Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
JobTailor Logo

See all jobs on JobTailor

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Al Watania Information Systems (Wisys)

Senior Security Administrator, Microsoft

Al Watania Information Systems (Wisys)

Senior Microsoft Security Administrator responsible for M365 E5 Security features and operations. Includes incident management, security compliance, and user support for Microsoft 365 services.

Posted 8/3/2026full-timeRemote • 🇸🇦 Saudi ArabiaSeniorWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in M365 E5 Security Administration, including Identity & Access management, Endpoint Security, and Data Protection. Proficient in KQL for analytics and incident response automation, with a strong focus on operational support and compliance.

Highest-signal resume keywords
M365 E5 Security AdministrationKQL (Kusto Query Language)Microsoft Sentinel OperationsMicrosoft Intune (MDM/MAM)PowerShell for M365 Scripting

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Identity & Access ManagementEndpoint Security ManagementData Loss Prevention (DLP)Automated RemediationIncident ResponsePatch & Vulnerability ManagementConditional Access PoliciesMulti-Factor Authentication (MFA)Privileged Identity Management (PIM)Cloud Identity Fundamentals
Tools & Technologies
Microsoft Defender for EndpointDefender for Office 365Microsoft PurviewDefender for Cloud AppsLogic AppsMicrosoft Secure ScoreDefender Vulnerability Management
Certifications & Qualifications
Microsoft Certified: Identity and Access Administrator Associate (SC-300)Microsoft Certified: Information Protection and Governance Administrator Associate (SC-400)Microsoft Certified: Security Operations Analyst Associate (SC-200)Microsoft Certified: Cybersecurity Architect Expert (SC-100)
Industry Keywords
Cloud SecuritySecurity OperationsThreat DetectionCompliance ReportingUser License Management

Tech Stack

Tools & technologies
CloudCyber SecurityDNSFirewalls

About the role

Key responsibilities & impact
  • M365 E5 Security Administration & Engineering
  • Identity & Access (Entra ID): Configure and maintain Conditional Access policies, Multi-Factor Authentication (MFA), Privileged Identity Management (PIM), and Identity Protection rules.
  • Endpoint Security (Microsoft Defender for Endpoint & Intune): Manage EDR policies, device compliance rules, Attack Surface Reduction (ASR) rules, and automated remediation on Windows/mobile devices.
  • Email & Collaboration (Defender for Office 365): Oversee Safe Links, Safe Attachments, anti-phishing, anti-spam policies, and quarantine triage.
  • Data Protection & Governance (Purview): Implement and monitor Data Loss Prevention (DLP) policies, Sensitivity Labels, and Information Barrier policies across M365 services.
  • Cloud Apps (Defender for Cloud Apps): Monitor shadow IT, manage OAuth app permissions, and enforce session policies.
  • Microsoft Sentinel (SIEM/SOAR) Operations
  • Data Connector Management: Maintain and optimize log ingestion from M365, Entra ID, Defender XDR, firewalls, and cloud infrastructure while keeping ingestion costs efficient.
  • Detection & Analytics: Write and update KQL (Kusto Query Language) analytics rules, hunting queries, and custom workbooks/dashboards.
  • Automation (SOAR): Build and maintain Logic Apps playbooks to automate incident response workflows and threat containment.
  • Incident Response: Perform Tier 2/3 triage, investigation, and root-cause analysis on alerts originating from Defender XDR and Sentinel.
  • Operational Support & Maintenance (~300 Users)
  • License & Tenant Health: Continuously review Microsoft Secure Score, address recommendations, and audit user license assignments.
  • Patch & Vulnerability Management: Monitor Defender Vulnerability Management insights and coordinate with IT support to remediate endpoint software vulnerabilities.
  • User Escalations: Handle escalated support tickets regarding access blocks, false positives, quarantine releases, or compromised account recovery.
  • Reporting & Documentation: Maintain accurate security operational runbooks, architecture diagrams, and monthly threat/compliance reporting for management.

