoft Security Engineer

University of Maryland Global Campus

Adelphi (MD)

On-site

USD 90,000 - 120,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Tuition remission for staff and dependents after two years
Inclusive working environment
Employee accommodations available

Job summary

The University of Maryland Global Campus seeks an experienced IT Security Expert to lead the execution of Microsoft security solutions. The successful candidate will have over 10 years of experience, with at least 7 years focused on IT security. Responsibilities include developing security policies, managing incident responses, and ensuring the security of the institution’s infrastructure. Qualifications include expertise in firewalls, intrusion detection, and experience with Amazon Web Services. The position offers tuition remission and a collaborative working environment.

Qualifications

  • 10+ years of professional experience with 7+ years in IT security.
  • Hands-on experience with enterprise system administration across multiple operating systems.
  • Experience developing security policies, procedures, and incident response plans.

Responsibilities

  • Lead the educational institution's Microsoft security 'cloud first' strategy.
  • Implement Microsoft security best practices to maintain security posture.
  • Manage incident response for network security events.

Skills

Enterprise aware (change control)
Secure solutions development
Middleware security
Risk management and security risk assessments
API’s and protocols
Authentication and authorization (SSO, MFA)

Education

Bachelor's degree in a relevant field

Tools

Firewalls
Intrusion detection systems
Vulnerability scanning applications
Amazon Web Services
Splunk
Cisco ASA
Palo Alto

Job description

* Fully leverage the educational institutions Microsoft A5 license suite of products; in particular as it pertains to the industry leading suit of security products, processes, and strategies* Lead the educational institutions Microsoft security “cloud first” strategy leading to fully leverage SDN (Software Defined Networking) Zero Trust, and Least Privilege strategies* Design, implement, and maintain Microsoft security solutions for the educational institution's infrastructure* Ensure that Microsoft operating systems are configured securely and that security patches are regularly applied* Manage the configuration and effective use of Microsoft security products, including Microsoft Defender ATP, Azure Security Center, and Microsoft Information Protection.* Implement Microsoft security best practices to maintain the security posture of the educational institution's infrastructure.* Collaborate with Infrastructure/ITSM/Technical teams to implement security requirements in new and existing technology solutions.* Stay up-to-date with the latest security threats and industry trends, and apply this knowledge to improve security protocols within the educational institution.* Serve as a security expert in network efforts, helping project teams comply with* enterprise and IT security policies, industry regulations, and best practices.* Lead and execute projects on our security roadmap.* Adhere to existing risk management frameworks, such as COBIT, ITIL, and ISO 27002.* Manage incident response for network security events.* Develop and maintain IT security policies.* Research, design, and advocate new technologies, architectures, and security* products that will support security requirements for the enterprise and its customers,* business partners, and vendors.* Support vulnerability assessments on various types of networks and topologies;* Execute risk and vulnerability assessments and remediation activities.* Analyze output from network vulnerability assessments, recommend mitigation strategies and resolve any security incidents through work with pertinent business departments.* Review and provide feedback on security plans and procedures regarding all aspects of LAN, WAN or MANs, as applicable;* Review and provide input into network designs to ensure compliance with security and enterprise architecture.* Provide input and visibility into emerging security technologies, deployment strategies and other security protocols to ensure awareness within the IT security branch.* Build/enhance security architecture and configure network to enhance the security posture of the enterprise.* Review in-house and 3rd-party applications/code for security vulnerabilities and best practices.* Participate in Software Development Lifecycle: code review, QA security testing, launches, etc.* Develop and/or implement automated security testing tools where possible.* Participate in the development of security-related tools and applications, such as multi-platform cookie-based authentication and internal security libraries/frameworks.* Train engineers on common security problems and best practices for writing secure code.* Provide security input on overall software architecture.* Perform hands-on testing of applications, as well as build and enforce information risk management requirements and structure, including providing practical secure architecture skills and developing and implementing Information Security best practices.**Skills****:*** Enterprise aware (change control, downstream impacts, understanding of cause and effect, change windows, etc.)* Recognized as a strategic thinker and is results oriented* Demonstrated effective strong team player and self-motivator. Ability to work and interface internally with a IT and other functional support groups with minimal guidance* Demonstrated successful experience in a customer-facing role* Demonstrated communicator both written and verbal, with effective presentation delivery and meeting facilitation* Demonstrated effective time management, organizational and documentation skills* Good analytical and troubleshooting skills with strong attention to detail- Basic skills needed include: * Secure solutions development * Middleware security * n-tier apps dev infrastructure * Compliance – PCI, GLB, GLBA, CMMC. GDPR, etc. * Risk management and security risk assessments * Code review, reverse engineering * API’s and protocols * Authentication and authorization. SSO (Single Sign On), MFA (Multi- Factor Auth.).**Education & Experience Requirements****:*** 10 years or more of professional experience with 7 or more years in IT security including security policy development, security architecture models, and information security regulatory compliance* Must have the knowledge of IT security technologies such as firewalls, intrusion detections systems, antivirus, patch management, etc., and the interest and experience to work on security policy and architecture* Hands-on experience with the following technologies: enterprise system administration across multiple operating systems, IPS management (i.e., Cisco ASA, Palo Alto), vulnerability scanning applications, Splunk* Experience in engineering and enterprise system administration roles.* Experience developing a standard set of metrics that measure our security posture on a* monthly/weekly basis.* Proven experience developing security policies, procedures, risk registers and incident* response plans* Intermediate to advanced knowledge of information security concepts.* Experience with one or more applications development languages such as Ruby on Rails, Java, C/C++, .NET.* Solid knowledge of and experience with secure web architectures, tools and processes* Knowledge of network architecture and design, network Security, wireless Security and client/server security. Very strong computer networking skills and understanding of networking protocols.* Security of virtual machine environments is highly desirable.* Knowledge of vulnerability assessment/network discovery and associated tools* Understands infrastructure monitoring* Knowledge of securing Linux and Windows systems.* Experience with various types of firewalls and technologies* Demonstrated process improvement experience* Previous application development experience is very helpful for secure code reviews* Hands-on experience using multiple Amazon Web Services technologies to support an enterprise environment.* Prior experience as a team lead or role mentoring junior team members.* Experience with threat detection and incident management for web applications that deal with PI**Preferred Experience Requirements****:**The University of Maryland Global Campus Global Campus (UMGC) is committed to creating and maintaining a welcoming and inclusive working environment for people of all abilities. UMGC is dedicated to the principle that no qualified individual with a disability shall, based on disability, be excluded from participation in or be denied the benefits of the services, programs, or activities of the University, or be subjected to discrimination. For information about UMGC’s Reasonable Workplace Accommodation Policy or to request an accommodation, applicants/candidates can contact Employee Accommodations via email at **Tuition Remission:** Immediate availability for Regular Exempt Staff. Spouses and dependent children are eligible for undergraduate tuition remission after two years of service. **NOTE: For part-time employees (at least 50 percent of the time), tuition remission benefits are prorated.**
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Microsoft Security Engineer
Senior Microsoft Security Engineer

