Cybersecurity Engineer
Azure Conditional Access
Azure Security
Azure Security Posture Management
Cloud Platforms
Cloud Security
Cybersecurity Analysis
Cybersecurity Tools
Data Security
Defender For Cloud
Endpoint Security
Engineer
Identity and Access Management
Information Security
InfoSec
Microsoft Azure Security
Microsoft Defender For Endpoint
Microsoft Defender Xdr
Microsoft Purview
Job Description
This Senior Cybersecurity Engineering Consultant position at LevelBlue LLC focuses on delivering and uplifting Microsoft security programs for clients across the United States (onsite). You will lead Microsoft Purview engagements, harden Microsoft Defender XDR and Entra ID security in real client tenants, and produce client-ready artifacts that support execution and operational handover.
Key Responsibilities
- Lead Purview engagements including current-state assessment, target design, phased rollout, and configuration of scoped capabilities such as information protection, DLP, audit, and related controls.
- Implement and harden Microsoft Defender XDR and Entra ID security, including Conditional Access and identity-protection patterns, aligned to the client’s operating model rather than a demo tenant.
- Deliver Azure security posture assessments and guided hardening covering landing-zone and control-plane hygiene, Defender for Cloud, and a prioritized remediation roadmap.
- Where in scope, perform assessment-level Active Directory and hybrid identity work such as privilege exposure, delegation considerations, legacy protocol exposure, and provide a prioritized hardening roadmap.
- Produce client-ready artifacts including gap analyses, configuration baselines, implementation plans, and an operational handover that can be executed.
- Run workshops with security, compliance, identity, and IT stakeholders to capture requirements, decisions, risks, and scope changes.
- Support pre-sales by providing effort estimates, defining technical scope, and shaping solutions.
Required Qualifications
- Senior consulting or professional-services delivery, including workshops, scope development, and producing artifacts accepted by the client.
- Hands-on Microsoft Purview implementation in a production or client tenant, with experience designing and configuring controls.
- Hands-on Microsoft Defender XDR, including at least Defender for Endpoint plus one of Identity, Office, or Cloud Apps.
- Hands-on Entra ID security, including Conditional Access, identity protection or risk patterns, and privileged-access basics as implemented in the tenant.
- Ability to assess requirements, recommend a target configuration, and provide practical how-to guidance, including what to phase in and what not to enable.
Technology Focus
- Microsoft Purview
- Microsoft Defender XDR
- Defender for Endpoint
- Entra ID
- Conditional Access
- Identity protection / risk patterns
- Microsoft Defender for Cloud
- Azure security posture assessments
- Active Directory
- Microsoft Sentinel
- AWS
Strongly Preferred
- Active Directory security assessments in hybrid estates, covering privilege, stale admin paths, legacy authentication, and a hardening roadmap.
- Azure security assessments and control implementation, including Defender for Cloud.
- Microsoft Sentinel enablement for Purview, Defender, and Entra telemetry, including connectors, data usefulness, and detections.
Useful Experience
- AWS or multi-cloud posture reviews.
- Network-edge reviews on occasion, such as firewall or VPN policy, logging, and segmentation.
Certifications (Desirable)
- Most relevant: SC-400; SC-300; SC-200
- Also useful: SC-500 (AZ-500); SC-100; CISSP or CISM
Location and Compensation
Location: United States (onsite)
Salary: USD 85,000 - 120,000 per year