Required Skills: Windows systems engineer, Microsoft systems engineer , SIEM, SentinelOne, Darktrace, vulnerability management
Job Description
This is a Senior Security Engineer role in the IT division, reporting to the VP of IT Infrastructure. The engineer designs, implements, administers, secures and supports the organization's technology infrastructure across on-premises, cloud and hybrid environments, acting as a senior resource for both systems engineering and cybersecurity.
The work spans Windows Server, Active Directory and Entra ID, Microsoft 365, Azure, endpoint management, identity and access management, security monitoring, vulnerability management, incident response, hardening and automation. The engineer also provides technical leadership on infrastructure modernization, VMware-to-Azure Local migration, security initiatives and vendor work.
The team is looking for a strong systems engineer with a blended security background. Day-to-day work includes on-call and after-hours support, senior escalation for systems and security issues, and balancing operations with projects.
Must-Have
- Must be local to the Whippany, NJ area (hybrid onsite).
- 7+ years of progressively responsible experience in systems engineering, security engineering, infrastructure engineering or infrastructure security.
- Bachelor's degree in IT, Computer Science, Cybersecurity, Information Systems or a related field, or equivalent professional experience.
- Strong hands-on experience with Windows Server, Active Directory, Group Policy, DNS, Microsoft Entra ID, Microsoft 365, Intune and Azure.
- Strong knowledge of hybrid identity and authentication technologies.
- Experience with endpoint security, vulnerability management, security monitoring and infrastructure hardening.
- Strong PowerShell scripting and automation skills.
- Experience with SIEM platforms, SentinelOne and Darktrace (core to the hiring team's request).
- Experience troubleshooting complex enterprise issues across servers, identity, endpoints, cloud, applications and security platforms.
- Strong understanding of least privilege, Conditional Access, MFA, endpoint security and security hardening.
- Strong written and verbal communication skills.
- Ability to manage priorities independently while working with technical teams, stakeholders and vendors.
- Willing to do on-call and after-hours support as required.
Preferred / Additional
- Experience with Microsoft Azure Local / Azure Stack HCI.
- Experience with SentinelOne, Darktrace, Tanium, Qualys, Zscaler and/or Okta.
- Experience supporting hybrid Microsoft environments.
- SIEM and EDR administration.
- Familiarity with MITRE ATT&CK and security detection engineering.
- Cloud and infrastructure migration experience.
- Automation and unattended operational reporting.
- CISSP preferred.
- GIAC incident-handling, cloud-security, Microsoft, Azure or other relevant certifications are a plus.