Corporate Security Engineer

Posted 2ds ago

Employment Information

Education
Salary
Experience
Job Type

Report this job

Job expired or something wrong with this job?

Job Description

Corporate Security Engineer managing and advancing Microsoft 365 security across various platforms for a SaaS company. Owning security infrastructure and resolving complex IT support issues.

Responsibilities:

  • Own Entra ID configuration including Conditional Access policies, identity governance, privileged access controls, and breakglass account procedures
  • Design, deploy, and maintain device compliance policies across Intune for Windows and macOS endpoints
  • Configure, tune, and validate our Microsoft Defender and Defender for Cloud Apps detection and own alert response workflows in coordination with our MDR provider
  • Configure and operate data-exfiltration and insider-risk detection across the M365 estate including DLP, cloud-app anomaly detection, and insider-risk monitoring
  • Design and own security automation for user offboarding, including controls that mitigate insider risk during privileged and departing-user transitions
  • Administer and tune endpoint management tooling including ThreatLocker, Intune, and Addigy
  • Identify and close security gaps across our SaaS estate, with a focus on identity, access, data-exfiltration prevention, and data protection
  • Serve as the escalation path for complex tickets that cannot be resolved by first-line IT support specialist
  • Provide hands-on troubleshooting for M365, Entra ID, device management, and access issues
  • Contribute to IT runbook documentation and Confluence knowledge base upkeep
  • Support onboarding and offboarding processes for technically complex cases

Requirements:

  • 4+ years of hands-on experience in IT security or security engineering roles
  • Deep working knowledge of Microsoft Entra ID, Conditional Access, identity governance, app registrations, privileged roles, and authentication methods including FIDO2/passkeys
  • Practical experience with Microsoft Intune for Windows and Addigy for macOS devices
  • Proficiency with Microsoft Defender and the M365 security portal
  • Hands-on experience with data loss prevention (DLP) and cloud or insider-risk anomaly detection, e.g. Purview DLP, Defender for Cloud Apps, Purview Insider Risk Management, or an equivalent third-party tool
  • Experience administering core M365 services, Exchange Online, SharePoint, Teams, OneDrive, including licensing, transport rules, and shared mailbox management
  • Strong English communication skills, written and verbal; you will work closely with US-based leadership and stakeholders
  • Ability to work independently and drive projects to completion without close supervision
  • Demonstrated, hands-on use of AI tools (e.g. Claude) in your day-to-day work to increase your own effectiveness, drafting scripts and automations, accelerating investigation and analysis, or speeding up documentation, paired with sound judgment about using them responsibly with sensitive data.

Benefits:

  • Fully remote position with flexible working arrangements
  • Competitive compensation benchmarked to your local market
  • A lean, technically capable team where your work has direct visibility and impact
  • Opportunity to own and shape the security infrastructure of a growing SaaS company