CybersecurityJobs.io
← Back to all jobs

Job Description

This role is an on-site, senior individual contributor position focused on designing and delivering advanced Microsoft cloud security solutions for KAMIND IT and its clients. The work centers on AI security, DSPM, Microsoft Purview, and expanding Microsoft Sentinel capabilities through integrations.

Role Overview

The Security Analyst Level II designs and delivers advanced Microsoft cloud security solutions as part of KAMIND IT engagements. Primary focus areas include AI & data security architecture, Microsoft Sentinel architecture, and client-facing security architecture and innovation.

AI & Data Security Architecture (Primary Focus Areas)

  • Design and build AI security solutions for KAMIND and client environments to secure Microsoft 365 Copilot, Azure OpenAI, and other AI workloads, covering identity, data exposure, prompt and response risks, governance, and acceptable-use guardrails.
  • Design and deliver DSPM (Data Security Posture Management) architectures to discover, classify, and reduce risk across client data estates.
  • Build Microsoft Purview deployments across its feature set, including Information Protection, Data Loss Prevention, Insider Risk, eDiscovery, Compliance Manager, Communication Compliance, and Records Management.
  • Design Purview integration with client data lakes including Fabric/OneLake, Azure Data Lake, and third-party sources to extend classification, sensitivity labeling, and governance across structured and unstructured data.

Microsoft Sentinel Architecture

  • Deploy advanced Microsoft Sentinel solutions, including integration of third-party services (SaaS platforms, network devices, identity providers, EDR/XDR, threat intel, and ITSM) via connectors, Logic Apps, and custom ingestion.
  • Design KQL analytics, workbooks, SOAR playbooks, and detection strategies aligned to MITRE ATT&CK.
  • Contribute architectural direction to advanced threat hunting and support post-incident improvements.

Client Architecture & Innovation

  • Lead security analyst activities on client engagements, including running design workshops, producing architecture artifacts, and guiding implementation teams.
  • Translate client business requirements, compliance obligations (CMMC, NIST 800-171, ISO, SOC 2, PCI, HIPAA), and risk tolerance into concrete Microsoft security architectures.
  • Evaluate new Microsoft capabilities and third-party technologies and shape them into repeatable KAMIND service offerings.
  • Advance CMMC and related compliance architectures for commercial and AOS-G (GCC High) clients.
  • Prepare executive-level architecture briefings, decision documents, and risk analyses for client and internal stakeholders.
  • Author technical blogs, reference architectures, KBs, and client-facing collateral that showcase KAMIND thought leadership.
  • Engage directly with client stakeholders from technical through executive; occasional travel to client sites is expected.
  • Acquire and maintain relevant Microsoft security certifications.

Required Qualifications

  • US Citizen due to US DOD/ITAR requirement.
  • In-person role based in the Lake Oswego, OR office.
  • 5+ years of hands-on IT security experience, including architect-level ownership of Microsoft cloud security designs.
  • Deep expertise across the Microsoft Defender XDR suite, Microsoft Sentinel, Microsoft Purview, and Microsoft Entra.
  • Proven experience with CMMC, ITAR, and CUI handling, with strong command of NIST 800-171/800-53.
  • Hands-on architecture experience with AI security controls, DSPM programs, and Purview data governance at scale, including data lake integration.
  • Advanced KQL and scripting proficiency (including PowerShell and Python) to prototype detections and automations.
  • Incident response architecture experience.
  • Hardening of Azure Virtual Machines using Microsoft security best practices.
  • Designing and securing Azure Virtual Desktop (AVD) environments.
  • Network segmentation using VNets, NSGs, Azure Firewall, and Private Endpoints.
  • Design, deployment, and management of Microsoft Intune solutions, including Windows 10/11 device enrollment and lifecycle management, MDM and MAM, device compliance and configuration policies, and integration with Microsoft Defender for Endpoint.
  • SC-500 required; plus at least two of: SC-100, SC-200, SC-300, SC-400. AZ-104 is highly desirable.
  • Bachelor’s degree or higher from an accredited college/university.
  • Experience producing Information Governance and Security Strategy assessments against CMMC, ISO, NIST, SOC 2, PCI, and HIPAA.
  • Authorized to work in the US without current or future visa sponsorship.
  • English language required.
  • Ability to commute to Lake Oswego, OR 97035 is required.

Technologies

  • Microsoft 365 Copilot, Azure OpenAI
  • Microsoft Purview: Information Protection, Data Loss Prevention, Insider Risk, eDiscovery, Compliance Manager, Communication Compliance, Records Management
  • Fabric/OneLake, Azure Data Lake
  • Microsoft Sentinel, Logic Apps, KQL, SOAR, MITRE ATT&CK
  • Microsoft Defender XDR, Microsoft Entra
  • CMMC, NIST 800-171, NIST 800-53, ISO, SOC 2, PCI, HIPAA, CUI, ITAR
  • PowerShell, Python
  • Microsoft Intune, MDM, MAM, Microsoft Defender for Endpoint
  • SC-500, SC-100, SC-200, SC-300, SC-400, AZ-104
  • Azure Virtual Machines, Azure Virtual Desktop (AVD), VNets, NSGs, Azure Firewall, Private Endpoints

Compensation and Location

  • Location: Lake Oswego, OR (onsite), 97035
  • Salary: USD 70,000 - 90,000 per year

Benefits

  • Dental insurance
  • Employee assistance program
  • Flexible spending account
  • Health insurance
  • Paid time off
  • Professional development assistance
  • Referral program
  • Vision insurance

Education and Certification

  • Education: Bachelor’s (preferred); Bachelor's degree or higher required
  • Certification: SC-500 required; plus at least two additional Microsoft security certifications from SC-100, SC-200, SC-300, SC-400 (AZ-104 highly desirable)

Similar Jobs