hirly

Umgc

Senior Microsoft Security Engineer

(North America) Adelphi, MD

See how you match this job — and similar ones. Free.

Upload your resume and hirly scores it against this role at Umgc first, then against similar open jobs, and shows where you fit and why.

PDF or DOCX, up to 12MB. No sign-up to see your matches.

Get past the screening software and onto a recruiter's desk

hirly rewrites your resume for this job — matching the keywords and skills in the posting, moving your most relevant experience to the top, and writing a cover letter to fit. About 30 seconds.

  • Keywords matched to this posting
  • Fit score before you apply
  • Cover letter included

Matched against 2.5M live jobs from 200,000+ employers in 200+ countries.

Tailor my resume for this job →

Apply from your AI assistant

Connect hirly to Claude and ask it to apply to this job. hirly tailors your resume, fills the employer’s form and asks before sending. ChatGPT: manual setup today.

Some employer sites stop an application at a CAPTCHA or sign-in and hand it back with a link. Applying needs a paid plan. Works with any assistant that supports MCP.

hirly's read of this role

Role family
Engineering
Seniority
Senior
Country
US
Work mode
On-site / unstated
First seen by hirly
3 Oct 2026

Derived automatically from the posting. Upload your resume above to see how the role scores against it.

the posting

Senior Microsoft Security Engineer

Security Operations

US Exempt Regular

Full time

Stateside Exempt 4.2

Senior Microsoft Security Engineer

IT Security

Full-Time, Exempt Regular, Pay Grade 4.2

Location: Hybrid (Ideal onsite requirement is at minimum 2 days a week in Adelphi, MD)

Summary:

The Senior Microsoft Security Engineer will be responsible for identifying potential threats to the IT infrastructure, recommending enhancements accordingly and implementing those technologies. The Senior Microsoft Security Engineer provides support to ensure applicable information protection policies, procedures, guidelines, best practices are followed. Performs Security Risk Assessments (SRAs) and performs compliance reviews to ensure applications and servers are operating in accordance with established policies and procedures. The Microsoft Senior Security Engineer will be expected to demonstrate all of these skills while demonstrating specific emphasis on the application of Microsoft’s security product suite along with other best in class industry security tools. Educates stakeholders in the assessment process and lead both pre- and post-assessment meetings.

Duties and Responsibilities:

Fully leverage the educational institutions Microsoft A5 license suite of products; in particular as it pertains to the industry leading suit of security products, processes, and strategies

Lead the educational institutions Microsoft security “cloud first” strategy leading to fully leverage SDN (Software Defined Networking) Zero Trust, and Least Privilege strategies

Design, implement, and maintain Microsoft security solutions for the educational institution's infrastructure

Ensure that Microsoft operating systems are configured securely and that security patches are regularly applied

Manage the configuration and effective use of Microsoft security products, including Microsoft Defender ATP, Azure Security Center, and Microsoft Information Protection.

Implement Microsoft security best practices to maintain the security posture of the educational institution's infrastructure.

Collaborate with Infrastructure/ITSM/Technical teams to implement security requirements in new and existing technology solutions.

Stay up-to-date with the latest security threats and industry trends, and apply this knowledge to improve security protocols within the educational institution.

Serve as a security expert in network efforts, helping project teams comply with

enterprise and IT security policies, industry regulations, and best practices.

Lead and execute projects on our security roadmap.

Adhere to existing risk management frameworks, such as COBIT, ITIL, and ISO 27002.

Manage incident response for network security events.

Develop and maintain IT security policies.

Research, design, and advocate new technologies, architectures, and security

products that will support security requirements for the enterprise and its customers,

business partners, and vendors.

Support vulnerability assessments on various types of networks and topologies;

Execute risk and vulnerability assessments and remediation activities.

Analyze output from network vulnerability assessments, recommend mitigation strategies and resolve any security incidents through work with pertinent business departments.

Review and provide feedback on security plans and procedures regarding all aspects of LAN, WAN or MANs, as applicable;

Review and provide input into network designs to ensure compliance with security and enterprise architecture.

Provide input and visibility into emerging security technologies, deployment strategies and other security protocols to ensure awareness within the IT security branch.

Build/enhance security architecture and configure network to enhance the security posture of the enterprise.

Review in-house and 3rd-party applications/code for security vulnerabilities and best practices.

Participate in Software Development Lifecycle: code review, QA security testing, launches, etc.

Develop and/or implement automated security testing tools where possible.

Participate in the development of security-related tools and applications, such as multi-platform cookie-based authentication and internal security libraries/frameworks.

Train engineers on common security problems and best practices for writing secure code.

Provide security input on overall software architecture.

Perform hands-on testing of applications, as well as build and enforce information risk management requirements and structure, including providing practical secure architecture skills and developing and implementing Information Security best practices.

Skills :

Basic skills needed include:

Secure solutions development

Middleware security

n-tier apps dev infrastructure

Compliance – PCI, GLB, GLBA, CMMC. GDPR, etc.

Risk management and security risk assessments

Code review, reverse engineering

API’s and protocols

Authentication and authorization. SSO (Single Sign On), MFA (Multi- Factor Auth.).

Enterprise aware (change control, downstream impacts, understanding of cause and effect, change windows, etc.)

Recognized as a strategic thinker and is results oriented

Demonstrated effective strong team player and self-motivator. Ability to work and interface internally with a IT and other functional support groups with minimal guidance

Demonstrated successful experience in a customer-facing role

Demonstrated communicator both written and verbal, with effective presentation delivery and meeting facilitation

Demonstrated effective time management, organizational and documentation skills

Good analytical and troubleshooting skills with strong attention to detail

Education & Experience Requirements :

Experience:

10 years or more of professional experience with 7 or more years in IT security including security policy development, security architecture models, and information security regulatory compliance

Must have the knowledge of IT security technologies such as firewalls, intrusion detections systems, antivirus, patch management, etc., and the interest and experience to work on security policy and architecture

Hands-on experience with the following technologies: enterprise system administration across multiple operating systems, IPS management (i.e., Cisco ASA, Palo Alto), vulnerability scanning applications, Splunk

Experience in engineering and enterprise system administration roles.

Experience developing a standard set of metrics that measure our security posture on a

monthly/weekly basis.

Proven experience developing security policies, procedures, risk registers and incident

response plans

Intermediate to advanced knowledge of information security concepts.

Experience with one or more applications development languages such as Ruby on Rails, Java, C/C++, .NET.

Solid knowledge of and experience with secure web architectures, tools and processes

Knowledge of network architecture and design, network Security, wireless Security and client/server security. Very strong computer networking skills and understanding of networking protocols.

Security of virtual machine environments is highly desirable.

Knowledge of vulnerability assessment/network discovery and associated tools

Understands infrastructure monitoring

Knowledge of securing Linux and Windows systems.

Experience with various types of firewalls and technologies

Demonstrated process improvement experience

Previous application development experience is very helpful for secure code reviews

Hands-on experience using multiple Amazon Web Services technologies to support an enterprise environment.

Prior experience as a team lead or role mentoring junior team members.

Experience with threat detection and incident management for web applications that deal with PI

Certifications:

Possessing at least one prof

Original posting on Umgc's site ↗

Browse similar roles

Want this one?

Upload your resume and hirly rewrites it for this job and writes the cover letter — in about thirty seconds, before you sign up.

Tailor my resume for this job