ONSITE Security Engineer: Systems Engineer (Windows server, AWS IAAS migration), EntraID, Defender, Intune, Sentinel, SIEM, & DLP

  • Irvine, CA
  • Posted 10 hours ago | Updated 10 hours ago

Overview

On Site
$100,000 - $135,000
Full Time
No Travel Required

Skills

security engineer
systems engineer
systems administration
helpdesk
desktop support
ticketing
sentinel
defender
intune
aws
aws iaas
server migration
data center migration
dlp
purview
active directory
azure active directory
entraid
group policy
siem
soc
pentesting
pentetration testing
powershell
azure logic apps
kql
threat hunting
blue team
blackpoint
crowdstrike
log management
alerts
appsec
firewall configuration
ips
ids
edr
endpoint detection & response
log aggregation
anomaly detection
security incident investigation
splunk
qradar
windows server
cloud

Job Details

THIS ROLE IS ONSITE IN IRVINE, CA.
KORE1, a nationwide provider of staffing and recruiting solutions, has an immediate opening for a Security Engineer: Systems Engineer (Windows server, AWS IAAS migration), EntraID, Defender, Intune, Sentinel, SIEM, & DLP
We are seeking a highly skilled Systems Engineer with a strong security focus to join our team. The ideal candidate will have extensive experience in security monitoring, application monitoring, and network monitoring while being proficient in multiple security tools. A deep understanding of Microsoft Security Tool stacks and hands-on expertise in SIEM (Security Information and Event Management) solutions are essential for this role. This position will play a crucial role in designing, implementing, and maintaining our organization's security infrastructure to ensure a robust and resilient cybersecurity posture.
Essential Duties and Responsibilities
  • Design, deploy, and maintain security monitoring solutions across enterprise environments.
  • Implement and optimize Microsoft Security tools, including but not limited to Microsoft Defender for Endpoint, Defender for Office 365, Sentinel, Microsoft Purview, and Entra ID Protection.
  • Manage and enhance SIEM platforms to detect, analyze, and respond to security threats effectively.
  • Monitor and analyze system and network activity for security incidents, vulnerabilities, and performance issues.
  • Develop and refine incident response processes, ensuring swift detection and mitigation of security events.
  • Collaborate with IT and security teams to harden system configurations, enforce security policies, and improve overall security posture.
  • Conduct security assessments, penetration tests, and risk analyses to identify and mitigate security gaps.
  • Automate security workflows and incident response procedures using scripting and automation tools (e.g., PowerShell, Python, or Azure Logic Apps).
  • Stay updated with emerging security threats, vulnerabilities, and industry best practices to continuously enhance security defenses.
  • Assist in compliance efforts, ensuring adherence to frameworks such as NIST, CIS, ISO 27001, and SOC 2.
Qualifications
To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
  • Certifications such as Microsoft Certified: Security Operations Analyst, CISSP, CISM, CEH, or GIAC are a plus.
  • 5-7+ years of experience in systems engineering with a focus on security (for 2-3+ years).
    • Core infrastructure engineering skills required:
      • Windows systems engineering
      • AD / Azure AD (Entra ID), etc.
      • With the ability to step into production issues (Tier 1, 2, or 3) if the team needs help
      • AWS IaaS - migration to the cloud
    • Experience and knowledge of deploying, configuring, and managing the Microsoft Cloud and Security Stack - including but not limited to:
      • Azure AD / EntraID
      • Defender
      • Intune
      • Sentinel / Threat Protection
      • Email & Data Protection
      • Compliance and Governance and Network - Application Security
    • Expertise in SIEM technologies (e.g., Microsoft Sentinel, Splunk, QRadar, or similar).
    • Experience working with SOC tools is helpful (Blackpoint)
    • Experience with any DLP tools (Purview is a plus)
    • Experience in threat hunting, security incident investigation, and forensic analysis
    • Strong understanding of security monitoring, application monitoring, and network monitoring methodologies.
    • Familiarity with log aggregation, anomaly detection, and behavioral analytics.
    • Knowledge of firewall configurations, intrusion detection/prevention systems (IDS/IPS), endpoint detection & response (EDR), and network security.
    • Knowledge of container security, DevSecOps principles, and cloud-native security tools.
  • Experience working in environments compliant with HIPAA, GDPR, PCI-DSS, or SOX.
Compensation depends on experience but is typically $120-135K.
ABOUT KORE1
Specializing in professional and technical recruiting, KORE1 is committed to supporting top IT, Engineering, Creative, Scientific, Accounting and Finance professionals in their career paths. We build deep relationships with leading companies, connecting them to exceptional talent every day. With extensive industry expertise and unmatched opportunities, our goal is to provide a unique experience for our contractors and consultants as they prepare for their next role. We are passionate about matching the right people with the right companies.
Kore1 provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability or genetics. In addition to federal law requirements, Kore1 complies with applicable state and local laws governing nondiscrimination in employment in every location in which the company has facilities. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training. Kore1 expressly prohibits any form of workplace harassment based on race, color, religion, gender, sexual orientation, gender identity or expression, national origin, age, genetic information, disability, or veteran status. Improper interference with the ability of Kore1's employees to perform their job duties may result in discipline up to and including discharge.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.