Associate Cybersecurity Platform Engineer

Qnity Electronics•Wimington, DE
•Hybrid

About The Position

We are seeking an early-to-mid career Cybersecurity Platform Operations Analyst to support day-to-day security request triage, light security administration, evidence gathering, and operational follow-up across SIEM ingest, identity, endpoint security, email security, SaaS access, and application onboarding workflows. This role is intended for someone developing broad cybersecurity engineering experience while working under the direction of more senior cybersecurity engineers and architects. The analyst will handle routine security requests, perform defined administrative activities within established standards, gather technical evidence, identify issues requiring escalation, and help ensure requests move efficiently through the cybersecurity organization. The successful candidate should have practical familiarity with Microsoft enterprise technologies and a strong interest in developing broader cybersecurity engineering skills.

Requirements

  • 1–3 years of experience in cybersecurity, IT infrastructure, endpoint management, identity administration, systems administration, or a related technical field.
  • Basic understanding of cybersecurity concepts including authentication, authorization, least privilege, endpoint security, phishing, malware protection, logging, and network access.
  • Familiarity with Microsoft 365 and Microsoft Entra ID.
  • Experience working with Windows endpoints and enterprise IT environments.
  • Ability to gather and interpret technical information from administrative consoles, logs, and configuration screens.
  • Strong troubleshooting and analytical skills.
  • Ability to follow established procedures while recognizing situations requiring escalation.
  • Clear written communication and documentation skills.

Nice To Haves

  • Exposure to Microsoft Sentinel, Defender XDR, Defender for Endpoint, Defender for Office 365, Intune, or Entra ID.
  • Experience supporting SSO or enterprise application onboarding.
  • Familiarity with SaaS security and enterprise web-access controls.
  • Exposure to Microsoft Azure.
  • Familiarity with ticketing or workflow platforms such as ServiceNow.
  • Basic PowerShell knowledge.
  • Microsoft or other relevant cybersecurity certifications are helpful but not required.

Responsibilities

  • Review incoming cybersecurity requests and determine the appropriate security domain, owner, and required next steps.
  • Gather technical details, logs, screenshots, configuration information, and other evidence needed to evaluate requests.
  • Perform routine, documented security administration activities within established procedures and delegated permissions.
  • Identify requests involving elevated risk, privileged access, architectural changes, exceptions, or unfamiliar technologies and escalate them to senior cybersecurity staff.
  • Track open requests and coordinate with users, application teams, infrastructure teams, and cybersecurity engineers through resolution.
  • Support operational use of Microsoft Sentinel, Defender XDR, Microsoft Defender for Endpoint, Microsoft Defender for Office 365, Microsoft Entra ID, Microsoft Intune, and email security.
  • Review endpoint onboarding status, device health, basic alert context, email quarantine status, phishing submissions, risky sign-ins, and other routine security events.
  • Assist senior engineers with troubleshooting Microsoft security platform integrations and configuration issues.
  • Validate that systems and endpoints are correctly reporting into required security platforms.
  • Gather evidence from Microsoft security consoles to support investigations, security reviews, audits, and operational troubleshooting.
  • Review basic Entra enterprise application configuration, authentication requirements, group assignments, and application access information from a security (not IAM) perspective.
  • Support endpoint-security operational activities involving Microsoft Defender for Endpoint and Intune-managed devices.
  • Review endpoint security status, onboarding health, security configuration status, and basic device information.
  • Gather relevant device evidence when investigating security requests or endpoint issues.
  • Assist with routine troubleshooting of endpoint security controls.
  • Escalate endpoint issues that require containment, forensic review, policy changes, or senior engineering action.
  • Assist with administration of email security products related to phishing reports, message investigation, quarantine issues, and other routine email-security requests.
  • Maintain clear documentation for recurring security procedures, troubleshooting steps, and request-handling processes.
  • Develop and improve checklists and standard operating procedures for common cybersecurity requests.
  • Identify repetitive work that could be standardized, automated, or moved to self-service.
  • Document recurring problems and work with senior engineers to improve underlying processes and controls.
  • Help maintain accurate records of security platforms, integrations, ownership, and operational dependencies.

Benefits

  • comprehensive pay and benefits package
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service