Cloud Security Engineer - Microsoft 365

Posted 4 Days Ago
Be an Early Applicant
Tel Aviv, ISR
In-Office
Mid level
Manufacturing
The Role
Own administration, configuration, and security of enterprise Microsoft 365 tenants. Manage Intune device lifecycle, Entra ID identity and access (SSO, Conditional Access, PIM, MFA), Defender stack, Exchange/Teams/SharePoint governance, EDR integrations, compliance, and tenant monitoring. Collaborate with IT and Security, maintain documentation, implement governance and controls, and support audits and incident response.
Summary Generated by Built In
Description

Quantum Machines (QM) is a global leader in control systems for quantum computing, a field on the verge of exponential growth. Our innovative hardware and software mark a groundbreaking approach in quantum computer control, scaling from individual qubits to expansive arrays of thousands. At the core of QM lies a passionate and ambitious team committed to reshaping the construction and operation of quantum computers. Our work is fueled by a deep understanding of customer needs, driving us to deliver unparalleled solutions in this revolutionary field.

We are seeking a highly experienced Microsoft 365 Cloud Security Engineer to own the administration, configuration, and security of our enterprise Microsoft 365 tenant(s). The ideal candidate has proven hands-on expertise managing Microsoft 365 at scale, including Intune, Exchange Online, SharePoint/OneDrive, Teams, Entra ID, Defender, and related integrations

You will play a key role in ensuring availability, governance, identity and access control, endpoint compliance, and modern security posture across the entire Microsoft cloud ecosystem, with close collaboration across IT, Security, and business stakeholders.

Key Responsibilities

Microsoft 365 Tenant Administration

  • Administer and maintain enterprise-scale M365 tenants, including configuration, governance, and operational support.
  • Oversee service health, usage reporting, licensing, and user lifecycle management.
  • Maintain documentation of configurations, workflows, and operational procedures.

Microsoft Intune / Endpoint Management (Full Scope)

  • Own all aspects of Intune administration, including:
  • Device enrolment (Windows, macOS, iOS/iPadOS, Android)
  • Configuration profiles, compliance policies, and security baselines
  • Autopilot provisioning, device naming policies, and lifecycle
  • Conditional Access integration with device compliance
  • Endpoint security policies (AV, firewall, ASR rules, BitLocker, etc.)

Identity & Access Management (Entra ID / SSO)

  • Manage and secure Microsoft Entra ID (Azure AD) for identity, authentication, and access governance.
  • Configure and maintain SSO integrations with SaaS applications using SAML/OAuth/OIDC.
  • Implement and optimize:
  • Conditional Access policies
  • MFA enforcement and authentication methods policy
  • Privileged Identity Management
  • Identity Protection policies (risk-based controls)

Security & Threat Protection

  • Deploy and manage Microsoft Defender stack relevant to the organization
  • Integrate and manage endpoint security posture with non-Microsoft EDR platforms, such as Sentinel One/CrowdStrike
  • Collaborate with Security teams to implement detection and response workflows, ensure coverage, and align with organizational policy.

Messaging & Collaboration

Exchange Online

  • Administer Exchange Online policies and configurations
  • Implement email security best practices and support incident response when needed.

Microsoft Teams

  • Administer Teams policies and governance - Teams lifecycle policy, app permissions, meeting policies; External access and guest collaboration settings

SharePoint / OneDrive

  • Administer SharePoint Online and OneDrive settings, including:
  • Site governance, permissions, and sharing controls
  • Sensitivity labels and information protection controls (if used)
  • Sync and storage management, auditing and access policies

Azure & Cloud Infrastructure

  • Support Azure identity, security, and basic cloud resources relevant to M365 integrations.
  • Manage Azure configuration related to:
  • Entra ID integrations
  • Conditional Access
  • Hybrid identity (if applicable)
  • Azure security settings and monitoring

Policy, Compliance, and Governance

  • Implement and maintain governance models across identity, endpoint, data sharing, and collaboration tools.
  • Support compliance initiatives, audits, and reporting needs.
  • Maintain secure tenant configurations aligned with best-practice frameworks (e.g., CIS, Microsoft Secure Score, NIST).
Requirements

