Senior Security Engineer at Red Clay Consulting | Torre

Senior Security Engineer

You'll own our security program, driving compliance and resilience through Microsoft's advanced stack.
Emma highlights
This highlight was written by Emma’s AI. Ask Emma to edit it.
Full-time

Legal agreement: Employment

Provide your expected compensation while applying
location_on
Remote (for Philippines residents)
Match
skeleton-gauges
You have opted out of job matches in .
To undo this, go to the 'Skills and Interests' section of your preferences.
Review preferences
Shared by
Emma of Torre.ai
3 days ago

Requirements and responsibilities


Department: Information TechnologyPosition Type: Full-Time EmployeeReports To: Director of Information TechnologyPosition OverviewWe are looking for an experienced Senior Security Engineer to join our remote team from the Philippines. This role sits at the core of our security operations and compliance posture while owning our Microsoft 365 security stack, driving threat detection through Microsoft Defender XDR and Microsoft Sentinel, and serving as our primary technical resource for SOC 2 Type 2 compliance.This is a senior individual contributor role. You will be trusted to operate independently, make sound security decisions, and work cross-functionally with IT, engineering, and leadership to implement and maintain security controls across the company’s toolset.What You’ll DoOwn the Microsoft Security StackManage and optimize Microsoft 365 Defender, Defender for Endpoint, Defender for Identity, Defender for Cloud Apps, and Defender for Office 365Administer and tune Microsoft Sentinel - build and maintain KQL detection rules, analytics rules, workbooks, and playbooksMonitor the Microsoft Secure Score, prioritize improvement actions, and drive remediation across the tenantConfigure and maintain Conditional Access policies, Microsoft Entra ID (Azure AD) security settings, and Privileged Identity Management (PIM)Manage Microsoft Purview compliance features including DLP, sensitivity labels, and information protection policiesSecurity Operations & Threat ResponseMonitor and respond to security alerts, incidents, and investigations across Defender XDR and SentinelDevelop and maintain incident response playbooks, automation workflows (Logic Apps / SOAR), and escalation proceduresPerform threat hunting using KQL and identify gaps in detection coverageConduct vulnerability assessments and lead remediation efforts in coordination with IT and engineering teamsEvaluate and respond to identity-based threats, phishing campaigns, and anomalous behavior patternsSOC 2 Type 2 ComplianceServe as a technical resource for SOC 2 Type 2 audit preparation and executionDesign, implement, and document security controls that satisfy Trust Service Criteria (TSC) requirements across the company’s toolsetMaintain evidence collection for audit deliverables - access reviews, logging configurations, policy enforcement, and change management recordsIdentify control gaps and drive remediation efforts prior to and during audit windowsPartner with external auditors, providing technical walkthroughs and supporting evidence requestsKeep control documentation current as tooling, processes, and the environment changeCross-Functional Security EnablementImplement and enforce security controls across the company’s broader toolset - SaaS platforms, cloud infrastructure, and endpoint environmentAdvise and support IT on secure configuration for onboarding, offboarding, and access provisioning workflowsPartner with engineering teams on secure development practices, secrets management, and cloud security postureProduce clear, concise reporting on security posture, incident trends, and audit readiness for IT leadershipStay current on the Microsoft security roadmap, threat landscape, and emerging attack techniques relevant to the company’s environmentWhat We’re Looking ForExperience5+ years of hands-on experience in a security engineering or security operations role3+ years of deep, practical experience with the Microsoft 365 security suite (Defender XDR, Sentinel, Entra ID, Purview)Demonstrated experience supporting or leading a SOC 2 Type 2 audit - from control design through evidence deliveryProficiency in KQL (Kusto Query Language) for building detection rules, hunting queries, and dashboards in SentinelExperience with Azure cloud security, including Azure Security Center / Defender for Cloud, RBAC, and policy managementHands-on experience with SOAR/automation - Logic Apps, Sentinel playbooks, or equivalentCertifications (Preferred)Microsoft Certified: Security Operations Analyst Associate (SC-200)Microsoft Certified: Azure Security Engineer Associate (AZ-500)Skills & AttributesStrong English communication skills - written and verbal - for working cross-functionally with a US-based teamComfortable working independently in a remote environment with minimal supervisionDetail-oriented approach to documentation, evidence collection, and control ownershipAbility to translate technical security findings into clear, business-relevant language for leadershipCollaborative mindset - willing to mentor junior team members and share knowledge across the IT teamNice to HaveCISSP, CISM, or CompTIA Security+ certificationExperience with Microsoft Defender for Cloud (multi-cloud security posture management)Familiarity with Microsoft Intune / endpoint management from a security hardening perspectiveScripting skills in PowerShell or Python for security automation tasksExperience working within a consulting or MSP environment supporting multiple clients or environmentsWorking Hours & LocationThis is a fully remote position based in the Philippines. You will be expected to maintain meaningful overlap with US Eastern or Central business hours to support real-time collaboration with the core team — typically at least 4–5 hours of daily overlap. Flexibility around incident response and time-sensitive audit activities is expected.Why This Role MattersSecurity is not an afterthought here — it is foundational to how we operate and earn the trust of our clients. This role gives a seasoned security professional the autonomy to own our security program end-to-end, shape how controls are built and maintained, and have a direct, visible impact on the company’s compliance posture and resilience. If you are someone who takes pride in doing security work right, this is the environment for it.We are dedicated to promoting diversity and upholding our standing as an equal opportunity employer. We welcome applications from candidates of all backgrounds.Interested candidates may email at rhea.ulili@redclay.com
Optionally, you can add more information later (benefits, pre-screening questions, etc.)
check_circle

Payment confirmed

A member of the Torre team will contact you shortly

In the meantime, continue adding information to your job opening.