Accelera Solutions, Inc. Logo

Accelera Solutions, Inc.

Senior Microsoft Defender Engineer

Posted 7 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in USA
Senior level
Remote
Hiring Remotely in USA
Senior level
Lead design, implementation, and management of Microsoft Defender (Endpoint, Cloud, Servers) and related security tooling. Oversee EDR, NGAV, threat and vulnerability management, WDAC, DLP integration with Intune/Purview, SIEM integration (Sentinel), and automation via ServiceNow. Mentor mid-level engineers, approve playbooks/dashboards, ensure cross-platform protection, and apply systems engineering lifecycle to meet security and compliance objectives.
The summary above was generated by AI

This position is full time remote and requires the candidate hold an active secret clearance.

We are seeking a highly skilled and experienced Senior Microsoft Defender Engineer to join our Information Security team. The ideal candidate will have deep expertise in Microsoft Defender for Endpoint, Cloud, and Servers, with a strong understanding of the System Engineering Lifecycle. This role will be responsible for designing, implementing, and managing our Microsoft Defender solutions with the overarching automation platform to protect our organization from cyber threats.  In addition, the candidate will be responsible for implementing automation strategies to allow for seamless management of applicable MDE capabilities into broader workflows via ServiceNow and other automation tools.

Responsibilities:
1.    Overseeing Endpoint Detection and Response (EDR):
•    Guide mid-level engineers in deploying and fine-tuning EDR solutions to monitor and respond to threats in real-time.
•    Review and approve automated response playbooks created by your team.
2.    Leading Next-Generation Antivirus (NGAV) Implementation:
•    Supervise the setup and configuration of NGAV to provide behavioral-based protection.
•    Ensure NGAV algorithms are optimized for peak performance under your team’s management.
3.    Directing Threat & Vulnerability Management:
•    Oversee continuous vulnerability assessments conducted by your team and provide remediation recommendations.
•    Develop and execute strategies to mitigate endpoint vulnerabilities in collaboration with the larger vulnerability management team, ensuring your team’s plans align with organizational goals.
4.    Managing Attack Surface Reduction:
•    Lead the implementation and maintenance of rules and controls to minimize the attack surface of endpoints.
•    Regularly review and update your team’s strategies to stay ahead of emerging threats.
5.    Supervising Cloud-Delivered Protection:
•    Ensure your team integrates real-time updates and threat intelligence from the Microsoft cloud.
•    Monitor and adjust cloud-delivered protection features configured by your team.
6.    Integrating with SIEM Solutions:
•    Guide your team in seamlessly connecting Microsoft Defender with Microsoft Sentinel and other SIEM tools.
•    Review and approve centralized logging, analytics, and reporting dashboards created by your team.
7.    Ensuring Cross-Platform Protection:
•    Guarantee comprehensive security across Windows, Linux, and mobile devices under your team’s management.
•    Manage and monitor security solutions on diverse platforms, ensuring your team’s configurations are effective.
8.    Delivering Comprehensive Reporting and Analytics:
•    Oversee the creation of detailed reports on security posture, incidents, and compliance by your team.
•    Approve customizable dashboards and alerts developed by your team to keep the security operations center informed.
9.    Deploying Windows Defender Application Control (WDAC):
•    Lead the design, implementation, and management of WDAC policies to control which applications can run on endpoints.
•    Ensure your team’s WDAC configurations align with organizational security policies and compliance requirements.
•    Monitor and update WDAC policies to adapt to changing threat landscapes and business needs, providing guidance and oversight to your team.
10.    Integrating Microsoft Defender, Intune, and Purview for Data Loss Prevention (DLP):
•    Oversee the implementation and management of DLP policies using Microsoft Defender for Endpoint.
•    Ensure sensitive data on endpoints is monitored, classified, and protected against unauthorized access or exfiltration.
•    Lead the configuration and enforcement of device compliance and app protection policies using Microsoft Intune.
•    Guide the discovery, classification, and protection of sensitive data across the organization using Microsoft Purview.
•    Create and enforce DLP policies in Microsoft 365 and other cloud services to ensure data compliance and security.
•    Monitor and report on DLP incidents, providing detailed alerts and insights to the security team.
•    Integrate Microsoft Defender, Intune, and Purview to create a robust, layered DLP strategy.
•    Ensure a comprehensive view of DLP incidents across endpoints, mobile devices, and cloud services.
•    Set up unified reporting and alerts for any policy violations or data exfiltration attempts.
11.    Applying the System Engineering Lifecycle:
•    Use your expertise in the System Engineering Lifecycle to guide your team in designing, implementing, and maintaining cutting-edge Microsoft Defender solutions.
•    Ensure all security solutions align with organizational goals and compliance requirements.

