Description & Requirements
We are looking for a Security Engineer to join the Enterprise Security Engineering Main team on a 12-month Temporary Full-Time (TFT) assignment.
Working with Security Architects and Security Engineers, you will engineer enterprise security capabilities that strengthen privileged identity security and secure access across the enterprise.
Your responsibilities will include engineering and deploying secure browser-based solutions, enhancing the Enterprise Secure Administration Platform, supporting proof-of-concepts and pilot deployments, and helping transition enterprise security capabilities into production.
You will also assist with deployment planning, technical validation, production rollout activities, and post-deployment issue resolution to ensure new security capabilities are adopted across the enterprise.
You will report to the Director, Enterprise Security Engineering Core.
Responsibilities
Contribute to the engineering and deployment of secure browser-based solutions that allow secure access for privileged administrators and support phased employee access to EA applications from personal devices.
Contribute to the engineering, deployment, and enhancement of the Enterprise Secure Administration Platform, delivering secure and scalable capabilities that help administrators to perform privileged operations safely.
Help deploy Device ID protection for enterprise applications, ensuring secure access based on device identity and trust
You will support production deployments by investigating and resolving technical issues and escalations, partnering with Security Engineering, Endpoint Engineering, and IT Operations to ensure successful rollout and operational stability.
You will develop implementation documentation, deployment standards, operational procedures, and knowledge transfer materials.
Collaborate with Security Architects, Security Engineers, and technology teams to deliver enterprise security projects.
Qualifications
Bachelor's degree in Computer Science, Information Security, Engineering, or a related technical discipline, or equivalent combination of education and relevant work experience.
3–5 years of experience in Security Engineering, Systems Engineering, or a related technical role.
3+ years of experience with passwordless and phishing-resistant authentication concepts and technologies, including FIDO2, Smart Cards, Windows Hello for Business, and certificate-based authentication.
3+ years of experience with identity security and secure access concepts, including device trust, device posture compliance, identity segmentation, and secure administration environments.
Your Experience with Microsoft Entra ID security, Microsoft Defender, Conditional Access, Identity verification, and enterprise identity security controls.
Experience with PowerShell, Python, or REST APIs.
Knowledge of enterprise security frameworks such as NIST or CIS.