1

Defender Xdr Jobs (NOW HIRING)

SC-100, SC-200, SC-300, AZ-500, MS-500 (one or more required) Microsoft Technology Scope Defender & SIEM Microsoft Sentinel Defender XDR Defender for Endpoint Defender for Cloud Defender for Identity ...

SC-100, SC-200, SC-300, AZ-500, MS-500 (one or more required) Microsoft Technology Scope Defender & SIEM Microsoft Sentinel Defender XDR Defender for Endpoint Defender for Cloud Defender for Identity ...

next page

Showing results 1-20

Defender Xdr information

What are the key skills and qualifications needed to thrive as a Defender XDR Specialist, and why are they important?

To excel as a Defender XDR Specialist, you need a solid understanding of cybersecurity principles, threat detection, and incident response, often supported by certifications like CompTIA Security+ or Microsoft Certified: Security Operations Analyst Associate. Familiarity with Microsoft Defender XDR, SIEM tools, and other security platforms is crucial for monitoring and analyzing threats. Strong analytical thinking, attention to detail, and effective communication skills help you interpret complex security data and collaborate with IT teams. These skills are essential for proactively identifying and mitigating cyber threats, ensuring robust organizational security.

What are some common challenges faced by professionals working with Microsoft Defender XDR, and how can they be addressed?

Professionals working with Microsoft Defender XDR often encounter challenges such as integrating multiple security tools, managing a high volume of alerts, and staying updated with evolving threats. To address these, it's important to develop a strong understanding of the XDR platform, establish clear incident response processes, and leverage automation features to reduce manual workloads. Collaboration with IT, security, and compliance teams is also key to maintaining a cohesive security posture and ensuring timely resolution of incidents.

What is Defender XDR?

Defender XDR (Extended Detection and Response) is a cybersecurity solution provided by Microsoft that integrates and automates threat detection, investigation, and response across multiple security domains such as endpoints, identities, email, and cloud applications. It provides a unified platform to help security teams identify and respond to sophisticated cyber threats more efficiently. By correlating data and alerts from various sources, Defender XDR enables organizations to detect complex attacks, reduce response times, and improve overall security posture.

What is the difference between Defender Xdr vs Security Analyst?

AspectDefender XdrSecurity Analyst
CertificationsCompTIA Security+, CISSP, CEHCompTIA Security+, CISSP, CEH
Work EnvironmentSecurity tools, incident response, threat detectionMonitoring, analyzing security data, incident investigation
Employer & Industry UsageCybersecurity teams, IT departmentsSecurity teams, IT departments, consulting firms

While both Defender Xdr and Security Analysts work in cybersecurity, Defender Xdr focuses on deploying and managing extended detection and response tools, whereas Security Analysts analyze security data and respond to incidents. Defender Xdr specialists often implement and configure security solutions, while Security Analysts interpret alerts and investigate threats. Both roles require similar certifications and work environments, but their core responsibilities differ in focus and scope.

More about Defender Xdr jobs
What cities are hiring for Defender Xdr jobs? Cities with the most Defender Xdr job openings:
What states have the most Defender Xdr jobs? States with the most job openings for Defender Xdr jobs include:
Infographic showing various Defender Xdr job openings in the United States as of May 2026, with employment types broken down into 99% Full Time, and 1% Contract. Highlights an 55% Physical, 21% Hybrid, and 24% Remote job distribution.
Security & Infrastructure Manager