Qualifications

Qualifications:
•    A Bachelor’s degree in Computer Science, Information Security, or a related field. A Master’s degree is a plus!
•    12+ Years of relevant experience, with at least 3 years in a leadership or senior engineering position
•    Extensive experience with Microsoft Defender for Endpoint, Cloud, and Servers.
•    Strong experience with endpoint security, threat hunting, and incident response.
•    Strong experience with SIEM solutions, especially Microsoft Sentinel.
•    Experience automating workflows with automation tools
•    Experience administering and working with Linux operating systems, specifically Red Hat Enterprise Linux
•    Excellent leadership and team management skills, with the ability to mentor and guide a team to achieve security objectives.
•    Strong analytical and problem-solving skills to address complex security tooling challenges.
•    Excellent communication and collaboration skills to interact effectively with stakeholders at all levels.
•    Understanding of industry compliance standards (e.g., NIST) and relevant regulations (e.g., GDPR, HIPAA) is advantageous.
•    Willingness to stay updated with the latest cybersecurity trends and emerging security tools.
•    Required DoD 8140 compliant certification such as CompTIA Security+
•    Secret Clearance 

Desired Skills:
•    Other relevant cybersecurity certifications like Certified Information Systems Security Professional (CISSP), or Certified Information Security Manager (CISM), are a plus.
•    ServiceNow integrated workflows/automation
•    Microsoft Active Directory/Entra
•    Microsoft Federation Services
•    Microsoft PowerBI Dashboarding
•    Advanced PowerShell scripting or prior software development experience
•    DoD PKI

Accelera Solutions is an Equal Opportunity Employer/Veterans/Disabled.

Similar Jobs

8 Minutes Ago
Remote or Hybrid
IL, USA
125K-165K Annually
Senior level
125K-165K Annually
Senior level
Information Technology
Lead design and execution of enterprise AI enablement programs for customer-facing teams. Manage needs assessments, instructional design, program measurement, stakeholder engagement, vendor partnerships, and coach ID team members to drive AI adoption and business outcomes.
Top Skills: Ai-Enabled Learning ToolsCollaboration PlatformsGenerative Ai ToolsMS Office
8 Minutes Ago
Remote or Hybrid
IL, USA
16-16 Hourly
Internship
16-16 Hourly
Internship
Information Technology
Serve as a campus liaison between CDW sales, university administration, and technology partners. Build and maintain campus relationships, research technology trends, educate stakeholders on CDW solutions, and work 15–25 hours/week while completing paid training and receiving ongoing mentorship.
8 Minutes Ago
Remote or Hybrid
MI, USA
16-16 Hourly
Internship
16-16 Hourly
Internship
Information Technology
Work as an on-campus liaison between CDW sales, university departments, and technology partners. Build relationships, research campus technology trends, educate stakeholders on CDW solutions, and support sales activities while receiving training and mentorship. Flexible, part-time (15–25 hrs/week) role for enrolled sophomores or juniors.
Top Skills: AILivemeeting

What you need to know about the Austin Tech Scene

Austin has a diverse and thriving tech ecosystem thanks to home-grown companies like Dell and major campuses for IBM, AMD and Apple. The state’s flagship university, the University of Texas at Austin, is known for its engineering school, and the city is known for its annual South by Southwest tech and media conference. Austin’s tech scene spans many verticals, but it’s particularly known for hardware, including semiconductors, as well as AI, biotechnology and cloud computing. And its food and music scene, low taxes and favorable climate has made the city a destination for tech workers from across the country.

Key Facts About Austin Tech

  • Number of Tech Workers: 180,500; 13.7% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Dell, IBM, AMD, Apple, Alphabet
  • Key Industries: Artificial intelligence, hardware, cloud computing, software, healthtech
  • Funding Landscape: $4.5 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Live Oak Ventures, Austin Ventures, Hinge Capital, Gigafund, KdT Ventures, Next Coast Ventures, Silverton Partners
  • Research Centers and Universities: University of Texas, Southwestern University, Texas State University, Center for Complex Quantum Systems, Oden Institute for Computational Engineering and Sciences, Texas Advanced Computing Center

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account