Partner with Security Coaches and Customer Success Managers (CSMs) to assess, harden, and continuously improve customer security postures across Microsoft 365 and Azure.
Own delivery for complex initiatives such as Zero Trust, threat detection/response, compliance programs.
Participate in technical workshops and solution alignment sessions.
Emphasize measurable outcomes, clear roadmaps, and repeatable implementation patterns
Design and tune Sentinel analytics rules, UEBA, data connectors, and KQL queries; implement playbooks for triage and automated response.
Lead Information Protection implementations: sensitivity labels, automatic/manual labeling, policy scoping.
Deploy Purview DLP for Exchange/SharePoint/OneDrive/Endpoints and establish data lifecycle and retention policies.
Requirements
5–8+ years in cloud/security consulting or operations, with 3+ years focused on Microsoft security across M365 & Azure.
Demonstrable depth in at least three of the following:
Microsoft Purview: Information Protection (labels/auto‑labeling), DLP (service & endpoint), Insider Risk, eDiscovery (Std/Premium), Records/Retention.
Microsoft Sentinel: data connectors, KQL analytics, UEBA, playbooks/Logic Apps, SOAR patterns.
Microsoft Defender: Endpoint, Identity, Office 365, Cloud Apps; configuration and tuning at scale.