Hiring.Camp

Associate Cybersecurity Platform Engineer

Qnity

·

Today

Location
NA-US-DE-CHESTNUT_RUN_PLAZA (EL), United States of America
Workplace
Hybrid
Type
Full-time
Department
Engineering
Seniority
Entry
Experience
1+ years
Source
Workday

Description

Are you looking to power the next leap in the exciting world of advanced electronics? Do you want to help solve problems that drive success in the rapidly evolving technology and connectivity landscape? Then bring your problem-solving, passion, and creativity to help us power the next leap in electronics.

At Qnity, we’re more than a global leader in materials and solutions for advanced electronics and high-tech industries – we’re a tight-knit team that is motivated by new possibilities, and always up for a challenge. All our dedicated teams contribute to making cutting-edge technology possible. We value forward-thinking challengers, boundary-pushers, and diverse perspectives across all our departments, because we know we play a critical role in the world enabling faster progress for all. Learn how you can start or jumpstart your career with us.

Associate Cybersecurity Platform Engineer

Position Summary

We are seeking an early-to-mid career Cybersecurity Platform Operations Analyst to support day-to-day security request triage, light security administration, evidence gathering, and operational follow-up across SIEM ingest, identity, endpoint security, email security, SaaS access, and application onboarding workflows.

This role is intended for someone developing broad cybersecurity engineering experience while working under the direction of more senior cybersecurity engineers and architects. The analyst will handle routine security requests, perform defined administrative activities within established standards, gather technical evidence, identify issues requiring escalation, and help ensure requests move efficiently through the cybersecurity organization.

The successful candidate should have practical familiarity with Microsoft enterprise technologies and a strong interest in developing broader cybersecurity engineering skills.

Key Responsibilities

Security Request Triage and Operations

  • Review incoming cybersecurity requests and determine the appropriate security domain, owner, and required next steps.
  • Gather technical details, logs, screenshots, configuration information, and other evidence needed to evaluate requests.
  • Perform routine, documented security administration activities within established procedures and delegated permissions.
  • Identify requests involving elevated risk, privileged access, architectural changes, exceptions, or unfamiliar technologies and escalate them to senior cybersecurity staff.
  • Track open requests and coordinate with users, application teams, infrastructure teams, and cybersecurity engineers through resolution.

Microsoft Security Platforms

  • SIEM engineering, log forwarding, ingest, table management, such as Microsoft Sentinel or Google Chronicle or similar systems.
  • DLP engineering, and backend system management for intermediate database storage of policies in Microsoft Purview or leading DLP products.
  • Support operational use of Microsoft Sentinel, Defender XDR, Microsoft Defender for Endpoint, Microsoft Defender for Office 365, Microsoft Entra ID, Microsoft Intune, and email security.
  • Review endpoint onboarding status, device health, basic alert context, email quarantine status, phishing submissions, risky sign-ins, and other routine security events.
  • Assist senior engineers with troubleshooting Microsoft security platform integrations and configuration issues.
  • Validate that systems and endpoints are correctly reporting into required security platforms.
  • Gather evidence from Microsoft security consoles to support investigations, security reviews, audits, and operational troubleshooting.

Identity and Application Access

  • Review basic Entra enterprise application configuration, authentication requirements, group assignments, and application access information from a security (not IAM) perspective.

Endpoint Security

  • Support endpoint-security operational activities involving Microsoft Defender for Endpoint and Intune-managed devices.
  • Review endpoint security status, onboarding health, security configuration status, and basic device information.
  • Gather relevant device evidence when investigating security requests or endpoint issues.
  • Assist with routine troubleshooting of endpoint security controls.
  • Escalate endpoint issues that require containment, forensic review, policy changes, or senior engineering action.

Email and Collaboration Security

  • Assist with administration of email security products related to phishing reports, message investigation, quarantine issues, and other routine email-security requests.

Documentation and Operational Improvement

  • Maintain clear documentation for recurring security procedures, troubleshooting steps, and request-handling processes.
  • Develop and improve checklists and standard operating procedures for common cybersecurity requests.
  • Identify repetitive work that could be standardized, automated, or moved to self-service.
  • Document recurring problems and work with senior engineers to improve underlying processes and controls.
  • Help maintain accurate records of security platforms, integrations, ownership, and operational dependencies.

Qualifications

Required

  • 1–3 years of experience in cybersecurity, IT infrastructure, endpoint management, identity administration, systems administration, or a related technical field.
  • Basic understanding of cybersecurity concepts including authentication, authorization, least privilege, endpoint security, phishing, malware protection, logging, and network access.
  • Familiarity with Microsoft 365 and Microsoft Entra ID.
  • Experience working with Windows endpoints and enterprise IT environments.
  • Ability to gather and interpret technical information from administrative consoles, logs, and configuration screens.
  • Strong troubleshooting and analytical skills.
  • Ability to follow established procedures while recognizing situations requiring escalation.
  • Clear written communication and documentation skills.

Preferred

  • Exposure to Microsoft Sentinel, Defender XDR, Defender for Endpoint, Defender for Office 365, Intune, or Entra ID.
  • Experience supporting SSO or enterprise application onboarding.
  • Familiarity with SaaS security and enterprise web-access controls.
  • Exposure to Microsoft Azure.
  • Familiarity with ticketing or workflow platforms such as ServiceNow.
  • Basic PowerShell knowledge.
  • Microsoft or other relevant cybersecurity certifications are helpful but not required.

Role Boundaries

This is an operational cybersecurity engineering role, not a security operations center analyst or senior security architecture position.

The role is not expected to independently perform:

  • Detection engineering.
  • Advanced incident response or digital forensics.
  • Vulnerability-management program ownership.
  • Firewall engineering or network security architecture.
  • Security architecture approval.
  • Privileged-access approval.
  • High-risk application permission approval.
  • Cybersecurity exception or risk acceptance decisions.

These activities should be escalated to the appropriate senior cybersecurity engineer, architect, IAM engineer, security operations team, or cybersecurity leadership function.

Success Measures

Success in this role means routine cybersecurity requests are handled accurately and promptly, technical evidence is gathered before escalation, senior engineers receive well-formed escalation packages rather than incomplete requests, and an increasing percentage of standard security activities are documented and repeatable.

#LI-LH1

#LI-Hybrid

Join our Talent Community to stay connected with us!

Qnity is an equal opportunity employer. Qualified applicants will be considered without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability or any other protected class. If you need a reasonable accommodation to search or apply for a position, please visit our Accessibility Page for Contact Information.

Qnity offers a comprehensive pay and benefits package. To learn more visit the Compensation and Benefits page.

We use Artificial Intelligence (AI) to enhance our recruitment process.

Skills

AzureServiceNowCybersecuritySIEM