Overview
Systems Engineer – Cloud Security, IAM & SIEM Integration role at TriTech Enterprise Systems, Inc. This role strengthens our Hybrid cloud security posture across Active Directory, Microsoft Azure AD and Google Cloud Platform (GCP) while advancing our Identity and Access Management (IAM) program. The engineer will collaborate with security technicians to improve cloud security controls, streamline monitoring, and migrate existing security products and log sources into Microsoft Sentinel SIEM for centralized visibility and response.
Key Responsibilities
- Daily account provisioning audits and corrections between all Tenants; experience with LDAP, PowerShell, Microsoft Graph
- Conduct regular cloud and IAM security assessments, ensuring compliance with industry standards and organizational policies
- Improve and maintain security configurations, policies, and controls in a Hybrid Microsoft environment with On-prem Active Directory, Azure and Google Cloud environments
- Enhance IAM capabilities, including user lifecycle management, RBAC, PAM, and conditional access policies across cloud and enterprise systems
- Collaborate with security technicians to onboard and integrate cloud and third-party security products into Microsoft Sentinel
- Develop and refine analytic rules, playbooks, and dashboards within Sentinel to support threat detection and response
- Assist in incident investigations by optimizing logging, monitoring, and reporting from cloud services and IAM systems
- Provide guidance to technicians on IAM best practices, security governance, and SIEM operations
Qualifications
3+ years of experience in cloud security engineering and / or IAM administration / engineeringHands-on expertise with AD, MSGraph, PowerShell, LDAP tools, Microsoft Azure Security (Entra ID, Defender for Cloud, CA, PIM) and Google Cloud IAM / security toolsExperience with Microsoft Sentinel setup, log ingestion, and use-case developmentStrong background in IAM platforms, solutions, or technologies (e.g., Azure Entra ID, Active Directory, Google Admin Console)Familiarity with onboarding connectors, custom log sources, and security product integrations into SIEM platformsSolid understanding of incident response, threat detection, and security monitoringRelevant certifications (e.g., Azure Security Engineer Associate, Google Professional Cloud Security Engineer, Identity-focused certifications, Security+, MCSA) are a plusPreferred Skills
Scripting / automation (PowerShell, Python, or similar) for IAM administration and SIEM onboardingKnowledge of compliance frameworks (NIST CSF, CIS Controls, ISO 27001)Strong communication skills to coordinate with technicians, analysts, and leadershipCompany note
TriTech is an Equal Opportunity Employer.
Powered by JazzHR
Employment details
Location : Essex, MD (hybrid)Job function : Information TechnologyIndustry : Internet PublishingSeniority level : Mid-Senior levelEmployment type : ContractJ-18808-Ljbffr