Requirements

What you’ll need
  • 3+ years of hands-on experience administering Microsoft 365 security features, specifically within an E5 / Defender XDR environment.
  • 3+ years of experience configuring and operating Microsoft Sentinel.
  • Strong proficiency in writing KQL (Kusto Query Language) queries for logs, investigations, and analytics rules.
  • Experience with Microsoft Intune (MDM/MAM) for Windows endpoint management.
  • Solid understanding of PowerShell for M365 scripting and security automation.
  • Hands-on knowledge of networking basics (DNS, Firewalls, VPNs) and cloud identity fundamentals (Entra ID, SAML, SSO).
  • Desirable Certifications (At least one preferred)
  • Microsoft Certified: Identity and Access Administrator Associate (SC-300)
  • Microsoft Certified: Information Protection and Governance Administrator Associate (SC-400)
  • Microsoft Certified: Security Operations Analyst Associate (SC-200) (Highly Desirable)
  • Microsoft Certified: Cybersecurity Architect Expert (SC-100)

Benefits

Comp & perks
  • 🌐 Worldwide ❌ Jobs You've Hidden ⭐️ Saved Jobs ✅ Applied Jobs ✉️ Email Alerts 👤 Account Al Watania Information Systems (Wisys) Website LinkedIn All Job Openings 51 - 200 employees Founded 1999 💼 Consulting 🤝 B2B 🏢 Enterprise Consulting
  • B2B
  • Enterprise Al Watania Information Systems (WiSys) is a Riyadh-based Saudi IT services and consulting company (est. 2007) that implements and manages enterprise technology solutions, with a strong focus on SAP implementations and support. WiSys offers SAP S/4HANA (public and private), SAP SuccessFactors, SAP Ariba, SAP Business One and related SAP services (implementation, support, annual contracts), plus managed services including cloud hosting (AWS, Google Cloud), infrastructure and security management, backup/restore, and IT operations. They also provide application development (including low-code platforms), BI & data analytics, IT outsourcing, and proprietary products such as WiHR, Internal Audit Portal, Legal Management System, and Balanced Scorecards. WiSys highlights local Saudi presence with cross-industry experience, multiple SAP quality awards and recognitions (including SAP Expert Level), ISO 27001 certification, and partnerships with vendors like Cisco, Fortinet, CrowdStrike, Commvault, Rubrik, and Dell. Senior Security Administrator, Microsoft 🔥 0 minutes ago 🇸🇦 Saudi Arabia – Remote ⏰ Full Time 🟠 Senior 👮‍♂️ Cybersecurity / Security Engineer Cloud Cyber Security DNS Firewalls Apply Now Find Hiring Managers Customize resume + cover letter Report problem ☆ Save ☑️ Mark as applied ❌ Hide 📋 Description
  • M365 E5 Security Administration & Engineering
  • Identity & Access (Entra ID): Configure and maintain Conditional Access policies, Multi-Factor Authentication (MFA), Privileged Identity Management (PIM), and Identity Protection rules.
  • Endpoint Security (Microsoft Defender for Endpoint & Intune): Manage EDR policies, device compliance rules, Attack Surface Reduction (ASR) rules, and automated remediation on Windows/mobile devices.
  • Email & Collaboration (Defender for Office 365): Oversee Safe Links, Safe Attachments, anti-phishing, anti-spam policies, and quarantine triage.
  • Data Protection & Governance (Purview): Implement and monitor Data Loss Prevention (DLP) policies, Sensitivity Labels, and Information Barrier policies across M365 services.
  • Cloud Apps (Defender for Cloud Apps): Monitor shadow IT, manage OAuth app permissions, and enforce session policies.
  • Microsoft Sentinel (SIEM/SOAR) Operations
  • Data Connector Management: Maintain and optimize log ingestion from M365, Entra ID, Defender XDR, firewalls, and cloud infrastructure while keeping ingestion costs efficient.
  • Detection & Analytics: Write and update KQL (Kusto Query Language) analytics rules, hunting queries, and custom workbooks/dashboards.
  • Automation (SOAR): Build and maintain Logic Apps playbooks to automate incident response workflows and threat containment.
  • Incident Response: Perform Tier 2/3 triage, investigation, and root-cause analysis on alerts originating from Defender XDR and Sentinel.
