12 sep
|
Wired
|
Santiago
Job Description
About the work
Were Wired CIO a technology consulting and managed services practice supporting SMB and midmarket clients. We manage Microsoft 365 across many client tenants, and were increasingly building AIassisted workflows on top of that stack Copilot rollouts, agents that read and act on tenant data, and internal automation.
Were looking for a certified Microsoft 365 engineer to work with us on an ongoing hourly basis. This is not a helpdesk role. We need someone who can be handed a tenant and a goal and figure out the path someone who reads the Graph docs rather than guessing, who understands why a Conditional Access policy is breaking something, and who documents what they did so the next person isnt reverseengineering it.
Youll be one of a small number of engineers, working async, with real ownership of the environments you touch.
What youll be doing
Tenant engineering and administration
Design and implement Entra ID configurations Conditional Access, authentication methods, PIM, app registrations, enterprise app SSO, crosstenant access
Build and maintain Intune configurations compliance policies, configuration profiles, app deployment, Autopilot, Endpoint Privilege Management
Configure and tune Defender for Office 365 Defender for Endpoint, safe links and attachments, antiphishing, and alert tuning that doesnt drown us in noise
Exchange Online, SharePoint Online, OneDrive, and Teams configuration and governance
Purview work retention, DLP, sensitivity labels, eDiscovery when it comes up
Migrations and tenanttotenant work mailboxes, OneDrive SharePoint content, identity cutover
Multitenant MSP specifics
Work across many client tenants without crosscontaminating configuration or data you take tenant boundaries seriously
Use GDAP correctly understand delegated access, leastprivilege partner roles,
and what breaks when GDAP relationships lapse
Standardize build baselines that can be applied consistently across tenants rather than snowflaking every client
Work with our tooling stack [CIPP Microsoft 365 Lighthouse your RMM your PSA list what you actually use]
Write documentation and runbooks as you go, in [Notion IT Glue SharePoint]
Automation and scripting
Microsoft Graph REST and the Graph PowerShell SDK for reporting, bulk changes, and anything the portal makes painful
PowerShell at a real level functions, error handling, parameterized scripts others can run, not oneoff snippets
Azure Automation, Logic Apps, or Power Automate for scheduled and eventdriven work
Registering and scoping app registrations properly application vs. delegated permissions, admin consent, certificate secret hygiene, and knowing when a permission request is too broad
AI and Copilot project work
Microsoft 365 Copilot readiness and rollout licensing, permissions hygiene oversharing remediation before you turn Copilot on, Copilot Studio agents, Restricted SharePoint Search where needed
Help build and test AI agents that touch tenant data scoping what an agent is allowed to read and do, and validating it behaves correctly
Pressuretest agent output for correctness and databoundary problems help design guardrails
You dont need to be an AI expert. You need genuine curiosity about it and the discipline to think about what happens when an agent has read access to a clients entire tenant.
What were looking for
Required
Active Microsoft certification at minimum MS102 Microsoft 365 Administrator. Microsoft 365 Certified Administrator Expert, SC300 Identity and Access Administrator, MD102 Endpoint Administrator, SC200, or AZ104 are all strong additions.
[4] years handson Microsoft 365 engineering, including production Entra ID and Intune work
Real PowerShell and Microsoft Graph proficiency youll be asked about this specifically
Experience working across multiple tenants MSP, CSP partner, or consultancy background
Clear written English. Most of our communication is async and written.
Able to overlap at least [3] hours with US [Central] business hours
Comfortable working in a clientdata environment you follow least privilege, you use MFA, you dont paste tenant data into random tools
Nice to have
CIPP, Microsoft 365 Lighthouse, or similar multitenant management tooling
Azure experience beyond M365 networking, Key Vault, Functions, App Service
Copilot Studio, Power Platform, or Microsoft 365 Agents SDK experience
Security frameworks CIS Microsoft 365 Benchmark, CMMC, HIPAA, or SOC 2 exposure
Experience with terminal IaC approaches to M365 config Microsoft365DSC, Terraform for Entra
Python or TypeScript
Not a fit if
Youve mostly done enduser support and ticket triage
Your M365 experience is a single tenant you inherited
You need to be told each next step
Bolsa de trabajo Chile ofrecemos puesto de Microsoft Cloud Architect para el sector de Informatica Telecomunicaciones en la empresa Wired CIO de Santiago Centro. Salario acorde a tu experiencia y al salario medio del sector. Actualiza ahora tu currículum vitae y postúlate a este empleo. Tipo de empleo Jornada de 40 horas semanales.
📌 Microsoft Cloud Architect English (Santiago)
🏢 Wired
📍 Santiago