Infrastructure & Security Engineer

Posted 1hrs ago

Employment Information

Education
Salary
Experience
Job Type

Report this job

Job expired or something wrong with this job?

Job Description

Infrastructure & Security Engineer securing Microsoft 365, Azure, and client environments for Mechanicus, a security-focused managed service provider. Leading incident response, cloud engineering, hardening, and Tier 3 escalations remotely across the US.

Responsibilities:

  • Investigate phishing attacks, suspicious login activity, and account compromise incidents
  • Perform threat hunting, log analysis, containment, and remediation
  • Lead response efforts for Microsoft 365 and Azure-related security events
  • Collaborate with security partners and vendors during active incidents
  • Conduct post-incident reviews and improve prevention strategies
  • Design and improve Conditional Access policies and identity security controls
  • Manage and optimize Microsoft Defender and Entra ID security features
  • Implement security baselines and hardening standards across client environments
  • Improve MFA, privileged access, and identity governance workflows
  • Support and troubleshoot Azure infrastructure and Azure Virtual Desktop environments
  • Handle complex escalations involving networking, virtualization, storage, and authentication
  • Lead migrations involving Microsoft 365, Azure, servers, and cloud infrastructure
  • Assist with automation and infrastructure-as-code initiatives
  • Serve as the Tier 3 escalation point for advanced technical issues
  • Mentor junior engineers and contribute to technical standards
  • Create documentation, operational runbooks, and repeatable processes
  • Identify recurring problems and build long-term solutions
  • Remain reachable during P1 incidents

Requirements:

  • 5+ years of progressive IT experience
  • At least 2 years focused on security operations
  • Strong Microsoft 365 security stack experience, including Defender for Office 365, Defender for Endpoint, Defender for Identity, Entra ID Protection, and Conditional Access at scale
  • Solid Azure fundamentals, including Entra ID, AVD, VNets, NSGs, Private Endpoints, and RBAC
  • Familiarity with infrastructure-as-code, specifically Bicep or Terraform
  • End-to-end incident response experience involving a real BEC, ransomware incident, or account takeover
  • Functional PowerShell scripting skills for administrative automation, Microsoft 365/Azure modules, and script troubleshooting or modification
  • Excellent written communication for incident reports, RCA documents, and client-facing summaries
  • Ability to work remotely from the East Coast or Central US
  • Ability to remain reachable during P1 incidents
  • Nice-to-have certifications: SC-200, SC-300, or AZ-500
  • Nice-to-have operational experience with Blackpoint Cyber MDR
  • Nice-to-have experience with HaloPSA, NinjaOne/NinjaRMM, CIPP, Hudu, and Barracuda Email Protection
  • Nice-to-have experience designing CIS- or NIST CSF-aligned baselines for SMB clients using Microsoft 365 and Azure
  • Willingness to undergo a background check

Benefits:

  • Annual performance bonus tied to security KPIs (mean time to detect, mean time to contain, recurring-incident reduction)
  • Health insurance
  • Simple IRA
  • 12 days PTO to start (accrual increases with tenure)
  • 8 paid holidays
  • Home office stipend
  • Remote flexibility