Cloud Security Engineer - Microsoft 365
IsraelCloud EngineerPosted Dec 25, 2025
Quantum Machines
All Jobs
Cloud Security Engineer - Microsoft 365
IT - Information Systems
Israel, Tel Aviv Office
Full Time
Description
Quantum Machines (QM) is a global leader in control systems for quantum computing, a field on the verge of exponential growth. Our innovative hardware and software mark a groundbreaking approach in quantum computer control, scaling from individual qubits to expansive arrays of thousands. At the core of QM lies a passionate and ambitious team committed to reshaping the construction and operation of quantum computers. Our work is fueled by a deep understanding of customer needs, driving us to deliver unparalleled solutions in this revolutionary field.We are seeking a highly experienced Microsoft 365 Cloud Security Engineer to own the administration, configuration, and security of our enterprise Microsoft 365 tenant(s). The ideal candidate has proven hands-on expertise managing Microsoft 365 at scale, including Intune, Exchange Online, SharePoint/OneDrive, Teams, Entra ID, Defender, and related integrationsYou will play a key role in ensuring availability, governance, identity and access control, endpoint compliance, and modern security posture across the entire Microsoft cloud ecosystem, with close collaboration across IT, Security, and business stakeholders.Key ResponsibilitiesMicrosoft 365 Tenant AdministrationAdminister and maintain enterprise-scale M365 tenants, including configuration, governance, and operational support.Oversee service health, usage reporting, licensing, and user lifecycle management.Maintain documentation of configurations, workflows, and operational procedures.Microsoft Intune / Endpoint Management (Full Scope)Own all aspects of Intune administration, including:Device enrolment (Windows, macOS, iOS/iPadOS, Android)Configuration profiles, compliance policies, and security baselinesAutopilot provisioning, device naming policies, and lifecycleConditional Access integration with device complianceEndpoint security policies (AV, firewall, ASR rules, BitLocker, etc.)Identity & Access Management (Entra ID / SSO)Manage and secure Microsoft Entra ID (Azure AD) for identity, authentication, and access governance.Configure and maintain SSO integrations with SaaS applications using SAML/OAuth/OIDC.Implement and optimize:Conditional Access policiesMFA enforcement and authentication methods policyPrivileged Identity ManagementIdentity Protection policies (risk-based controls)Security & Threat ProtectionDeploy and manage Microsoft Defender stack relevant to the organizationIntegrate and manage endpoint security posture with non-Microsoft EDR platforms, such as Sentinel One/CrowdStrikeCollaborate with Security teams to implement detection and response workflows, ensure coverage, and align with organizational policy.Messaging & CollaborationExchange OnlineAdminister Exchange Online policies and configurationsImplement email security best practices and support incident response when needed.Microsoft TeamsAdminister Teams policies and governance - Teams lifecycle policy, app permissions, meeting policies; External access and guest collaboration settingsSharePoint / OneDriveAdminister SharePoint Online and OneDrive settings, including:Site governance, permissions, and sharing controlsSensitivity labels and information protection controls (if used)Sync and storage management, auditing and access policiesAzure & Cloud InfrastructureSupport Azure identity, security, and basic cloud resources relevant to M365 integrations.Manage Azure configuration related to:Entra ID integrationsConditional AccessHybrid identity (if applicable)Azure security settings and monitoringPolicy, Compliance, and GovernanceImplement and maintain governance models across identity, endpoint, data sharing, and collaboration tools.Support compliance initiatives, audits, and reporting needs.Maintain secure tenant...