Source description
About the role
Proactively identify and investigate potential issues and patterns in security controls and recommend mitigation strategies, while also surfacing opportunities for automation to improve efficiency and effectiveness across the network. Install, upgrade, and maintain security hardware, operating system and software. Identify gaps in security policy and administration, recommend solutions, and implement new and revised security standards, while working with partner teams to drive consistency and awareness. Maintain standards and drive improvements for our customer and partner experience, responding appropriately to emerging issues and advocating for our customer experience through analyzing key metrics, performance indicators, and other data sources (e.g. bugs, unhealthy data pipeline). Escalate, recommend improvements as appropriate to address gaps. Participate in on-call rotation to support security services. With minimal guidance, analyze attempted or successful efforts to compromise systems security and, alongside partner teams, create recommendations to limit exposure, implement response plans, and take action. Analyze potential or actual intrusions identified from monitoring activities and create detections based on available data (e.g., Indicators of Compromise [IOC] and Tools Tactics Procedures [TTP]). Proven experience in software development lifecycle, large-scale computing, modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), and operations incident response OR Bachelor's Degree in Statistics, Mathematics, Computer Science or related field. Strong background in Firewalls or Intrusion detection or prevention systems These requirements include, but are not limited to the following specialized security screenings: CISSP, CISA, CISM, SANS, GCIA, GCIH, OSCP, PCCSE, PCNSE, PCSAE, CCNP Security, CCIE Security and/or Security+ certification. Any experience with industrial control systems is preferred (not mandatory)
More at Microsoft
Related open roles
Program Manager, Global Security Access Management (GSAM)
Seattle · Onsite
Principal Technical Advisor for Cybersecurity Incident Response
Seattle · Dallas–Fort Worth · Onsite
Senior Security Researcher
Seattle · Washington DC · Onsite
Security Cloud Solution Architect- CTJ - Poly
Washington DC · Onsite
Senior Cloud Solution Architect - Security / Global Solutions
Tokyo · Onsite
Sr Technology Security Consultant-CTJ-TS/SCI
United States · Onsite