×
Register Here to Apply for Jobs or Post Jobs. X
More jobs:

Senior Identity Protection Specialist

Job in Morrisville, Wake County, North Carolina, 27560, USA
Listing for: FUJIFILM Holdings America Corporation
Full Time position
Listed on 2026-08-02
Job specializations:
  • IT/Tech
    Cybersecurity
Salary/Wage Range or Industry Benchmark: 110000 - 170000 USD Yearly USD 110000.00 170000.00 YEAR
Job Description & How to Apply Below

Position Overview

Protect identities at global scale. We’re hiring a hands‑on Senior Identity Protection Engineer/Specialist to lead detection, investigation, and response for identity‑based threats across Microsoft Entra /Azure AD, on‑prem Active Directory, and connected SaaS/IaaS. You’ll serve as the enterprise SME/administrator for Crowd Strike Identity Protection, tune high‑fidelity detections, integrate dark web intelligence, and orchestrate automation that measurably reduces MTTD/MTTR and risk.

Company Overview

The work we do at FUJIFILM Biotechnologies has never been more important—and we are looking for talented candidates to join us. We are growing our locations, our capabilities, and our teams, and looking for passionate, mission‑driven people like you who want to make a real difference in people’s lives. Join FUJIFILM Biotechnologies and help make the next vaccine, cure, or gene therapy in partnership with some of the most innovative biopharma companies across the globe.

We are proud to cultivate a culture that will fuel your passion, energy, and drive - what we call Genki.

Fujifilm is globally headquartered in Tokyo with over 70,000 employees across four key business segments of healthcare, electronics, business innovation, and imaging. We are guided and united by our Group Purpose of "giving our world more smiles." Visit:

Job Description What you’ll do
  • Lead identity threat monitoring and triage
    • Operate and tune Crowd Strike Identity Protection; monitor SIEM/UEBA and identity telemetry for risks like impossible travel, atypical sign‑ins, MFA fatigue, and session hijacking
    • Validate true/false positives, prioritize by business impact, and elevate per playbooks/SLAs
  • Drive rapid containment and remediation
    • Execute containment actions (disable accounts, revoke sessions/tokens, isolate hosts)
    • Coordinate remediation with IAM/Endpoint/Infrastructure; verify risk reduction to closure
  • Own identity-focused incident response
    • Lead IR for credential compromise, privilege escalation, directory persistence, and lateral movement
    • Ensure evidence handling, root cause analysis, post‑incident reviews, and lessons learned
  • Engineer detections and hunt for threats
    • Build and refine detections and hunts across SIEM/EDR/identity platforms using KQL/SQL/regex/Sigma aligned to MITRE ATT&CK
    • Close visibility gaps, reduce false positives, and expand privileged activity monitoring
  • Strengthen privileged access controls
    • Detect anomalous privileged behavior via SIEM/UEBA and Netskope telemetry
    • Recommend/enforce JIT, break‑glass patterns, and mover/leaver privilege hygiene with IAM
  • Respond to dark web/credential exposure
    • Integrate sources like Cyber Int; assess exposure and targeted campaigns
    • Orchestrate takedowns, forced resets, token revocation, and Conditional Access updates
  • Administer platforms and sustain hygiene
    • Maintain coverage/health for identity monitoring; manage upgrades and changes via CAB
    • Keep operational runbooks, SOPs, and playbooks current
  • Automate and orchestrate at scale
    • Use Power Shell/Python and REST/Graph/Crowd Strike APIs (and SOAR where applicable) to automate enrichment and response, standardize workflows, and improve signal fidelity
  • Shape identity policy and controls
    • Advise on Conditional Access, MFA exceptions, SSO/SCIM patterns, and session controls under the shared‑responsibility model with IAM
  • Report outcomes and support audits
    • Produce executive‑ready dashboards and KPIs (identity incident volume, MTTD/MTTR, CA/MFA efficacy, exposure/takedown cycle time)
    • Maintain audit‑ready evidence and support internal/external audits
What you’ll bring
  • Bachelor’s degree in Cybersecurity, Computer Science, IT, or related field; or equivalent practical experience
  • 8+ years in IT/cybersecurity, including 3–5+ years focused on identity security/operations (Entra /Azure AD, on‑prem AD, MFA, Conditional Access, SSO/SCIM)
  • Hands‑on enterprise experience administering/operating Crowd Strike Identity Protection
  • Proficiency with SIEM/UEBA (Splunk preferred) and cloud security platforms (e.g., Netskope) for identity telemetry, detection, and investigations
  • Demonstrated experience in identity‑centric IR, threat hunting, and detection engineering…
Position Requirements
10+ Years work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary