Senior Cloud Security Engineer - Microsoft Security & Cybersecurity Architecture 3665754
12 days ago
Los Angeles
Job Description Be Part Of A High-Performing Team Join a mission-driven energy organization focused on delivering cleaner, more sustainable electricity solutions to communities across Southern California. This organization operates in a highly regulated environment where security, reliability, public trust, and operational excellence are critical. The technology team works collaboratively across data, systems, risk, finance, operations, customer-facing functions, and external partners, with a culture that values accountability, intellectual curiosity, sound judgment, and continuous improvement. What’s In Store For You • Full-time direct hire opportunity., • Remote or hybrid work options available., • Hybrid employees work approximately 2–3 days per week onsite in Downtown Los Angeles., • Remote and hybrid employees attend organization-wide or team events approximately three times per year for 3–5 days per event., • Standard working hours are aligned to 8:30 AM–5:30 PM Pacific Time., • Benefits include healthcare coverage, retirement matching, paid vacation, and sick leave., • Opportunity to serve as a highly visible cybersecurity technical lead in a growing, mission-focused organization. How You Will Make An Impact • Serve as the technical lead for enterprise cybersecurity architecture and security operations across a Microsoft-centered technology environment., • Architect, implement, and administer security solutions spanning Microsoft Entra ID, Defender XDR, Intune, Sentinel, Purview, and Defender for Cloud., • Design identity governance, privileged access, conditional access, zero-trust, endpoint security, and secure configuration standards., • Lead enterprise threat detection, incident response, vulnerability management, security monitoring, and post-incident remediation., • Build and tune Microsoft Sentinel detections, KQL queries, analytics rules, workbooks, automation, and response playbooks., • Establish cybersecurity policies, architecture standards, technical roadmaps, and controls aligned with the NIST Cybersecurity Framework., • Partner with audit, regulatory, risk, technology, and business teams to demonstrate control effectiveness and close security gaps., • Manage and coordinate managed security service providers, including SLA oversight, deliverable review, and performance management., • Evaluate cybersecurity risks related to new technology platforms, integrations, business processes, websites, customer portals, and third-party vendors., • Identify opportunities to automate security processes and improve monitoring, reporting, and operational scalability. Do You Have the Expertise to Lead in Microsoft Cloud Security & Cybersecurity Operations? • Bachelor’s degree in cybersecurity, computer science, information technology, information systems, or a related field., • Minimum 5 years of cybersecurity, cloud security, or enterprise IT security experience., • Strong hands-on experience administering Microsoft Entra ID, including Conditional Access, identity governance, and Privileged Identity Management., • Deep experience with Microsoft Defender XDR, including Defender for Endpoint, Identity, Office 365, and cloud security capabilities., • Proven hands-on expertise with Microsoft Sentinel, including SIEM administration, KQL, detection engineering, analytics rules, dashboards/workbooks, and automation., • Strong experience with Microsoft Intune, including endpoint configuration, compliance policies, device security, and application protection., • Working knowledge of Microsoft Purview, including DLP, information protection, insider risk, and data classification., • Experience with Microsoft Defender for Cloud and cloud security posture management., • Practical experience applying the NIST Cybersecurity Framework, with knowledge of NIST 800-53 or NIST 800-171 controls., • Hands-on background in vulnerability management, threat intelligence, security monitoring, and incident response., • Strong understanding of zero-trust architecture, IAM, endpoint security, network security, data privacy, and security governance., • Exposure to cloud platform security outside the Microsoft ecosystem, particularly AWS, is preferred., • Experience with Windows/Linux endpoint hardening and SQL/database environments is valuable., • At least one relevant cybersecurity certification such as SC-100, SC-200, SC-300, AZ-500, CISSP, CISM, or GIAC, or the ability to obtain one within 6–12 months of hire., • Experience supporting a regulated environment such as energy, utilities, financial services, healthcare, or the public sector is highly desirable., • Strong communication skills with the ability to explain complex cybersecurity concepts to both technical and non-technical stakeholders., • Comfortable operating independently, owning security initiatives, managing competing priorities, and working in a fast-moving environment.