Endpoint & Microsoft 365 Security Engineer (Ghent)

D-ploy

Oost-Vlaanderen

À distance

EUR 70 000 - 100 000

Plein temps

14 jours+
Générateur de candidature

Transformez ce poste en entretien — un CV et une lettre de motivation conçus selon ce que cet employeur recherche.

Passez les filtres ATS

Avantages offerts par ce poste

Remote-first
Travel to offices
Professional development
Referral program

Résumé du poste

D-ploy is seeking an experienced Security Engineer specializing in endpoint, Microsoft 365, and email security. This remote-first role focuses on protecting user devices, collaboration platforms and communication technologies by ensuring security controls are properly configured and continuously improved.

You will review configurations, coordinate remediation and provide visibility into the organisation’s security posture across endpoint, M365 and email.

Qualifications

  • Five+ years in security engineering or operational security in enterprise environments.
  • Experience configuring and governing endpoint and Microsoft 365 security controls.
  • Hands-on knowledge of endpoint security, EDR/XDR, telemetry and patch/update compliance.
  • Experience with Microsoft Defender for Endpoint, Intune and Entra ID security controls.
  • Strong knowledge of Microsoft 365 security, Entra ID, CA, MFA, device posture and audit logging.
  • Familiarity with Mimecast administration and secure email gateway controls.
  • Understanding DMARC, DKIM, SPF and phishing-reporting processes.
  • Experience with security monitoring tools like Microsoft Sentinel and basic vulnerability management (Qualys).

Responsabilités

  • Protect laptops, desktops and managed devices, ensuring secure configuration and compliance.
  • Maintain and improve endpoint security baselines and health.
  • Investigate and coordinate remediation for non-compliant devices.
  • Manage organizational controls for allowed/blocked applications.
  • Operate and enhance Microsoft 365 and Entra ID security controls.
  • Support Purview security and data protection capabilities.
  • Provide operational support for email security controls (Mimecast).
  • Review anti-spoofing, phishing and BEC protections and improve controls.
  • Maintain DMARC/DKIM/SPF and phishing-reporting processes.
  • Produce security dashboards and evidence for governance and remediation actions.

Connaissances

Endpoint security
EDR/XDR
Microsoft 365 security
Mimecast security
DMARC/DKIM/SPF
Threat monitoring
Incident reporting
Communication

Outils

Microsoft Defender portal
Microsoft Intune
Exchange Admin Center
Mimecast Admin
KQL
Qualys
ServiceNow
Power BI
Excel

Description du poste

D-ploy is an IT and Engineering Solutions company delivering services to organisations across the EMEA region and the United States. We work closely with our clients to provide reliable, secure and practical technology solutions, supported by collaborative teams and a people-focused working environment.

We are looking for an experienced Security Engineer specialising in endpoint, Microsoft 365 and email security. This is a hands-on role focused on protecting user devices, collaboration platforms and communication technologies by ensuring that security controls are correctly configured, effectively monitored and continuously improved.

The role combines technical engineering with operational security ownership. You will review security configurations, identify weaknesses and risky exceptions, coordinate remediation activities and provide clear visibility into the organisation’s endpoint, Microsoft 365 and email security posture.

This is a remote-first position, with occasional travel to company offices when required. You will collaborate with Workplace Technology, IT Operations, Security Operations, business stakeholders, external vendors and specialist service providers.

Your responsibilities will include:

