Role: Windows File Share Security Engineer
Location: 2 days/week onsite Quincy, MA (Will be remote after 3 months)
Exp: 8+ yrs
Duration: 12+ months
Note: Candidate must be local to MA
As a Windows File Share Security Engineer, you will be a member of our highly technical production support team, who support security for the unstructured data environment. You will be responsible for the ongoing management of secure enterprise file sharing environments. This role ensures the confidentiality, integrity, and availability of shared data by managing permissions, enforcing access controls, monitoring usage, and protecting file systems against unauthorized access, data loss, and cyber threats.
What you will be responsible for:
As Windows File Share Security Engineer, you will:
- Maintain secure file sharing platforms including Windows file servers and NAS storage devices.
- Administer and manage share-level and NTFS permissions using role-based and least-privilege access models.
- Conduct regular access reviews and audits to ensure appropriate user and group permissions.
- Monitor file share activity for anomalies, unauthorized access, or potential data exfiltration using logging and security tools.
- Troubleshoot access issues and support users while maintaining security standards.
- Respond to security incidents related to file services and participate in remediation efforts.
- Utilize expertise for security-related problem-solving and risk mitigation.
- Maintain documentation for file share architecture, access controls, and procedures.
What we value:
These skills will help you succeed in this role:
- Contributing to a wide variety of security initiatives as a dependable and flexible resource.
- Experience with development and/or scripting languages.
- Experience in securing data.
- Ability to follow policies and procedures; attention to detail.
- Ability to work collaboratively with team members as well as stakeholders across the organisation.
- Strong critical thinking skills and decision-making ability around complex problems.
- Excellent oral and written communication skills with technical and non-technical stakeholders.
Education & Preferred Qualifications:
- Associate's/Bachelor's degree in Information Technology, Cybersecurity, or related field (or equivalent experience).
- 5+ years' experience administering Windows file servers or enterprise storage environments.
- Security or infrastructure certifications (Security+, CISSP, Microsoft, or similar) a plus.
Additional requirements:
- Experience with NTFS and share permissions.
- Strong understanding of security principles including least privilege, RBAC, and auditing.
- Experience troubleshooting permissions and access issues in complex environments.
- Experience in handling and administering permissions on storage devices like NetApp, EMC, etc.
- Knowledge of automation tools, such as PowerShell, Power Automate, and Power BI.
- Familiarity with Active Directory and Group Policy.
- Familiarity with SMB/CIFS protocols.
- Working experience on Varonis DatAdvantage a plus.
- Basic Microsoft Office operations.