Required Qualifications

  • 3-5 years of hands-on experience administering Microsoft 365 in an enterprise environment.
  • Proven expertise managing Intune (full end-to-end: enrolment → policy → deployment → compliance → reporting), Exchange Online, SharePoint Online / OneDrive, Microsoft Teams, Microsoft Entra ID, Conditional Access policies
  • Strong understanding of email security fundamentals and implementations: Transport rules, threat policies, anti-phishing controls SPF, DKIM, DMARC; experience integrating M365 security posture with non-Microsoft EDR/XDR tools
  • Strong troubleshooting capability across identity, endpoint, collaboration, and security layers.
  • Experience in scripting/automation
  • Experience with Microsoft Defender for Endpoint/Office 365/Cloud Apps.

Key Skills & Competencies

  • Enterprise cloud administration mindset (scale, governance, standardization)
  • Strong security-first approach
  • Ability to translate business needs into practical policies
  • Comfortable owning production-critical services
  • Excellent communication and cross-functional collaboration
  • Structured documentation and operational discipline
Preferred Skills

Strong plus

  • Experience with Microsoft Purview (DLP, retention, sensitivity labels, eDiscovery)
  • Familiarity with Zero Trust architecture and modern security frameworks.
  • Knowledge of SIEM integrations (Microsoft Sentinel, Splunk, etc.).

Skills Required

  • 3-5 years hands-on experience administering Microsoft 365 in an enterprise environment
  • Proven expertise managing Intune end-to-end (enrolment, policies, deployment, compliance, reporting)
  • Experience administering Exchange Online, SharePoint Online / OneDrive, and Microsoft Teams
  • Experience managing Microsoft Entra ID (Azure AD), SSO integrations, Conditional Access, MFA, PIM, Identity Protection
  • Strong understanding of email security: transport rules, threat policies, anti-phishing, SPF, DKIM, DMARC
  • Experience integrating M365 security posture with non-Microsoft EDR/XDR tools (e.g., SentinelOne, CrowdStrike)
  • Experience with Microsoft Defender for Endpoint, Defender for Office 365, and Defender for Cloud Apps
  • Strong troubleshooting capability across identity, endpoint, collaboration, and security layers
  • Experience in scripting and automation
  • Enterprise cloud administration mindset, governance, and documentation discipline
  • Ability to translate business needs into practical security and governance policies
  • Experience with Microsoft Purview (DLP, retention, sensitivity labels, eDiscovery)
  • Familiarity with Zero Trust architecture and modern security frameworks
  • Knowledge of SIEM integrations (Microsoft Sentinel, Splunk, etc.)
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Tel Aviv-Yafo
155 Employees
Year Founded: 2018

What We Do

Quantum Machines envisions a new technological age. A time when quantum computing revolutionizes entire industries, solves global problems, and drives unprecedented innovation. That’s why we made it our mission to build the Quantum Orchestration Platform (QOP): the platform to realize the full potential of quantum computing technologies at any scale and deliver the most advanced quantum capabilities to quantum system developers. Built by a world-class multidisciplinary team of quantum scientists and engineers, the QOP powers quantum breakthroughs and accelerates the path towards the new age of quantum computing

Similar Jobs

Remitly Logo Remitly

Field Operations Representative - Thai Speaker

eCommerce • Fintech • Payments • Software • Financial Services
In-Office
Tel Aviv, ISR
2800 Employees

Taboola Logo Taboola

Senior Site Reliability Engineer

AdTech • Big Data • Digital Media • Marketing Tech
Hybrid
Tel Aviv, ISR
1900 Employees

Taboola Logo Taboola

Senior Data Scientist

AdTech • Big Data • Digital Media • Marketing Tech
Hybrid
Tel Aviv, ISR
1900 Employees

Rubrik Logo Rubrik

Staff Software Engineer

Artificial Intelligence • Big Data • Cloud • Information Technology • Software • Cybersecurity • Data Privacy
In-Office
Tel Aviv, ISR
3000 Employees

Similar Companies Hiring

Fortune Brands Innovations Thumbnail
Manufacturing
Deerfield, IL
10000 Employees
Rosendin Thumbnail
Other • Manufacturing
San Jose, CA
6219 Employees
Amalgamated Sugar Thumbnail
Food • Greentech • Agriculture • Industrial • Manufacturing
Boise, Idaho
768 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account