1

Microsoft Security Engineer Jobs in Virginia (NOW HIRING)

Azure Cloud Security Engineer

Arlington, VA

$64.25 - $85.75/hr

Senior Azure Cloud Security Engineer (Oil & Gas Domain) Work Location: Arlington, VA (Fully Onsite ... This role requires expert-level, hands-on experience in the Microsoft security ecosystem coupled ...

Microsoft Azure Security related certifications are strongly recommended; * Experience implementing ... Engineer Associate * Experience with Windows and Linux Administration * Certified in industry ...

Microsoft Azure Security related certifications are strongly recommended; * Experience implementing ... Engineer Associate * Experience with Windows and Linux Administration * Certified in industry ...

Microsoft certifications: Azure AI Engineer Associate, Azure Security Engineer Associate, SC-100/200/300/400, or SC-900. * Security certifications: CCSP, CCSK, CISSP, CCNP, or CCNA. * Hands-on with ...

The Security Engineer will be installing, configuring,monitoring, and troubleshooting network ... Redhat, Cisco or Microsoft, Security+,Linux+,or Network+ certifications * Cisco Hardware and ...

The Cyber Security Engineer will support the full system engineering life-cycle, including ... Redhat, Cisco or Microsoft, Security+, Linux+, or Network+ certifications * Cisco Hardware and ...

next page

Showing results 1-20

Microsoft Security Engineer information

See Virginia salary details

$61K

$151.5K

$203.7K

How much do microsoft security engineer jobs pay per year?

As of May 28, 2026, the average yearly pay for microsoft security engineer in Virginia is $151,463.00, according to ZipRecruiter salary data. Most workers in this role earn between $141,800.00 and $157,100.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Microsoft Security Engineer, and why are they important?

To thrive as a Microsoft Security Engineer, you need a strong background in information security principles, experience with Microsoft security solutions (such as Azure Security Center, Microsoft Defender, and Active Directory), and relevant certifications like Microsoft Certified: Security, Compliance, and Identity Fundamentals or Microsoft Certified: Security Operations Analyst Associate. Familiarity with security monitoring tools, SIEM platforms, and scripting languages like PowerShell is typically required. Strong problem-solving abilities, attention to detail, and effective communication are essential soft skills for this role. These skills and qualifications are crucial for identifying vulnerabilities, implementing robust security measures, and ensuring the ongoing protection of organizational data and systems.

What are some of the common challenges Microsoft Security Engineers face when securing cloud environments, and how are they typically addressed?

Microsoft Security Engineers often encounter challenges such as managing complex identity and access controls, monitoring for evolving threats, and ensuring compliance across hybrid or multi-cloud environments. These are typically addressed by implementing robust Azure security best practices, automating security monitoring with tools like Microsoft Defender, and collaborating closely with development and IT teams to maintain secure configurations. Staying updated with the latest security features and regularly participating in security training also helps engineers proactively tackle emerging threats.

What are Microsoft Security Engineers?

Microsoft Security Engineers are IT professionals who specialize in designing, implementing, and managing security solutions within Microsoft environments. They work to protect an organization's data, systems, and networks by configuring security tools, monitoring for threats, and responding to incidents. Their responsibilities often include ensuring compliance with security policies, managing identity and access controls, and staying current with evolving cybersecurity threats. They may work with on-premises, cloud, or hybrid infrastructures, particularly focusing on Microsoft technologies such as Azure, Microsoft 365, and Windows security tools.

What is the difference between Microsoft Security Engineer vs Cybersecurity Analyst?

AspectMicrosoft Security EngineerCybersecurity Analyst
CertificationsMicrosoft Certified: Security, Compliance, and Identity Fundamentals; CompTIA Security+CompTIA Security+; GIAC Security Essentials (GSEC)
Work EnvironmentFocus on Microsoft security tools, cloud security, and enterprise environmentsBroader security monitoring, incident response, and threat analysis across various platforms
Employer & Industry UsagePrimarily in organizations using Microsoft products and cloud servicesAcross diverse industries, including finance, healthcare, and government

The Microsoft Security Engineer specializes in securing Microsoft environments, cloud security, and compliance, often working with Microsoft tools and platforms. In contrast, a Cybersecurity Analyst has a broader focus on monitoring, analyzing, and responding to security threats across multiple systems and platforms. Both roles require security certifications and are vital in protecting organizational assets, but they differ in scope and technical focus.

What job categories do people searching Microsoft Security Engineer jobs in Virginia look for? The top searched job categories for Microsoft Security Engineer jobs in Virginia are:
What cities in Virginia are hiring for Microsoft Security Engineer jobs? Cities in Virginia with the most Microsoft Security Engineer job openings:
Infographic showing various Microsoft Security Engineer job openings in Virginia as of May 2026, with employment types broken down into 87% Full Time, 9% Part Time, and 4% Contract. Highlights an 87% Physical, 5% Hybrid, and 8% Remote job distribution, with an average salary of $151,463 per year, or $72.8 per hour.

Azure Cloud Security Engineer

TalentzPro

Arlington, VA

$64.25 - $85.75/hr

Other

Posted 27 days ago


Job description

Job Title: Senior Azure Cloud Security Engineer (Oil & Gas Domain)

Work Location: Arlington, VA (Fully Onsite)
Full Time Role

 

If you find this opportunity suitable, kindly share your updated resume. Also, please let me know a good time to connect with you for a quick discussion.

Looking forward to hearing from you!

 

Job Description

This role requires expert-level, hands-on experience in the Microsoft security ecosystem coupled with deep proficiency in best-of-breed third-party tools like CrowdStrike, Splunk, and Tenable. 

 

Responsibilities

  • Design and maintain complex conditional access policies incorporating device compliance, location, and risk-based signals.
  • Implement Privileged Identity Management (PIM) to enforce just-in-time (JIT) and just-enough-administration (JEA) for high-impact roles.
  • Conduct regular access reviews and manage identity lifecycles for employees, contractors, guests, and service accounts. 
  • Configure MDM and MAM policies, including device enrollment restrictions, compliance baselines, and configuration profiles for Windows, macOS, iOS, and Android.
  • Oversee patching deployments and automate OS/Application patching cycles to maintain a low vulnerability footprint. 
  • Build and tune sensitivity labels for automatic data classification across SharePoint, Teams, and Exchange.
  • Develop Data Loss Prevention (DLP) policies to prevent unauthorized data exfiltration. 
  • Manage the full suite (Endpoint, Office 365, Identity, and Cloud) to investigate and remediate sophisticated threats.

 

Qualifications

  • 7+ years of professional experience relevant experience supporting enterprise cloud and/or infrastructure environments.
  • Deep knowledge & hands on experience in core components of the Microsoft security and management ecosystem designed for a Zero Trust Approach. Specifically on Azure Entra, Intune and Purview (DLP, eDiscovery, Information Protection, Insider Risk Management) and Azure Conditional Access Policies for automated guardrails.
  • Advanced proficiency in PowerShell or Python for automating security tasks and incident response playbooks.
  • Expertise in using Proofpoint Targeted Attack Protection (TAP) and Threat Response Auto-Pull (TRAP) to stop phishing and malware.
  • Experience managing the full user lifecycle (joiner, mover, leaver) and automating provisioning / deprovisioning using SailPoint.
  • Experience with JAMF Pro and JAMF Protect for securing Apple endpoints within an enterprise Azure environment. 
  • Bachelor''s degree in Cybersecurity, Computer Science, or Information Systems.
  • Microsoft Certified Azure Security Engineer Associate (AZ-500) (Preferred)
  • SC-100 (Cybersecurity Architect) or CISSP (Highly Preferred)