  • Protecting corporate laptops, desktops, supported mobile devices and other managed endpoints throughout their lifecycle, ensuring they remain securely configured, monitored and compliant.
  • Maintaining and improving endpoint security baselines, including endpoint protection, EDR/XDR health, vulnerability scanning, device telemetry, patching and update compliance.
  • Investigating and coordinating the remediation of devices that are degraded, non-compliant or no longer reporting correctly.
  • Managing or supporting organisational controls for permitted and prohibited applications.
  • Operating and enhancing Microsoft 365 and Entra ID security controls, particularly Conditional Access, device compliance, privileged access and local administrator protection.
  • Supporting Microsoft Purview security and compliance capabilities, including information protection, Data Loss Prevention, audit, eDiscovery and retention-related controls.
  • Working with privacy and compliance stakeholders to ensure that relevant Purview controls are appropriately implemented and maintained.
  • Managing or providing strong operational support for Microsoft 365 and Mimecast email security controls.
  • Reviewing and improving anti-spoofing, spam, phishing, attachment handling, impersonation and Business Email Compromise protections.
  • Maintaining email authentication and reporting controls, including DMARC, DKIM, SPF and user phishing-reporting processes.
  • Identifying and resolving email security assessment findings, configuration gaps and inappropriate exceptions in collaboration with internal teams and external specialists.
  • Establishing practical operating procedures, dashboards, control evidence, KPIs and continuous improvement actions for endpoint, Microsoft 365 and email security.
  • Using security incidents, phishing trends, audit observations, assessment results and user experience issues to develop sustainable improvements to security controls.
  • Documenting remediation activities, assigning clear ownership and ensuring that actions are supported by appropriate evidence.
  • At least five years of relevant security engineering or operational security experience within enterprise environments.
  • Practical experience configuring, governing, reviewing or assessing endpoint and Microsoft 365 security controls.
  • Strong hands-on knowledge of endpoint security, endpoint hardening, EDR/XDR, endpoint telemetry and patch or update compliance.
  • Experience working with Microsoft Defender for Endpoint and Microsoft Intune, including device compliance and the monitoring of endpoint security health.
  • Strong knowledge of Microsoft 365 and Microsoft Entra ID security, particularly Conditional Access, Multi-Factor Authentication, device posture, privileged access, audit logging and secure access governance.
  • Good understanding of Microsoft 365 email security and secure email gateway controls.
  • Experience with anti-spoofing, phishing and spam protection, attachment policies, impersonation and Business Email Compromise controls.
  • Knowledge of DMARC, DKIM, SPF, phishing-reporting processes, exception handling and safe links or safe attachments concepts.
  • Familiarity with Microsoft Purview capabilities, including information protection, Data Loss Prevention, audit, eDiscovery and retention concepts.
  • Experience using administrative and investigation tools such as Microsoft Defender portal, Microsoft Intune, Microsoft Entra admin centre and Exchange admin centre.
  • Familiarity with Mimecast administration or comparable secure email gateway technology. Direct Mimecast experience is strongly preferred.
  • Experience with Microsoft Sentinel, KQL or similar security monitoring and investigation tools.
  • Familiarity with vulnerability scanning or vulnerability management platforms such as Qualys.
  • Experience working with ServiceNow or similar platforms for incident management, exception handling and remediation tracking.
  • Ability to produce and maintain meaningful security reports and dashboards using tools such as Excel or Power BI.
  • Strong ability to review technical configurations, identify weak controls, bypasses or risky exceptions and convert findings into structured remediation plans.
  • Experience with operational governance, evidence collection, security exception management, incident or alert handover and remediation follow-up.
  • Strong communication and collaboration skills, with the ability to work effectively with technical teams, vendors and business stakeholders.
  • Ability to balance security requirements with operational constraints and user experience considerations.
  • Relevant security or Microsoft certifications are desirable but not mandatory.
  • Valid criminal record extract, not older than three months, required.
  • Broad range of tasks and responsibilities
  • Friendly and international working environment
  • Professional development opportunities
  • Referral program (“Fishing for Friends”)
  • Company-sponsored events

Is IT in your DNA?

Obtenez votre examen gratuit et confidentiel de votre CV.
ou faites glisser et déposez votre fichier ici.
Similar jobs

Postes similaires à comparer

Security Engineer - Identity & Access Management (Ghent)
Security Engineer - Identity & Access Management (Ghent)

D-ploy • Oost-Vlaanderen

Sur place
EUR 70 000 - 110 000
Friendly environment
Professional development
Fishing for Friends referral program
+1
Cloud & Infrastructure Security Engineer (Ghent)
Cloud & Infrastructure Security Engineer (Ghent)

D-ploy • Oost-Vlaanderen

À distance
EUR 70 000 - 100 000
Referral program
Company-sponsored events
Professional development opportunities
Remote Endpoint & M365 Security Engineer
Remote Endpoint & M365 Security Engineer

D-ploy • Oost-Vlaanderen

À distance
EUR 70 000 - 100 000
Remote-first
Travel to offices
Professional development
+1
IT System Engineer (Ghent)
IT System Engineer (Ghent)

D-ploy • Oost-Vlaanderen

Sur place
EUR 50 000 - 70 000
Friendly working environment
Professional development opportunities
Company-sponsored events
+1
Security Engineer (Malle, Machelen, Sint-Niklaas, or Zedelgem)
Security Engineer (Malle, Machelen, Sint-Niklaas, or Zedelgem)

On IT! • Antwerpen

Sur place
EUR 60 000 - 90 000
Meal vouchers
Eco-vouchers
Expense reimbursement
+9
Security Consultant Microsoft
Security Consultant Microsoft

Inetum • Belgique

Sur place
EUR 60 000 - 80 000
Flexible working hours
32 days of annual leave
Company car and national fuel card
+2
Project Manager - Hosting & Cloud Services (Ghent)
Project Manager - Hosting & Cloud Services (Ghent)

D-ploy • Oost-Vlaanderen

Sur place
EUR 55 000 - 75 000
Broad range of tasks and responsibilities
Friendly working environment
Professional development opportunities
+2
Cloud Security Consultant – Defender Suite (XDR) and Sentinel
Cloud Security Consultant – Defender Suite (XDR) and Sentinel

Secwise • Vlaams-Brabant

Sur place
EUR 60 000 - 80 000
Attractive salary package
Company car
Benefits through the Cronos Group care package
Project Manager - Hosting & Cloud Services (Ghent)
Project Manager - Hosting & Cloud Services (Ghent)

D-ploy GmbH • Belgique

Sur place
EUR 55 000 - 75 000
Broad range of tasks and responsibilities
Friendly and international working environment
Professional development opportunities
+2
IT Security Analyst
IT Security Analyst

Source Technology Limited • Antwerpen

Hybride
EUR 27 675 000 - 33 210 000