Cybersecurity Engineer – Microsoft Security, Defender, Entra ID & Purview
Offer summary

(Summary generated by AI based on the full job description)

The project targets an international security engineering environment focused on developing and operating Microsoft-based security solutions across cloud and on-prem. Core technologies are Microsoft Defender XDR, Microsoft Defender for Endpoint, Microsoft Defender for Cloud, Microsoft Sentinel, Microsoft Entra ID and Microsoft Purview (DLP). Responsibilities include designing, implementing and tuning security solutions, building detection rules and monitoring, investigating incidents and supporting IR, managing DLP, supporting IAM, contributing to Zero Trust, vulnerability management, automation with PowerShell/Python and collaborating with international cross-functional teams.

quick applyyou can start ASAP

Cybersecurity Engineer – Microsoft Security, Defender, Entra ID & Purview

Company: SQUARE ONE RESOURCES sp. z o.o.

from: 8 October 2026
to: 7 November 2026
18 000 - 21 000 złgross/ mth.contract of employment (full-time)
Offer parameters
level:mid • senior
working mode:remote • hybrid
location:Warszawa, Masovian
Warszawa, Masovian

Requirements

Expected technologies

Defender XDR
Defender for Endpoint
Microsoft Sentinel
SIEM
Entra ID
Purview
PowerShell
Python
Access Management
IAM

Our requirements

  • 3+ years of professional experience in Cybersecurity, Security Engineering, or Security Operations.
  • Strong and practical knowledge of the Microsoft security ecosystem.
  • Advanced knowledge of Microsoft Defender, including:
  • Microsoft Defender XDR
  • Microsoft Defender for Endpoint
  • Microsoft Defender for Cloud
  • Advanced knowledge of Microsoft Entra ID (Azure AD).
  • Advanced knowledge of Microsoft Purview, including Data Loss Prevention (DLP) capabilities.
  • Practical experience with Microsoft Sentinel and SIEM-based security monitoring.
  • Strong understanding of Endpoint Security and modern antivirus/EDR solutions.
  • Good understanding of Identity and Access Management (IAM).
  • Knowledge of Zero Trust security principles.
  • Experience with Security Monitoring and Incident Response.
  • Understanding of Vulnerability Management processes and tools.
  • Knowledge of Cloud Security, preferably within Microsoft Azure.
  • Ability to investigate security incidents and analyze security events.
  • Polish – C1 or higher.
  • English – C1 or higher.
  • Ability to work effectively in international, English-speaking, cross-functional teams.

Optional

  • Experience with PowerShell and/or Python for security scripting and automation.
  • Knowledge of security frameworks and standards such as:
  • NIST
  • ISO 27001
  • CIS Controls
  • Microsoft security certifications, particularly:
  • SC-100 – Microsoft Cybersecurity Architect
  • SC-200 – Microsoft Security Operations Analyst
  • SC-300 – Microsoft Identity and Access Administrator
  • Experience supporting large-scale cloud and security transformation projects.
  • Experience with security automation and development of automated response mechanisms.

Your responsibilities

  • Design, implement, configure, and continuously improve Microsoft security solutions across cloud and on-premises environments.
  • Manage and develop Microsoft Defender XDR, Defender for Endpoint, and Defender for Cloud capabilities.
  • Develop and maintain security monitoring and detection capabilities using Microsoft Sentinel and SIEM solutions.
  • Create, tune, and optimize detection rules, alerts, and security policies.
  • Monitor security events, investigate suspicious activities, and support incident detection and response.
  • Participate in incident response activities, including investigation, containment, and remediation.
  • Support security investigations and forensic analysis when required.
  • Develop and maintain Data Loss Prevention (DLP) policies and controls, particularly within Microsoft Purview.
  • Configure and optimize Microsoft Purview security and compliance capabilities.
  • Support Endpoint Security and advanced antivirus/EDR protection, including Microsoft Defender for Endpoint.
  • Work with Microsoft Entra ID to support Identity and Access Management, authentication, authorization, and access controls.
  • Contribute to the implementation of Zero Trust security principles.
  • Support vulnerability management activities, including vulnerability identification, assessment, prioritization, and remediation.
  • Contribute to Cloud Security initiatives within Microsoft Azure environments.
  • Develop scripts and automation using PowerShell and/or Python where applicable.
  • Collaborate with security, infrastructure, cloud, and application teams in an international environment.
  • Contribute to the continuous improvement of security processes, standards, and technical controls.
  • Support large-scale cloud and cybersecurity transformation projects.

About the project

We are looking for a Mid-level Cybersecurity Engineer to join an international security engineering environment focused on the development, administration, and continuous improvement of Microsoft-based security solutions across cloud and on-premises environments.
The project covers a broad range of cybersecurity areas, including security monitoring, threat detection, incident response, vulnerability management, identity and access management, endpoint security, cloud security, and security automation.
The role will be particularly focused on advanced security capabilities within the Microsoft ecosystem, including Microsoft Defender, Microsoft Entra ID, Microsoft Purview, and Microsoft Sentinel.
You will work in international, cross-functional teams and contribute to large-scale cloud and cybersecurity transformation initiatives.

This is how we organize our work

This is how we work

in house
Company

SQUARE ONE RESOURCES sp. z o.o.

At Square One Poland we link IT experts with the business. With over 25 years of experience, we specialize in recruitment processes on a global scale. Despite years of experience, we still have a startup DNA and this is our advantage. Our offices are located in London and Warsaw, however, we can reach clients from all over the world, from start-ups to big worldwide corporations.

This is how we work

Cybersecurity Engineer – Microsoft Security, Defender, Entra ID & Purview
18k–21k zł / mth. (CoE)
I apply to:
SQUARE ONE RESOURCES sp. z o.o.
Warszawa, Masovian

Need more information?

  • Make sure the body of the offer doesn’t already include what you’re looking for.
  • Ask a question if you need more information you’re interested in.
  • We’ll forward your question to the employer and aim to provide a response within 3 business days.

Share this offer