Security & Infrastructure Manager

NAVA Software Solutions

Houston, TX โ€ข On-site

$136.50K/yr

Contractor

Posted 14 days ago


Job description

NAVA Software solutions is looking for a Security & Infrastructure Manager
Details:
Security and Infrastructure Manager - Need hands on exp
Location: West Houston TX (Energy Corridor) - Hybrid ( Tues/Wed/Thurs)
Duration: 6-12 months Contract to Hire
Position Summary
We are seeking a highly experienced and hands-on Security and Infrastructure Manager to lead the planning, execution, and day-to-day operations of our IT security and infrastructure functions. This role bridges leadership and technical execution, combining strategic planning with tactical delivery of cybersecurity initiatives. The successful candidate will drive implementation of best-in-class security tools and practices while maintaining stable and scalable infrastructure.
This position will focus heavily on Microsoft Azure cloud infrastructure, Microsoft 365/O365 tenant governance, Microsoft Defender XDR for threat protection, and Microsoft Purview for data loss prevention, data privacy, and regulatory compliance. The ideal candidate will also be responsible for managing EDR/XDR/SIEM platforms, configuring SASE/Zero Trust solutions, and ensuring adherence to SOX and NIST CSF 2.0 frameworks.
Core Responsibilities
  • Lead the design, deployment, and administration of secure Microsoft Azure infrastructure, including network security groups (NSGs), virtual networks, Azure Firewall, Bastion, App Gateways, and Defender for Cloud.
  • Own tenant-wide governance and administration of Microsoft 365/O365 platforms including Exchange Online, SharePoint, OneDrive, and Microsoft Teams with a focus on policy enforcement, content protection, and secure collaboration.
  • Configure and manage Microsoft Defender XDR, including Defender for Endpoint, Identity, Cloud Apps, and Office 365, ensuring effective detection, prevention, and response to threats.
  • Manage Microsoft Purview deployment to support Data Loss Prevention (DLP), Insider Risk Management, data classification, sensitivity labeling, and AI governance policies.
  • Architect and administer SASE and Zero Trust Network Access solutions for identity-aware secure access to cloud and internal applications.
  • Lead and execute security incident response efforts, integrating signals from SIEM/EDR platforms. Coordinate root cause analysis and remediation of incidents.
  • Support vulnerability management, patch deployment, GPO hardening, endpoint protection, and change reviews for production systems.
  • Review access control requests and enforce policy-based RBAC using Microsoft Entra ID. Manage identity governance including MFA, provisioning, and periodic access certification.
  • Ensure the company's cybersecurity posture meets compliance standards, particularly SOX IT General Controls and NIST CSF 2.0. Document controls and maintain audit readiness.
  • Respond to infrastructure-related escalations including outages, backups, connectivity failures, remote access provisioning, endpoint support, and application-level access issues.
  • Review and respond to internal ITSM tickets related to access, endpoint health, firewall rules, application installations, and user provisioning/deprovisioning.
  • Continuously monitor security event notifications and investigate correlated alerts across security monitoring and management tools.

Required Qualifications
  • Minimum 7 years of experience in cybersecurity, infrastructure management, or IT operations, with at least 3 years in a senior technical or management role.
  • Extensive experience managing Microsoft Azure IaaS/PaaS environments, including infrastructure hardening, policy enforcement, and cost/resource optimization.
  • Advanced proficiency with Microsoft 365/O365 administration, including security, compliance, collaboration, and retention capabilities.
  • Hands-on experience with Microsoft Defender XDR (Endpoint, Identity, Office 365, Cloud Apps), and Microsoft Intune.
  • Proven success implementing and maintaining Microsoft Purview DLP, Insider Risk, data classification, and AI data privacy controls.
  • Strong knowledge and configuration experience with firewalls and secure remote access technologies such as Cisco ASA, Palo Alto, SonicWall, or Fortinet.
  • Direct experience with SASE solutions and Zero Trust frameworks
  • Familiarity with compliance frameworks such as SOX and NIST CSF 2.0 and NERC CIP.
  • Experience preparing for and responding to internal and external audits.
  • Relevant certifications such as AZ-500, SC-200, CISSP, CISM, CCSP, or vendor certifications from Microsoft, Zscaler, Palo Alto, etc.

NAVA Software Solutions logo

About NAVA Software Solutions

Sourced by ZipRecruiter

NAVA is a strategic partner for companies seeking to develop or customize software and products. Our team of experts leverages cutting-edge technology and deep industry knowledge to provide customized solutions that drive business success. Whether you're looking to improve your operations, increase efficiency, or bring a new product to market, NAVA has the expertise and resources to help you achieve your goals. Trust us to be your partner in software and product development.

Industry

It services

Company size

51 - 200 Employees

Headquarters location

Rocky Hill, CT, US

Social media