Title: Senior Microsoft O365 Security Engineer & Subject Matter Expert (SME)
Work Location: Washington, DC or Hybrid (1 day per week onsite/remote) - Potentially remote eligible pending customer approval.
duration: 6 months, possible extn.
Education & Experience: Bachelor of Science degree in Information Technology, Computer Science, or Engineering-related discipline and 10 years of prior relevant experience.
Senior Microsoft O365 Security Engineer & Subject Matter Expert (SME) to design and manage the implementation of Microsoft O365 security solutions across IT/OT environments. The M365 Security Engineer will provide the ISD with specialized expertise in configuring and deploying Microsoft 365 applications for securing the infrastructure and will be responsible for security configurations, compliance, identity and access management, and incident response across the Microsoft 365 ecosystem.
PRIMARY RESPONSIBILITIES
Provide strategic guidance, oversight and technical leadership for the organization s M365 application deployment across IT/OT environments
Implement and manage security solutions and compliance controls across the multi-tenant M365 ecosystem (MS Defender, Purview, Entra, Intune, One Drive, SharePoint, Teams)
Provide technical oversight and SME to MS Defender (EDR & Email Security), Purview (DLP & Compliance and Governance) activities and initiatives
Develop and implement strategies to MS Defender and Purview across on-Premise and Cloud environments (Azure & AWS)
Architect, design, and enhance MS Defender and Purview solutions and technologies
Perform risk assessments to identify gaps in MS Defender and Purview coverage
Research latest trends and threats in MS Defender and Purview and evasion techniques
Detailed understanding of M365 security products and tools
Interface with division stakeholders and facilitate technical working group/interchange meetings
Develop technical artifacts as part of M365 application deployment (requirements, architecture, test plan/scripts, implementation plans)
Collaborate with cross-functional teams to include Program/Project Management, M365 administrators, Data Center team, End User team, Security Engineering team, Security Operations Center (SOC), Compliance, and System Owners in the design and implementation of M365 security solutions
Apply systems & software development lifecycle in the development of design, test, and implementation artifacts
Coordinate with vendors and conduct analysis of alternatives (AoA) in evaluating M365 security solutions, controls and support Proof of Concept implementations
Develop scope, cost estimates, and implementation schedules for the deployment of M365 applications
Participate in the business continuity and Information Technology Disaster Recovery planning
BASIC QUALIFICATIONS
Ability to obtain Public Trust clearance
10+ years of experience providing technical leadership, guidance, and oversight for M365 security administration & deployments, security controls/compliance, telemetry, automation, and optimization
Strong hands-on experience designing and implementing end-to-end M365 security solutions across on-premises, hybrid, and cloud IT/OT environments
Possess strong technical knowledge of the M365 security architecture and security tools to include MS Defender, Purview, Entra, Intune, Sentinel, SharePoint, Teams
Experience utilizing MS Purview for data governance, DLP policy implementation, and eDiscovery
Experience utilizing MS Intune for GPO policy management
Experience deploying and managing MS Defender for threat protection
Experience configuring Entra ID for identity and access management
Experience with O365 integration, Azure AD, cloud services and security
Understanding of compliance requirements and security frameworks (NIST, ISO 27001, SOC2)
Proficiency in documenting and maintaining technical reports, procedures, architecture diagrams, and other relevant artifacts
Knowledge of threat vectors, vulnerabilities, risk assessment, and incident detection and response as part implementing M365 security controls
Ability to deliver formal presentations to the customer and stakeholders
Proven ability to work independently and as part of a collaborative environment
Excellent analytical, problem-solving, verbal and communications skills
Proficiency in PowerShell
Microsoft 365 administrator certifications such as MS-102, MS-900.