Infrastructure & Security Engineer
Posted 1hrs ago
Employment Information
Report this job
Job expired or something wrong with this job?
Job Description
Infrastructure & Security Engineer securing Microsoft 365, Azure, and client environments for Mechanicus, a security-focused managed service provider. Leading incident response, cloud engineering, hardening, and Tier 3 escalations remotely across the US.
Responsibilities:
- Investigate phishing attacks, suspicious login activity, and account compromise incidents
- Perform threat hunting, log analysis, containment, and remediation
- Lead response efforts for Microsoft 365 and Azure-related security events
- Collaborate with security partners and vendors during active incidents
- Conduct post-incident reviews and improve prevention strategies
- Design and improve Conditional Access policies and identity security controls
- Manage and optimize Microsoft Defender and Entra ID security features
- Implement security baselines and hardening standards across client environments
- Improve MFA, privileged access, and identity governance workflows
- Support and troubleshoot Azure infrastructure and Azure Virtual Desktop environments
- Handle complex escalations involving networking, virtualization, storage, and authentication
- Lead migrations involving Microsoft 365, Azure, servers, and cloud infrastructure
- Assist with automation and infrastructure-as-code initiatives
- Serve as the Tier 3 escalation point for advanced technical issues
- Mentor junior engineers and contribute to technical standards
- Create documentation, operational runbooks, and repeatable processes
- Identify recurring problems and build long-term solutions
- Remain reachable during P1 incidents
Requirements:
- 5+ years of progressive IT experience
- At least 2 years focused on security operations
- Strong Microsoft 365 security stack experience, including Defender for Office 365, Defender for Endpoint, Defender for Identity, Entra ID Protection, and Conditional Access at scale
- Solid Azure fundamentals, including Entra ID, AVD, VNets, NSGs, Private Endpoints, and RBAC
- Familiarity with infrastructure-as-code, specifically Bicep or Terraform
- End-to-end incident response experience involving a real BEC, ransomware incident, or account takeover
- Functional PowerShell scripting skills for administrative automation, Microsoft 365/Azure modules, and script troubleshooting or modification
- Excellent written communication for incident reports, RCA documents, and client-facing summaries
- Ability to work remotely from the East Coast or Central US
- Ability to remain reachable during P1 incidents
- Nice-to-have certifications: SC-200, SC-300, or AZ-500
- Nice-to-have operational experience with Blackpoint Cyber MDR
- Nice-to-have experience with HaloPSA, NinjaOne/NinjaRMM, CIPP, Hudu, and Barracuda Email Protection
- Nice-to-have experience designing CIS- or NIST CSF-aligned baselines for SMB clients using Microsoft 365 and Azure
- Willingness to undergo a background check
Benefits:
- Annual performance bonus tied to security KPIs (mean time to detect, mean time to contain, recurring-incident reduction)
- Health insurance
- Simple IRA
- 12 days PTO to start (accrual increases with tenure)
- 8 paid holidays
- Home office stipend
- Remote flexibility

















