The Security Software & Controls Administrator is responsible for the daily operation, monitoring, and improvement of the organization’s cybersecurity controls and platforms. This role ensures protection of enterprise systems, data, and users through proactive security management, incident response, platform optimization, and collaboration with internal teams. Essential Functions / Job Responsibilities: Managed Detection & Response (MDR – Arctic Wolf) Serve as the primary contact for all MDR alerts, escalations, advisories, and general security recommendations. Investigate and remediate security incidents in coordination with the SOC. Review MDR reporting and drive ongoing reduction of attack surface. • Endpoint Detection & Response (Aurora / EDR) Administer endpoint protection agents and ensure complete deployment coverage. Monitor detections and conduct triage of endpoint-related threats. Maintain endpoint security posture including policy enforcement and hardening. Email Security & Awareness (Proofpoint) Oversee email security and filtering while monitoring cloud‑based access activity for signs of abnormal or risky behavior. Develop and execute End-User Security Awareness Training, including regular simulated phishing campaigns and security briefings. DNS Security (Cisco Umbrella) Maintain DNS‑layer security filtering across all users and devices and manage Cisco Umbrella operations and policies to support consistent DNS‑level protection. Investigate blocked threats and suspicious domain activity. Fortinet Security Fabric (FortiAnalyzer, FortiEMS) Maintain and monitor Fortinet systems, including cloud‑based analytics, endpoint telemetry, and security fabric posture. Conduct threat‑hunting activities using FortiAnalyzer datasets and firewall logs. Manage firewall security posture, apply patches, audit rule sets, and manage VPN and remote‑access controls. Monitor remote endpoint DNS telemetry (via EMS if applicable) to supplement organization‑wide threat visibility. Identity & Access Governance (Microsoft 365 Entra) Maintain Conditional Access, MFA, and identity protection. Evaluate and refine Intune device‑compliance and data‑protection policies. Assist with SharePoint and OneDrive DLP policies and data governance. Monitor risky sign‑ins, privileged operations, and identity alerts. Cross-Platform Responsibilities Maintain internal documentation, diagrams, and security baselines. Support audits, risk assessments, and vulnerability remediation. Act as an escalation point for complex systems or security‑related issues. Assist with compromise response workflows; collaborate with local IT for user‑facing remediation when appropriate. - Evaluate emerging network and security platforms, assess new features and service offerings, and work with vendors to recommend solutions that enhance the organization's security posture.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level
Education Level
Associate degree