  • Operational Support & Maintenance (~300 Users)
  • License & Tenant Health: Continuously review Microsoft Secure Score, address recommendations, and audit user license assignments.
  • Patch & Vulnerability Management: Monitor Defender Vulnerability Management insights and coordinate with IT support to remediate endpoint software vulnerabilities.
  • User Escalations: Handle escalated support tickets regarding access blocks, false positives, quarantine releases, or compromised account recovery.
  • Reporting & Documentation: Maintain accurate security operational runbooks, architecture diagrams, and monthly threat/compliance reporting for management. 🎯 Requirements
  • 3+ years of hands-on experience administering Microsoft 365 security features, specifically within an E5 / Defender XDR environment.
  • 3+ years of experience configuring and operating Microsoft Sentinel.
  • Strong proficiency in writing KQL (Kusto Query Language) queries for logs, investigations, and analytics rules.
  • Experience with Microsoft Intune (MDM/MAM) for Windows endpoint management.
  • Solid understanding of PowerShell for M365 scripting and security automation.
  • Hands-on knowledge of networking basics (DNS, Firewalls, VPNs) and cloud identity fundamentals (Entra ID, SAML, SSO).
  • Desirable Certifications (At least one preferred)
  • Microsoft Certified: Identity and Access Administrator Associate (SC-300)
  • Microsoft Certified: Information Protection and Governance Administrator Associate (SC-400)
  • Microsoft Certified: Security Operations Analyst Associate (SC-200) (Highly Desirable)
  • Microsoft Certified: Cybersecurity Architect Expert (SC-100) Apply Now 📊 Check your resume score for this job Improve your chances of getting an interview by checking your resume score before you apply. Check Resume Score Similar Jobs Technical Account Manager, SIEM / Security Analytics 🕒 July 14 Anomali 201 - 500 🔒 Cybersecurity 🤖 Artificial Intelligence ☁️ SaaS Website LinkedIn All Job Openings Technical Account Manager at Anomali, focused on customer success and technical expertise. Helping clients utilize security operations and threat intelligence tools effectively. 🇸🇦 Saudi Arabia – Remote 💰 $40M Series D on 2018-01 ⏰ Full Time 🟡 Mid-level 🟠 Senior 👮‍♂️ Cybersecurity / Security Engineer Cyber Security Firewalls Splunk View More Security Engineer Jobs 🌐 Worldwide Built by Lior Neu-ner. I'd love to hear your feedback — Get in touch via DM or support@remoterocketship.com Search Search Jobs by country Search jobs by city Search jobs by job title Search entry-level jobs Search junior-level jobs Search senior-level jobs Search jobs by tech stack Search jobs by contract type Search remote internships Search remote part-time jobs Remote jobs Anywhere in the World Companies Hiring Anywhere in the World Companies Hiring Sales People Anywhere in the World Companies Hiring Software Engineers Anywhere in the World Resources Advice Tips for finding remote jobs Interview questions and answers Resume examples Cover letter examples Post a job Affiliates Is Remote Rocketship legit? Privacy policy Terms of service Job board SEO course Remote Job Search MasterClass AI Apply Copilot OpenClaw job finder Find jobs using your resume Jobs by Country Remote jobs anywhere in the world (Worldwide remote jobs) Remote jobs United States Remote jobs Australia Remote jobs Brazil Remote jobs Canada Remote jobs France Remote jobs Ireland Remote jobs Germany Remote jobs Netherlands Remote jobs Spain Remote jobs UK Popular Jobs Remote data analyst jobs Remote customer support jobs Remote executive assistant jobs Remote marketing jobs Remote product designer jobs Remote product manager jobs Remote project manager jobs Remote recruiter jobs Remote sales jobs Remote software engineer jobs Jobs by Type Remote full-time jobs Remote part-time jobs Remote contract jobs Remote internship jobs Remote entry-level jobs Remote jobs with no experience required Remote junior jobs (1-3 years of experience) Digital nomad jobs Remote jobs with no degree required Freelance remote jobs Temporary remote jobs Remote jobs hiring now Stay at home mom jobs