Senior Security Engineer (Microsoft Security Stack) Overview We are seeking a Senior Security Engineer to lead the hands-on implementation and operation of security technologies within a Microsoft-centric healthcare environment. This role focuses heavily on engineering, deploying, and optimizing security tools rather than purely designing architecture. The ideal candidate has strong experience with Microsoft Sentinel, Microsoft Defender, and Microsoft Intune , along with building enterprise logging, monitoring, and threat detection capabilities. Key Responsibilities Security Monitoring & SIEM Engineering
Implement and manage Microsoft Sentinel as the organization’s primary SIEM platform.
Build and maintain security logging pipelines , integrating logs from identity systems, endpoints, cloud services, and enterprise applications.
Develop and tune correlation rules, detection logic, and alerting workflows to improve threat detection and response capabilities.
Support security incident investigations through log analysis and SIEM-driven threat detection.
Microsoft Security Platform Implementation
Deploy and manage security solutions across the Microsoft security ecosystem , including Microsoft Defender and Microsoft Intune .
Implement endpoint protection, device compliance policies, and threat protection controls across managed devices.
Support ongoing security platform enhancements within the Microsoft security stack.
Identity & Access Security
Support identity security initiatives including multi-factor authentication and identity protection controls .
Participate in the migration from Duo to Microsoft Authenticator .
Collaborate with infrastructure and application teams to integrate secure authentication and access control across systems.
Security Engineering & Program Development
Lead technical implementation of security initiatives from design through deployment and operationalization .
Contribute to the technical direction of the security program , providing engineering input on tooling, monitoring strategy, and security architecture.
Support occasional security projects related to compliance frameworks such as HIPAA or PCI through technical control implementation.
Collaboration & Technical Leadership
Work closely with infrastructure, cloud, and application teams to integrate security controls across enterprise systems.
Occasionally coordinate or provide oversight for contractors supporting specialized projects (e.g., IAM implementations or security tool deployments).
Document security configurations, operational procedures, and monitoring workflows within enterprise collaboration platforms.