- Home
- ...
- Open Roles
- Role Detail
Description & Requirements
Summary
We are looking for a Senior Security Engineer to lead our Secure Administrator Workspace product line. The Secure Admin Workspace provides administrators with a secure way to perform their administrative tasks in critical applications. You will onboard new teams into the workspace and build and implement new controls to improve both security and the user experience for administrators. You will also collaborate with security architects and partner teams to enhance security on mission-critical products like Active Directory, Entra ID, & M365.
You will report to the Director of the Enterprise Security Engineering Core & Admin team.
Responsibilities:
Lead the Secure Administrator Workspace product line.
Implement new security controls to further protect elevated privilege accounts.
Onboard new teams into the secure admin workspace.
Improve the user experience maintaining high security standards.
Gather and analyse user feedback to improve the secure admin workspace experience.
Participate in incident response and recovery efforts related to the secure workspace.
Create comprehensive security documentation and reports.
Conduct regular threat assessments in Active directory, & Entra ID and assist implementing latest security enhancements.
Help perform application security reviews and threat modelling on enterprise applications.
Stay updated with the latest security trends, threats, and technology advancements.
.
Qualification:
5+ years of experience in security engineering with a focus on securing users & administrator accounts and platforms.
Experience with access control, RBAC, and least-privileged access principles.
Experience with secure administrator workspace design and implementation.
Experience with Privileged Access Workstations(PAW)/Secure Admin Workstations(SAW), and Enhanced Security Administrative Environment (ESAE) architectures.
Working knowledge of authentication standards such as FIDO2/WebAuthN, SAML, OIDC.
Experience securing Windows Active Directory & Entra ID.
Experience with Microsoft 365 security products and services such as Microsoft Defender for Identity, Privileged Identity Management, Entra ID governance.
Experience implementing passwordless authentication, smart cards, and similar technologies.
Knowledge of scripting and programming languages such as PowerShell, Python .
Understanding of cloud security principles in AWS or Azure.