This is a remote position.
Position Summary
We are seeking a senior Microsoft Security Consultant to lead a Microsoft Security Tools Rationalization Assessment for a global enterprise environment. This consultant will evaluate the organization's Microsoft security ecosystem, identify opportunities to optimize licensing and security capabilities, assess overlapping technologies, and develop a strategic roadmap for future security investments. This is a consulting engagement focused on assessment, analysis, stakeholder workshops, and executive recommendations rather than implementation.
Primary Responsibilities
- Lead discovery and assessment of Microsoft security technologies and licensing utilization.
- Conduct technical workshops with security, infrastructure, and business stakeholders across multiple security domains.
- Inventory Microsoft security tools, configurations, licensing tiers, and operational usage.
- Evaluate current security capabilities against business requirements and cybersecurity best practices.
- Identify licensing optimization opportunities, including E3, E5, E7, and applicable Microsoft add-on services.
- Assess overlapping technologies and compare Microsoft-native capabilities with representative third-party security solutions.
- Map current and future security capabilities to NIST Cybersecurity Framework (CSF) 2.0 and MITRE ATT&CK.
- Analyze security coverage, operational efficiency, integration complexity, and overall business value.
- Develop a prioritized Security Tools Rationalization Roadmap.
- Present executive-level findings and strategic recommendations to client leadership.
Required Technical Skills
- Microsoft Entra ID (Azure AD)
- Microsoft Defender Suite
- Microsoft Sentinel
- Microsoft Purview
- Microsoft Intune / Endpoint Management
- Microsoft 365 Security Licensing (E3, E5, E7)
- Microsoft Graph reporting
- Microsoft security administration and reporting
- Microsoft licensing optimization
- Security architecture and governance
Cybersecurity Knowledge
- NIST Cybersecurity Framework (CSF) 2.0
- MITRE ATT&CK Framework
- Security Operations (SIEM)
- Identity & Access Management
- Endpoint Security
- Data Security
- Threat Protection
- Security strategy and roadmap development
Required Experience
- 7+ years of cybersecurity consulting or security architecture experience.
- Extensive experience with Microsoft enterprise security technologies.
- Experience conducting security assessments and technology rationalization initiatives.
- Strong understanding of Microsoft licensing models and security feature alignment.
- Experience facilitating executive and technical workshops.
- Ability to translate technical findings into business-focused recommendations.
- Excellent presentation, documentation, and communication skills.
Project Characteristics
- Remote engagement
- Approximately 4–5 weeks in duration
- Multiple stakeholder workshops across six security domains
- Executive-facing consulting engagement
- Advisory-only engagement (no implementation or migration activities)
Ideal Candidate Profile
The ideal consultant combines deep Microsoft security expertise with strong consulting and executive advisory skills. They should be comfortable facilitating workshops, analyzing enterprise security environments, optimizing Microsoft licensing, and delivering strategic recommendations to executive leadership. Success in this role requires balancing technical depth with business acumen to help the client improve security posture while reducing operational complexity and maximizing the value of Microsoft security investments.