What are the responsibilities and job description for the Senior Information Security Engineer position at ANDMORE?
ANDMORE is seeking a Senior Information Security Engineer which is a senior, hands-on security engineering leader responsible for translating CISO strategy into secure architecture, operational controls, automation, and measurable risk reduction.
This role drives engineering outcomes across Microsoft security platforms, identity, cloud/network security, data protection, AI security, vulnerability management, detection, and incident response.
This position partners cross-functionally with Infrastructure, IT Operations, Legal, HR, Finance, Compliance, business leaders, and external providers.
What You’ll Do
Security Architecture & Engineering
- Translate risk priorities into architectures, standards, reference implementations, and control designs
- Design and implement controls across Microsoft 365, Azure, Entra ID, endpoints, networks, SaaS, and cloud
- Conduct architecture reviews and document risks, mitigations, and exceptions
Microsoft Purview, Data Protection & DLP
- Lead implementation and optimization of Purview (sensitivity labels, DLP, governance)
- Partner with cross-functional stakeholders to enforce data handling controls
- Manage rollout, testing, tuning, and effectiveness of data protection policies
AI Security, Copilot & Agent Governance
- Serve as technical lead for AI security (Copilot, agents, integrations)
- Design safeguards for identity, data exposure, prompt injection, and monitoring
- Evaluate AI use cases and define security controls pre-deployment
Identity, Access & Entra ID Security
- Engineer identity controls including MFA, conditional access, PIM, and governance
- Reduce privileged access risks and improve monitoring
- Strengthen lifecycle and access governance processes
Security Operations, Detection & Incident Response
- Own MSSP SOC relationship and improve monitoring and response capabilities
- Enhance detection quality across endpoints, identities, and cloud environments
- Lead incident response support and post-incident improvements
Vulnerability Management & Security Hardening
- Oversee vulnerability lifecycle (discovery, prioritization, remediation, reporting)
- Apply risk-based prioritization using threat intelligence and asset criticality
- Partner with technical teams to improve configurations and remediation timelines
Cloud, Network & Platform Security
- Lead Azure security engineering and establish secure baselines
- Evaluate new technologies and vendors for risk and compliance
- Strengthen network segmentation, remote access, and monitoring
Automation, Governance & Cross-Functional Support
- Build automation using PowerShell, Python, Microsoft Graph, and Logic Apps
- Develop repeatable processes for audits, reporting, and control validation
- Mentor teams and communicate technical concepts to executive audiences
Qualifications
- 7 years in information security engineering, cloud security, or cybersecurity roles
- Deep expertise in Microsoft security stack (Sentinel, Defender, Entra ID, Purview, Azure)
- Experience with vulnerability management and risk-based prioritization
- Strong background in SOC/MSSP operations and incident response
- Knowledge of Azure security, identity governance, and compliance frameworks
- Experience with data protection tools (e.g., Purview DLP, labeling)
- Familiarity with AI security concepts and tools (e.g., Copilot environments)
- Understanding of NIST, ISO 27001, CIS Controls, and MITRE ATT&CK
- Scripting experience (PowerShell and/or Python)
Competencies
- Security architecture and engineering leadership
- Microsoft security platform expertise
- AI, identity, and data protection governance
- Risk-based decision-making
- Automation and operational excellence
- Strong executive communication and cross-functional collaboration
Work Environment
- Hybrid role (Monday & Friday, Remote with Tuesday through Thursday in office)
- Required flexibility (active markets/events)
Why Join ANDMORE
- Exposure to a dynamic, high-growth wholesale and events industry
- Opportunity to develop sales skills and grow within the organization
- Collaborative and entrepreneurial team environment
- Hybrid flexibility with a strong connection to our Atlanta campus or Las Vegas Campus dependent on location
About ANDMORE®
ANDMORE® is a Blackstone and Fireside Investments portfolio company. We create connection opportunities for the wholesale home, gift, and lifestyle industries through physical markets, design centers, and digital channels.
For more information, visit www.ANDMORE.com.