Stateside • Adelphi (MD)

On-site
USD 116,000 - 131,000
Generous Time Off
Comprehensive Health Coverage
Retirement Plans
+1
Senior Microsoft Security Engineer
Senior Microsoft Security Engineer

UMGC • United States

Hybrid
USD 116,000 - 131,000
Generous Time Off
Health Coverage
Life Insurance and LTD
+3
Cybersecurity Threat Hunter
Cybersecurity Threat Hunter

University of Maryland Global Campus • Adelphi (MD)

Hybrid
USD 120,000 - 135,000
Generous time off
Comprehensive health coverage
Flexible spending accounts
+1
Manager - Network Security
Manager - Network Security

SHI International • New Jersey

Hybrid
USD 150,000 - 200,000
Information Security Analyst II
Information Security Analyst II

Florida Gulf Coast University • Fort Myers (FL)

On-site
USD 80,000 - 100,000
Security Consultant - Endpoint
Security Consultant - Endpoint

SHI International • Northern (KY)

Hybrid
USD 110,000 - 145,000
Medical benefits
401K match
Flexible spending
Systems Engineer - Security
Systems Engineer - Security

PAE Government Services Inc. • Columbia (MD)

On-site
USD 155,000 - 175,000
Health, dental, and vision insurance
Paid time off
Retirement benefits (401(k) matching)
+1
Security Engineer
Security Engineer

Insight Global • Atlanta (GA)

On-site
USD 105,000 - 130,000
Sr. Application Engineer, Cyber Security
Sr. Application Engineer, Cyber Security

inmar • Winston-Salem (NC)

On-site
USD 120,000 - 180,000
Director, Cybersecurity and Risk
Director, Cybersecurity and Risk

Arizona State University • Scottsdale (AZ)

On-site
USD 140,000 - 190,000
Hybrid work schedule
Tuition reductions
Medical, dental, and vision insurance
+1