Cyber Security Specialist

Full TimeOn-siteMidLimited info disclosed
20 views0 applications

Description

Hanson Consulting Group is seeking a highly skilled Cyber Security Threat Coordinator to support Microsoft security teams in monitoring, triaging, and managing security threat incidents. This role focuses on coordinating escalations, validating mitigations, and ensuring timely, high‑quality responses across Microsoft's security ecosystem in collaboration with research, engineering, and customer support organizations. This position operates within a 24x7 support model and includes participation in an on‑call rotation to ensure timely response to high‑severity and customer‑impacting security incidents. The ideal candidate is comfortable working in fast‑paced, high‑impact environments, taking ownership of incident workflows from initial escalation through resolution while meeting strict service level expectations. Location: Remote (U.S.) – Candidates must reside in one of the following states: Washington, Oregon, California, Arizona, Montana, Georgia, Texas, South Carolina, Florida, or New York. Responsibilities Include: Monitor threat incidents from Open‑Source Intelligence, internal monitoring systems, and those escalated from customer support engineers, and ensure all deliverables are completed within stringent deadlines and defined Service Level Agreements / Service Level Objectives. Triage and assign escalation requests in tracking systems to teams that can provide resolution, including Microsoft Threat teams, Engineering, and Customer Support; follow up and obtain status updates according to expected SLAs / SLOs until resolution is provided to customers. Provide timely, accurate, and end‑to‑end responses for threat incidents with attention to detail. Solve complex support issues effectively. Test and confirm mitigation options provided by the broader securities team, engineering, and product teams to identify the most cost‑effective resolution. Provide regular analysis of threat trends and response coverage on a weekly, monthly, and quarterly cadence. Drive improvement of threat response quality as well as Microsoft securities protection, disruption, and security posture capabilities in collaboration with the Defender Threat Response Team and Technical Program Managers. Propose process enhancements and tool functionality improvements to raise threat response quality. Provide the first layer of response to protection‑related escalations for Microsoft Threat Protection – that own protection coverage across the Microsoft Defender / Microsoft Threat Protection security stack, including: Provide the first layer of response to protection‑related escalations for Microsoft Threat Protection – that own protection coverage across the full Microsoft Defender / Microsoft Threat Protection security stack and Microsoft Sentinel (security information and event management). Provide priority support for Catalyst, V200, and S500 customer escalations. Incident Monitoring and Management. Operational Coverage: The team will be providing 24x7x365 support, and will need to provide a report of service every weekly, monthly and quarterly business reviews. Desired Skills: Mid level to Advanced Threat Response Coordination Mid level to Advanced Threat Intelligence Product Training on the Microsoft Defender stack + Entra + Sentinel Basic detection creation and debugging training Demonstrated project management experience Strong verbal and written communication Benefits: 100% employer paid healthcare for employees 100% employer paid dental and vision for employees Employer paid Long Term Disability $50,000 of employer paid Life Insurance and AD&D 401k plan with a 4% match, immediately vested 15 days of paid time off (PTO) 5 days of sick leave 10 paid holidays MetLife Legal Plan-This is an optional benefit Figo Pet Insurance- This is an optional benefit