Information Security Engineer (Cloud Security Engineer) - 1 Year Contract
Summary
Designs, implements, and operates Microsoft 365 E5 security tools (Entra ID, Defender, Sentinel, Purview) to protect cloud and hybrid environments, automate threat detection, and respond to incidents.
Numeris is seeking a hands-on Cloud Security Engineer to build, configure, tune, and operate our security technologies, with a primary focus on Microsoft 365 E5.
This is a deeply technical role, not a deployment coordination or project management position. You will work directly in the platforms, investigate security events, write queries and automation, troubleshoot controls, and continuously improve our security capabilities across Microsoft 365, Azure, and AWS.
What you will do
Engineer Microsoft Security Controls
- Build, configure, and tune Microsoft Entra ID controls, including Conditional Access, identity governance, privileged access, and authentication security.
- Review access requests, exclusions, and security exceptions from a technical risk perspective.
- Configure and maintain Microsoft Intune security baselines, compliance policies, endpoint controls, and automated workflows.
- Operate and optimize Microsoft Defender for Endpoint, Identity, Office 365, and Cloud Apps.
- Configure and tune Microsoft Purview DLP, information protection, and compliance controls.
- Troubleshoot control failures, integration issues, and gaps in security coverage.
- Write and maintain KQL queries, Microsoft Sentinel detections, analytics rules, dashboards, and workbooks.
- Build automated response playbooks and SOAR workflows.
- Perform alert triage, technical investigations, containment, remediation, and post-incident analysis.
- Analyze logs, endpoint activity, identity events, email threats, and cloud activity.
- Participate in a rotating on-call schedule for security incidents and escalations.
- Operate vulnerability scanning and security assessment tools.
- Analyze findings, prioritize risks, and verify that remediation is effective.
- Monitor Azure and AWS for misconfigurations, excessive permissions, compliance gaps, and emerging threats.
- Configure and improve Cloud Security Posture Management capabilities.
- Work directly with infrastructure teams to resolve technical security issues.
- Use PowerShell and/or Python to automate repetitive security tasks and operational workflows.
- Integrate security platforms and improve the quality of security data and alerts.
- Test new features and determine how they can strengthen security operations.
- Work with vendors when specialized technical support or platform expertise is required.
- Conduct technical security assessments of third-party architectures and services.
- Administer KnowBe4 phishing simulations and security awareness campaigns.
Detect and Respond to Threats
Manage Vulnerabilities and Cloud Risk
Automate and Improve
What you have
Required Experience
- At least five years of hands-on experience in security engineering, cloud security, security operations, or a related technical role.
- Demonstrated experience directly configuring and operating Microsoft 365 E5 security technologies in an enterprise environment.
- Strong experience with security monitoring, threat detection, incident investigation, and vulnerability management.
- Experience writing KQL queries and developing Microsoft Sentinel detections.
- Experience automating security tasks using PowerShell and/or Python.
- Experience securing and monitoring AWS environments.
- Experience implementing or operating a Cloud Security Posture Management solution.
- Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or a related field, or equivalent practical experience.
- Microsoft Entra ID
- Microsoft Intune
- Microsoft Defender suite
- Microsoft Sentinel and KQL
- Microsoft Purview
- Microsoft 365 Security and Compliance
- Azure and AWS security
- AWS IAM, Security Hub, GuardDuty, and AWS Config
- PowerShell and/or Python
- Incident response and vulnerability management
- Microsoft SC-200, SC-300, or SC-100
- CISSP
- AWS Certified Security – Specialty
Technical Expertise
Preferred Certifications
One or more of the following would be an asset: