Senior Azure / Microsoft 365 Security Engineer
Date: Apr 28, 2026
Location: Charlotte, NC, US, 28277
Company: Dentsply Sirona, Inc
|
|
|
Dentsply Sirona is the world’s largest manufacturer of professional dental products and technologies, with a 130-year history of innovation and service to the dental industry and patients worldwide. Dentsply Sirona develops, manufactures, and markets a comprehensive solutions offering including dental and oral health products as well as other consumable medical devices under a strong portfolio of world class brands. Dentsply Sirona’s products provide innovative, high-quality and effective solutions to advance patient care and deliver better and safer dentistry. Dentsply Sirona’s global headquarters is located in Charlotte, North Carolina. The company’s shares are listed in the United States on NASDAQ under the symbol XRAY.
Bringing out the best in people
As advanced as dentistry is today, we are dedicated to making it even better. Our people have a passion for innovation and are committed to applying it to improve dental care. We live and breathe high performance, working as one global team, bringing out the best in each other for the benefit of dental patients, and the professionals who serve them. If you want to grow and develop as a part of a team that is shaping an industry, then we’re looking for the best to join us.
Working at Dentsply Sirona you are able to:
Develop faster - with our commitment to the best professional development.
Perform better - as part of a high-performance, empowering culture.
Shape an industry - with a market leader that continues to drive innovation.
Make a difference -by helping improve oral health worldwide.
|
The Senior Azure / Microsoft 365 Security Engineer is a senior individual contributor within the Security Architecture and Engineering organization. This role serves as a technical authority and execution lead for securing Dentsply Sirona’s Azure and Microsoft 365 platforms, partnering closely with Cloud Engineering, Identity, Workplace Technology, and Security Operations teams.
This role owns the design, engineering, and continuous improvement of security controls across Azure and Microsoft 365, including identity protection, workload and network security, email and collaboration protection, data protection, and security monitoring integrations. The Senior Engineer is expected to operate with minimal direction, lead complex initiatives end‑to‑end, and act as a trusted advisor to both technical and security leadership.
This role also provides senior‑level support to Security Operations by ensuring high‑quality telemetry, detection coverage, and automation alignment across the Microsoft ecosystem
Role Scope Includes:
- Owning Azure and Microsoft 365 security architecture patterns and engineering standards.
- Leading implementation and optimization of Microsoft security platforms (Defender, Purview, Entra ID, Intune).
- Acting as a senior escalation point for complex cloud and identity security issues.
- Driving security posture improvement, risk reduction, and operational maturity across Microsoft platforms.
Responsibilities:
Azure & Microsoft 365 Security Architecture
- Design and maintain secure Azure landing zone and subscription patterns, including management groups, policy enforcement, network segmentation, and secure service exposure.
- Define and enforce identity and access architecture using Microsoft Entra ID (Azure AD), RBAC, Conditional Access, Privileged Identity Management (PIM), and managed identities.
- Establish and maintain Zero Trust-aligned controls across Azure and Microsoft 365 workloads.
Microsoft Defender & Platform Protection
- Lead the design, deployment, and tuning of Microsoft Defender capabilities, including:
- Defender for Cloud
- Defender for Endpoint
- Defender for Identity
- Defender for Office 365
- Defender for Cloud Apps
- Own secure configuration baselines, posture management, and remediation workflows aligned to Microsoft Secure Score and internal risk priorities.
- Partner with SecOps to reduce alert fatigue, improve signal‑to‑noise ratio, and enhance incident response workflows.
Microsoft Purview & Data Protection
- Design and implement Microsoft Purview capabilities, including:
- Sensitivity labeling and information protection
- Data Loss Prevention (DLP) across Exchange, SharePoint, OneDrive, and Teams
- Records management and data lifecycle controls
- Partner with Legal, Privacy, and Compliance teams to ensure data protection controls align with regulatory and business requirements.
Engineering Enablement & Continuous Improvement
- Define security standards, patterns, and guardrails that enable cloud and workplace teams to deploy securely by default.
- Review and influence Infrastructure‑as‑Code (ARM, Bicep, Terraform) and CI/CD pipelines to embed security controls early.
- Mentor junior engineers and act as a technical leader across Security Architecture & Engineering initiatives.
Requirements:
Education
- Bachelor’s degree in Cybersecurity, Computer Science, Engineering, Information Systems, or equivalent experience.
Experience
- 7–10+ years of progressive experience in cybersecurity engineering, with deep hands‑on experience in Azure and Microsoft 365 security.
- Proven experience designing and operating enterprise‑scale cloud security controls.
- Strong experience integrating cloud platforms with SIEM/SOC operations.
Key Skills & Knowledge
- Advanced knowledge of Microsoft Entra ID, Conditional Access, PIM, RBAC, and identity threat protection.
- Expert‑level experience with Microsoft Defender (KQL, analytics rules, automation).
- Strong understanding of cloud security architecture, Zero Trust principles, and shared responsibility models.
- Ability to communicate complex security concepts to engineering teams and senior leadership.
Certifications (Strongly Preferred)
- Microsoft Certified: Azure Security Engineer Associate (or successor).
- Microsoft SC‑100 (Cybersecurity Architect) or equivalent senior‑level certification.
- CISSP, CCSP, or GIAC cloud‑focused certifications.
- Familiarity with NIST CSF / NIST SP 800‑53 / ISO 27001 control frameworks.
Workforce Alignment
- Responsibilities align to NIST NICE Framework Secure Infrastructure and Cloud Security Engineering work roles, supporting standardized career progression and workforce planning
|
|
|
|
Dentsply Sirona is an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, age, sexual orientation, disability, or protected Veteran status. We appreciate your interest in Dentsply Sirona. If you need assistance with completing the online application due to a disability, please send an accommodation request to careers@dentsplysirona.com. Please be sure to include “Accommodation Request” in the subject. For California Residents: We may collect the following categories of personal information in connection with the submission of your resume or application materials to us for employment, and if hired, your employment with us: identifiers (e.g., name, address, email address, birthdate); personal records (e.g., telephone number, signature, education information, criminal background information, passport number and visa information); consumer characteristics (e.g., sex, marital status, veteran status, race, disability, sexual orientation); professional or employment information (e.g., resume, cover letter, employment history, background check forms, references, certifications, transcripts and languages spoken); and inferences from personal information collected (e.g., a profile reflecting abilities and aptitudes). The above categories of personal information are collected for the following business purposes: performing recruitment and hiring services; processing interactions and transactions (e.g., to comply with federal and state laws requiring us to maintain certain records, managing the workforce); and security (e.g., detecting security incidents, protecting against fraudulent or illegal activity). For additional details and questions, contact us at careers@dentsplysirona.com |
|
Nearest Major Market: Charlotte
