Microsoft 365 (O365) SME – Security & Governance
Location: Bangalore
Company: TSOLITSS India pvt ltd.
Experience: 8–15 Years
Employment Type: Part time/Consulting
About the Role
TSOLITSS is seeking an experienced Microsoft 365 Subject Matter Expert (SME) to lead the design, implementation, security, governance, and optimization of our Microsoft 365 ecosystem. The ideal candidate should possess deep technical expertise across Microsoft 365 services with a strong background in security, compliance, identity management, and enterprise governance.
This role requires someone who can think like a security professional, drive Zero Trust initiatives, improve organizational security posture, and support enterprise-scale Microsoft 365 environments.
Key Responsibilities
Microsoft 365 Administration
- Manage and administer Microsoft 365 services including:
- Exchange Online
- SharePoint Online
- Microsoft Teams
- OneDrive
- Microsoft Entra ID
- Manage tenant configuration and service health.
- License management and workload optimization.
- Troubleshoot complex Microsoft 365 issues.
Identity & Access Management
- Design and implement:
- Conditional Access Policies
- Multi-Factor Authentication (MFA)
- Privileged Identity Management (PIM)
- Identity Protection
- Implement Zero Trust Architecture.
- Secure guest access and external collaboration.
Microsoft Security
Hands-on experience with:
- Microsoft Defender for Office 365
- Microsoft Defender XDR
- Secure Score
- Compliance Score
- Attack Surface Reduction
- Email Security
- Business Email Compromise (BEC) Protection
- Anti-Phishing Policies
Microsoft Purview
Strong expertise in:
- Data Loss Prevention (DLP)
- Information Protection
- Sensitivity Labels
- Retention Policies
- Records Management
- Communication Compliance
- Insider Risk Management
- eDiscovery (Standard & Premium)
- Compliance Manager
- Audit (Standard & Premium)
Governance & Compliance
Develop and implement governance policies for:
- Microsoft Teams
- SharePoint Online
- OneDrive
- Guest Access
- External Sharing
- BYOD
- Mobile Device Management
- Data Classification
- Information Protection
- Data Retention
- AI & Microsoft Copilot Governance
Ensure compliance with industry standards such as:
- ISO 27001
- SOC 2
- GDPR
- HIPAA
- Microsoft Security Best Practices
Security Assessment
- Conduct Microsoft 365 security posture assessments.
- Identify security gaps and misconfigurations.
- Review privileged access.
- Assess identity risks.
- Improve Secure Score and Compliance Score.
- Recommend security improvements based on Zero Trust principles.
Automation & Reporting
- Develop PowerShell automation scripts.
- Utilize Microsoft Graph API.
- Build executive dashboards for:
- Secure Score
- Compliance Score
- DLP
- Insider Risk
- External Sharing
- Identity Risks
- Teams & SharePoint Usage
- Defender Alerts
Required Technical Skills
Mandatory
- Microsoft 365 Administration
- Microsoft Entra ID
- Exchange Online
- SharePoint Online
- Microsoft Teams
- OneDrive
- Microsoft Defender XDR
- Microsoft Defender for Office 365
- Microsoft Purview
- Conditional Access
- Privileged Identity Management (PIM)
- Microsoft Graph API
- PowerShell
- eDiscovery
- Compliance Manager
- Secure Score
- Zero Trust Architecture
Preferred Skills
- Microsoft 365 Security Architecture
- Microsoft Copilot Governance
- Identity Protection
- OAuth Security
- Insider Risk Management
- Data Classification
- Automation using Graph API & PowerShell
- Threat Hunting within Microsoft 365
Desired Candidate Profile
- 8–15 years of IT experience.
- Minimum 5 years of hands-on Microsoft 365 Administration.
- Experience managing enterprise environments with 1,000+ users.
- Strong understanding of Microsoft security and compliance solutions.
- Experience in Microsoft 365 governance and policy implementation.
- Excellent troubleshooting, documentation, and communication skills.
- Ability to lead enterprise-wide security and governance initiatives.
Preferred Certifications
- Microsoft Certified: Enterprise Administrator Expert
- Microsoft Certified: Identity and Access Administrator Associate (SC-300)
- Microsoft Certified: Information Protection Administrator Associate (SC-400)
- Microsoft Certified: Security Operations Analyst Associate (SC-200)
- Microsoft Certified: Cybersecurity Architect Expert (SC-100)
- Microsoft Certified: Messaging Administrator Associate (MS-203)
- Microsoft Certified: Teams Administrator Associate (MS-700)
Key Performance Indicators (KPIs)
- Improve Microsoft Secure Score.
- Improve Compliance Score.
- Reduce Microsoft 365 security incidents.
- Successful implementation of governance policies.
- Zero critical audit findings.
- Timely remediation of security and compliance risks.
- Automation of administrative tasks.
- High availability of Microsoft 365 services.
Work Location: Remote