Security Operations Engineer

New York, NY


Apply Save

Type: Contract-to-Hire

Category: Security

Industry: Financial Services

Reference ID: JN -032026-106194

Date Posted: 03/30/2026

Shortcut: http://careers.eliassen.com/lbzmVY


Description:

Hybrid 4 in either New York, NY or Pittsburgh, PA

 

The organization seeks a Security Operations Engineer to strengthen and operate a FedRAMP-aligned Azure environment using native Microsoft security tooling. The role will design detections, run incident response, and drive continuous monitoring with audit-ready evidence across NIST SP 800-53 control families. The engineer will collaborate with cloud engineering, platform teams, and compliance stakeholders to sustain authorization and operational excellence. The position requires proficiency with Microsoft Sentinel, Defender for Cloud, Azure Policy, Entra ID, and KQL.

 

This is a contract to hire opportunity. Applicants must be willing and able to work on a w2 basis and convert to FTE following contract duration. For our w2 consultants, we offer a great benefits package that includes Medical, Dental, and Vision benefits, 401k with company matching, and life insurance.

 

Rate: $84.00 to $94.00/hr. w2

 


Responsibilities:
  • Design, implement, and tune detections in Microsoft Sentinel, including analytic rules, workbooks, watchlists, and automation with Logic Apps and Playbooks.
  • Build incident response runbooks and orchestration for triage, enrichment, and response using Sentinel automation.
  • Maintain log onboarding pipelines, data connectors, and normalization in Log Analytics to ensure coverage for in-scope resources.
  • Conduct daily SecOps functions including alert triage, investigation, threat hunting, containment, and post-incident reviews.
  • Leverage Defender for Cloud, Defender for Cloud Apps, Entra ID Protection, and Microsoft Defender XDR signals to correlate and respond to threats.
  • Document evidence and maintain audit-ready case records, contributing to POA&M entries and corrective actions.
  • Manage misconfigurations and control enforcement using Defender for Cloud recommendations, Secure Score, and Azure Policy.
  • Partner with platform engineering to remediate vulnerabilities and configuration drift, tracking closures against FedRAMP timelines.
  • Maintain baseline guardrails via Azure Policy and Blueprints and monitor compliance and exceptions with Continuous Monitoring reporting.
  • Implement and support least-privilege patterns with Entra ID, PIM, Conditional Access, RBAC, and managed identities.
  • Coordinate FIPS 140-2 validated cryptography usage with Key Vault and ensure encryption standards at rest and in transit are met and evidenced.
  • Operate Azure Firewall, NSGs, Private Link, and DDoS Protection and monitor and remediate anomalies.
  • Ensure logging and telemetry for network controls are complete, retained, and queryable within Sentinel.
  • Produce monthly and quarterly Continuous Monitoring artifacts and maintain supporting evidence.
  • Update detection coverage maps, control implementation narratives, and operational runbooks as environment changes occur.
  • Collaborate with compliance and assessors, support interviews, evidence collection, and remediation tracking.
  • Embed security checks into CI/CD pipelines using native integrations and support policy compliance and validation.
  • Enforce disciplined change processes and ensure changes are reflected in the SSP, control evidence, and detections.

Experience Requirements:
  • 5+ years in security operations engineering or incident response, including 2+ years operating native Microsoft security tooling in Azure.
  • Hands-on experience building and tuning Microsoft Sentinel detections and automating response with Logic Apps and Playbooks.
  • Practical knowledge of FedRAMP Moderate or High baselines and NIST SP 800-53 control families relevant to operations, including AC, AU, CM, IR, RA, SC, and SI.
  • Proficiency with Defender for Cloud, Azure Policy, Entra ID including PIM and Conditional Access, Key Vault, Azure Monitor, and Log Analytics.
  • Strong incident response skills across triage, investigation, containment, and post-incident documentation with audit-quality evidence.
  • Experience operating vulnerability and misconfiguration management workflows and meeting remediation SLAs aligned to FedRAMP timelines.
  • Scripting and automation familiarity using KQL for Sentinel and PowerShell, with ARM, Bicep, or Terraform basics.
  • Excellent documentation and communication skills for playbooks, evidence packages, and stakeholder updates.
  • Experience with Azure Government or GCC High environments (preferred).
  • Prior contributions to FedRAMP Continuous Monitoring reporting and POA&M lifecycle management (preferred).
  • Experience aligning native controls and detections to payment or mission-critical workload risk profiles (preferred).
  • Familiarity with Microsoft Purview, Defender for Cloud Apps, Entra ID Protection, and Private Link patterns (preferred).
  • Certifications such as AZ-500, SC-200, CISSP, or CCSP (preferred).

Education Requirements:
  • Relevant professional certifications such as AZ-500 Azure Security Engineer Associate (preferred).
  • SC-200 Microsoft Security Operations Analyst (preferred).
  • CISSP or CCSP certification (preferred).

Recruitment Transparency Notice
 
Eliassen Group values transparency in our recruitment practices. Please be advised that Eliassen Group utilizes artificial intelligence (AI) tools as part of its initial application screening and hiring process. You may receive email and SMS notifications from the Eliassen Virtual Recruiting Team (noreply@eliassen.com, 781-808-2924) inviting you to complete a brief voice screening as part of your application process. These tools assist our hiring teams in different ways, including but not limited to, assistance in reviewing application materials to help identify candidates whose qualifications most closely match the requirements of the position. All AI-assisted evaluations and responses are reviewed by human recruiters before any hiring decisions are made. The use of AI in our process is intended to support fairness, efficiency, and consistency, and Eliassen Group takes measures to prevent bias or discrimination in connection with its hiring practices. By proceeding, you acknowledge, agree, and consent to Eliassen Group’s use of these tools, including AI tools, as part of the application and hiring process.
 

Skills, experience, and other compensable factors will be considered when determining pay rate. The pay range provided in this posting reflects a W2 hourly rate; other employment options may be available that may result in pay outside of the provided range.

W2 employees of Eliassen Group who are regularly scheduled to work 30 or more hours per week are eligible for the following benefits: medical (choice of 3 plans), dental, vision, pre-tax accounts, other voluntary benefits including life and disability insurance, 401(k) with match, and sick time if required by law in the worked-in state/locality.
If anyone reaches out to you about an open position connected with Eliassen Group, please ensure that you are working directly with us by confirming the following:

· When you work with Eliassen Group, all email communication will come from an Eliassen.com address, never Gmail, Yahoo, etc.

· Eliassen Group will never ask you for personal information (home address, bank account, or check routing number) until you have worked with someone clearly associated with Eliassen Group.

If you have any indication of fraudulent activity, please contact fraud@eliassen.com.

 
About Eliassen Group:
 
Eliassen Group is a strategic consulting firm that helps organizations reach further and achieve more through our technology, business advisory, and life sciences solutions. For nearly 40 years, we have combined exceptional people, deep domain expertise, and intelligent capabilities to expand our clients’ capacity and accelerate meaningful outcomes. We are driven by a purpose to positively impact the lives of our employees, clients, consultants, and the communities we serve.
 
Eliassen is committed to building a diverse and inclusive team from a variety of backgrounds, perspectives, and skills. We are an Equal Opportunity and Affirmative Action Employer and all employment decisions are based on merit, performance, and business needs. Eliassen does not discriminate on the basis of race, color, gender identity or expression, sexual preference or orientation, sex (including pregnancy, childbirth, and related medical conditions), marital status, creed, religion, physical or mental disability, genetic information, military or veteran status, age, ancestry, national origin, citizenship status, prohibited criminal record inquiries of applicants and employees, or any other category protected by federal, state, or local laws.
 
Don’t miss out on our referral program! If we hire a candidate that you refer us to then you can be eligible for a $1,000 referral check!
 

  • Cybersecurity Analyst

    Cranberry Township, PA

    Description: Hybrid 3 in Cranberry Township, PA The Cybersecurity Analyst will safeguard the organization’s information systems and data by monitoring security events, analyzing vulnerabilities, and responding to incidents. The role requires hands-on e...

    Date Posted: 04/01/2026 Recommended

  • IT Infrastructure Engineer/Administrator

    Boston, MA

    Description: Onsite in Boston, MA Seaport Area of Boston, 5 days a week onsite for the first few months, flexible for 3-4 days onsite after that. Interview: virtual, then onsite. Contract to hire role. Our client seeks a senior IT Infrastructure Engine...

    Date Posted: 04/11/2026 Recommended

  • FedRAMP & AWS GovCloud Program Lead

    Anywhere

    Description: Remote Our client seeks a senior FedRAMP and AWS GovCloud leader to advise telecommunications and regulated clients on modernization, migration, and authorization. The role owns strategy, roadmap, and oversight to move legacy workloads to ...

    Date Posted: 03/30/2026 Recommended

  • Office 365 / Power Platform Engineer

    Anywhere

    Description: Remote The organization seeks an Office 365 / Power Platform Engineer to design and integrate API-driven automation on Microsoft Power Platform. The role requires hands-on JavaScript or TypeScript API development, RESTful integrations, and...

    Date Posted: 04/08/2026 Recommended

  • Senior Database Administrator

    Washington, DC

    Description: Onsite in Washington, DC Our client seeks a Senior Database Administrator to lead SQL Server migrations from on‑premises to Google Cloud and to administer large, high‑availability database environments. The role covers installation, config...

    Date Posted: 03/21/2026 Recommended

  • Principal Software Engineer

    Jersey City, NJ

    Description: Hybrid 50% ON SITE, half remote, work site either Jersey City, NJ or Westlake, TX Our client seeks a Principal Software Engineer to advance an enterprise AI/ML platform within a large, highly regulated industry environment. This role is id...

    Date Posted: 03/24/2026 Recommended

  • DevOps / MLOps Engineer

    Westlake, TX

    Description: Hybrid 50% ON SITE, requires candidates local to the area within Westlake, TX / DFW greater metro We are seeking a hands-on DevOps Engineer to support and modernize cloud infrastructure for a large, mission‑critical platform in the financi...

    Date Posted: 04/14/2026 Recommended

  • Cybersecurity Architect (Palo Alto / Network Security)

    Tustin, CA

    Description: Onsite in Tustin, CA The Cybersecurity Architect will provide senior technical leadership to design and implement enterprise security architecture for the organization. The role focuses on Palo Alto Networks platforms, VPN, wireless securi...

    Date Posted: 03/17/2026 Recommended

  • Senior Oracle DBA (Azure)

    Pittsburgh, PA

    Description: Our client, a leader in their industry, has an excellent opportunity for a Senior Oracle DBA with Azure cloud experience to work on a 12-month+ contract position in Lake Mary, FL, or Pittsburgh, PA. This is a hybrid role working onsite two...

    Date Posted: 04/02/2026 Recommended

  • Senior Data Engineer

    Burbank, CA

    Description: Hybrid 3-4 days onsite in either Burbank, CA or Orlando, FL Our client seeks senior data engineers to build and refactor data pipelines supporting enterprise data collection, transformation, and delivery. The role centers on Snowflake and ...

    Date Posted: 03/31/2026 Recommended

  • ETL Migration Engineer

    Westlake, TX

    Description: Hybrid 2 weeks onsite in TX or NH in either Westlake, TX or Merrimack, NH Due to client requirements, applicants must be willing and able to work on a w2 basis. For our w2 consultants, we offer a great benefits package that includes Medica...

    Date Posted: 03/18/2026 Recommended

  • Senior Data Engineer

    Cincinnati, OH

    Description: Onsite in Cincinnati, OH The Senior Data Engineer will design and deliver scalable data solutions that enable secure data management, analytics, and business intelligence for the organization. The role requires proficiency with SQL, a mode...

    Date Posted: 03/24/2026 Recommended

  • Senior API Developer

    Anywhere

    Description: Remote The organization seeks a Senior API Developer to design, develop, and maintain APIs and system integrations across a digital ecosystem. The role will utilize Microsoft Azure services including API Management, Application Gateway, Lo...

    Date Posted: 03/23/2026 Recommended

  • Power Apps and Power Automate Developer

    Charlotte, NC

    Description: Hybrid 3 days on-site in Charlotte, NC Our client seeks a Power Apps and Power Automate Developer to design and implement automation solutions that streamline workflows and integrate data across platforms. The role will build secure, scala...

    Date Posted: 04/05/2026 Recommended

  • Principal Full Stack Engineer

    Merrimack, NH

    Description: Hybrid 50% onsite a month in Nashua, NH. We are seeking a Principal Full Stack Engineer to join a high‑impact technology team within the financial services industry, supporting modern information delivery and recordkeeping platforms. This ...

    Date Posted: 03/30/2026 Recommended

  • DevOps Engineer

    Westlake, TX

    Description: Hybrid (50% onsite, 50% remote) in the DFW metro We seek a DevOps Engineer to implement and manage CI/CD pipelines, infrastructure automation, and cloud environments that support externally facing applications. The role will coordinate and...

    Date Posted: 03/25/2026 Recommended

  • Senior Cloud Platform Engineer

    Anywhere

    Description: Remote Our client seeks a senior platform engineer to design, build, and operate secure, scalable AWS infrastructure. The role focuses on reusable platform capabilities, automation, and governance that enable engineering teams to deliver a...

    Date Posted: 04/10/2026 Recommended

  • Sr. Network Engineer III

    Washington dc, DC

    Description: Onsite in Washington, DC Our client seeks a Sr. Network Engineer III to serve as a subject matter expert for unified communications across voice, video, and collaboration platforms in a mission-critical environment. The role requires deep ...

    Date Posted: 04/07/2026 Recommended

  • Sr. Systems Engineer

    Washington dc, DC

    Description: Onsite in Washington, DC our client seeks a Sr. Systems Engineer to manage and secure enterprise Windows and macOS endpoints for a high-visibility federal mission. The role will support classified and high-security environments, deliver co...

    Date Posted: 04/05/2026 Recommended

  • Software Engineer – Specialist

    Prairie du Sac, WI

    Description: Hybrid 3 days on site in Prairie du Sac, WI Our client seeks a Software Engineer – Specialist to design, develop, and implement software solutions that support business processes and enhance guest experiences. The role will collaborate wit...

    Date Posted: 04/02/2026 Recommended

  • Sr. Network Engineer III

    Washington dc, DC

    Description: Onsite in Washington, DC The Sr. Network Engineer III will serve as a subject matter expert for unified communications across voice, video, and collaboration platforms in a fast-paced, mission-critical environment. The role will design, im...

    Date Posted: 04/08/2026 Recommended

  • Security Administrator

    Cincinnati, OH

    Description: Hybrid 4 days week onsite, then 3 days onsite/2 remote in Cincinnati, OH We are hiring a Security Administrator for our client, a leading plumbing, sewer, and water damage company headquartered in Cincinnati, Ohio. The role will secure ent...

    Date Posted: 04/04/2026 Recommended

  • Information System Security Officer / Information System Engineer

    Aberdeen Proving Ground, MD

    Description: Onsite in Aberdeen Proving Ground, MD Our client seeks an Information System Security Officer / Information System Engineer to guide Cybersecurity policy, RMF processing, and accreditation activities. The role will manage eMASS record keep...

    Date Posted: 04/12/2026 Recommended

  • Full Stack Engineer

    Merrimack, NH

    Description: Hybrid 50% ON SITE, location is Merrimack, NH The organization seeks a Full Stack Engineer to design and deliver scalable, high-performance applications for an financial platform. The role will develop event-driven services, real-time reco...

    Date Posted: 03/30/2026 Recommended

  • Technical Execution Lead

    Greenwich, CT

    Description: Hybrid 4 in New York, NY The Technical Execution Lead will define and oversee the organization’s resiliency strategy for Azure-based platforms. The role will establish governance, policies, KPIs, and recovery objectives to ensure readiness...

    Date Posted: 03/17/2026 Recommended

  • Principal Data Engineer with architecture and MS Fabric/Azure experience.

    Anywhere

    Description: Remote Our client is a global investment management organization with a long history of independent research and diversified strategies across fixed income and equities. The firm serves institutional and mutual fund clients and emphasizes ...

    Date Posted: 04/03/2026 Recommended

  • Monitoring Lead- Application Hosting

    Washington, DC

    Description: Onsite in Washington, DC Our client is a premier technology integrator serving technical, engineering, intelligence, and enterprise IT markets with approximately 15,000 employees worldwide. The organization designs, develops, and sustains ...

    Date Posted: 03/27/2026 Recommended

  • DevOps Engineer

    Durham, NC

    Description: Hybrid 50% on site in Durham, NC We are seeking a DevOps Engineer to support portals, web applications, and financial platforms. The role will design, build, and support on-prem and AWS cloud solutions, including infrastructure upgrades, r...

    Date Posted: 03/30/2026 Recommended

  • AI-Powered Data & Insights Analyst

    Fort Worth, TX

    Description: Hybrid 3 to 4 days a week onsite near DFW Airport The AI-Powered Data & Insights Analyst will connect raw, multi-source data to strategic decisions across the organization. The role will build pipelines and dashboards, apply AI and statist...

    Date Posted: 03/19/2026 Recommended

  • Sr. Telecommunications Design Engineer III

    Washington dc, DC

    Description: Onsite in Washington dc, DC Our client seeks a Sr. Telecommunications Design Engineer III to provide senior technical leadership for mission-critical telecommunications operations and long-range modernization. The role will design and sust...

    Date Posted: 04/12/2026 Recommended

Eliassen Group is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status. Eliassen Group’s Affirmative Action Plan (AAP) is available for inspection by any employee or applicant for employment upon request, during normal business hours of Monday through Friday, 8:30am to 5:30pm EST. Interested persons should contact Phaedra Wells at pwells@eliassen.com for assistance. It is unlawful in Massachusetts and Maryland to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.

Applicants with disabilities that believe they require an accommodation or assistance with a position, please email our HR team at hradmin@eliassen.com. This email inbox is designed exclusively to assist job seekers whose disability prevents them from being able to apply online. Emails sent for other purposes will not receive a response.


Please be advised that a number of fraudulent job postings have been released under the Eliassen Group brand.

Unfortunately, fraudulent job postings can happen. If anyone reaches out to you about an open position connected with Eliassen Group, never provide personal or financial information to anyone who is not clearly associated with Eliassen Group

If anyone seemingly from Eliassen Group has ever requested this personal information in the past or does so in the future, please contactInfoSec@eliassen.com.

Please ensure that you are working directly with us by confirming the following:

  • When you work with Eliassen Group, all email communication will come from an Eliassen.com address, never Gmail, Yahoo, etc.
  • Eliassen Group will never ask you for personal information (home address, bank account, or check routing number) until you have worked with someone clearly associated with Eliassen Group, as indicated above