Centurion is seeking a Sr. Cyber Security Analyst to support various security operations and configurations. The role involves validating security configurations, managing vulnerabilities, and ensuring effective logging and monitoring of security systems.
Responsibilities:
- Assist with implementation and validation of CIS baseline configurations (L1 minimum)
- Secure configuration of endpoints, identities, and cloud services
- Validate security configurations across Entra ID (Azure AD), Intune-managed devices, Microsoft 365 services
- Identify and remediate configuration drift
- Validate agent deployment and reporting coverage
- Perform vulnerability triage and prioritization
- Track remediation progress and validate closure
- Identify gaps in scanning coverage (devices, subnets, cloud resources)
- Assist with configuration, tuning, and validation of Microsoft Defender for Endpoint, Defender for Cloud, and Defender for Identity
- Ensure devices are properly onboarded, telemetry is being received, and alerts are actionable and tuned
- Support Advanced Hunting queries and validation
- Assist configuration and install of ARC on servers
- Validate log ingestion into Microsoft Sentinel and/or SIEM
- Ensure telemetry coverage across endpoints, identities, and cloud applications
- Identify gaps in logging or integration
- Assist in alert tuning and reduction of false positives
- Validate integrations (e.g., Okta, Defender, M365, network tools)
- Okta MFA support
- Access Reviews
- Validate security posture before, during, and after migration waves
- Identify and escalate security gaps introduced by migration activities
- Mobile Device MAM/MDM support
- Design and Concept Review, in particular to cover AI workloads and telemetry received via Defender CSPM/AI modules
- Definition and implementation of related Purview Rules, Intune Policies, Varonis Configuration, CSPM/AI Monitoring and the related Sentinel Alerting, BAU process (playbooks, support, changes)
- Creation of Documentation and Training Material in SCORM 2.0 format in collaboration with our internal training department
Requirements:
- Contractor must be a U.S. citizen
- Experience with Defender, Sentinel, Intune, Entra ID, Okta, Tenable, Purview, Varonis, AI solutions and related security monitoring, SCORM 2.0
- Knowledge of NIST 800-171 / CMMC
- SOC / security operations experience
- Past Performance in support during IT transformations
- Defender/SIEM operations experience
- Vulnerability management experience
- DLP rollout based on Varonis and Purview
- Preferred certifications: SC-200, CISSP