Workplace Security Engineer

Xintas

Antwerpen

Hybride

EUR 70 000 - 110 000

Plein temps

Il y a 10 jours
Générateur de candidature

Obtenez une réponse de cet employeur — un CV et une lettre de motivation adaptés exactement à ce qu’on recherche pour ce poste.

Passez les filtres ATS

Résumé du poste

Xintas in Belgium seeks a security architect to lead end-to-end design, implementation, and deployment of WDAC and AppLocker across a large enterprise. You will integrate these controls with Microsoft Intune and Defender to create a controlled, measurable adoption pathway across the organization.

You will drive a phased rollout with governance of exceptions, policy management, and continuous optimization while collaborating with SOC, IT Operations, and development teams to monitor telemetry and

Qualifications

  • Extensive hands-on experience with WDAC, AppLocker, Microsoft Intune, Microsoft Defender, and Windows endpoint management.
  • Strong background in endpoint security, system hardening, Zero Trust architectures, and default-deny security models.
  • Experience working in large-scale enterprise environments and managing organization-wide deployments.
  • Strong analytical skills with the ability to interpret telemetry, security events, and log data.
  • Excellent communication skills with the ability to clearly explain technical decisions and security recommendations.

Responsabilités

  • Design and implement an enterprise-wide hardening framework for Windows endpoints.
  • Translate security requirements into technical configurations, policies, and security baselines.
  • Implement WDAC and/or AppLocker.
  • Establish a reliable code-signing and trust model.
  • Define governance processes for application exceptions and policy management.

Connaissances

Endpoint security
Zero Trust
Telemetry analysis
Stakeholder communication
Policy governance

Outils

WDAC
AppLocker
Microsoft Intune
Microsoft Defender
Windows endpoint management

Description du poste

You will take end-to-end ownership of designing, implementing, and deploying workplace hardening and application control within a complex enterprise environment. You will lead the introduction of a default-deny security model using Windows Defender Application Control (WDAC) and/or AppLocker, integrate these solutions with Microsoft Intune and Microsoft Defender, and ensure a controlled, measurable, and secure adoption across the organization.

Objective

Strengthen endpoint security by delivering a robust, centrally managed, and organization-wide framework for endpoint hardening and application control.

Responsibilities
  • Design and implement an enterprise-wide hardening framework for Windows endpoints
  • Translate security requirements into technical configurations, policies, and security baselines
  • Implement Windows Defender Application Control (WDAC) and/or AppLocker
  • Establish a reliable code-signing and trust model
  • Define governance processes for application exceptions and policy management
Microsoft Intune & Defender Integration
  • Configure and deploy security policies through Microsoft Intune
  • Integrate application control with Microsoft Defender for Endpoint for monitoring, detection, and reporting
  • Automate policy deployment and lifecycle management
Phased Rollout & Continuous Optimization
  • Develop and execute a controlled deployment strategy (pilot - phased rollout - organization-wide adoption)
  • Implement monitoring, logging, and feedback mechanisms
  • Continuously fine-tune policies based on telemetry, security incidents, and user impact
Collaboration & Stakeholder Management
  • Work closely with Workplace Services, the Security Operations Center (SOC), IT Operations, development teams, and external vendors
  • Provide guidance on the security implications of applications, software updates, and new technologies
  • Communicate risks, impact, and project progress clearly to both technical and business stakeholders
Required Knowledge & Experience
  • Extensive hands-on experience with WDAC, AppLocker, Microsoft Intune, Microsoft Defender, and Windows endpoint management
  • Strong background in endpoint security, system hardening, Zero Trust architectures, and default-deny security models
  • Experience working in large-scale enterprise environments and managing organization-wide deployments
  • Strong analytical skills with the ability to interpret telemetry, security events, and log data
  • Excellent communication skills with the ability to clearly explain technical decisions and security recommendations
Expected Outcome

A fully deployed, stable, and centrally managed application control and endpoint hardening framework that significantly strengthens endpoint security, minimizes the attack surface, and integrates seamlessly with existing SOC processes, security operations, and enterprise tooling.

Obtenez votre examen gratuit et confidentiel de votre CV.

ou faites glisser et déposez votre fichier ici.

Similar jobs

Postes similaires à comparer

Endpoint Hardening Architect — WDAC, AppLocker & Intune
Endpoint Hardening Architect — WDAC, AppLocker & Intune

Xintas • Antwerpen

Hybride
EUR 70 000 - 110 000
M365 Platform & Security Architect
M365 Platform & Security Architect

Editx • Machelen

Sur place
EUR 70 000 - 120 000
Azure Data Engineer
Azure Data Engineer

Editx • Machelen

Sur place
EUR 70 000 - 100 000
Modern Workplace System Engineer – Microsoft 365 & Intune
Modern Workplace System Engineer – Microsoft 365 & Intune

Editx • Brussel

Sur place
EUR 55 000 - 75 000
Senior Windows Platform Engineer (SharePoint, Azure and Automation) for NATO with security clearance
Senior Windows Platform Engineer (SharePoint, Azure and Automation) for NATO with security clearance

Wlgroup • Henegouwen

Sur place
EUR 90 000 - 130 000
Senior Windows Platform Engineer (SharePoint, Azure and Automation) for NATO with security clearance
Senior Windows Platform Engineer (SharePoint, Azure and Automation) for NATO with security clearance

WLG • Henegouwen

Sur place
EUR 90 000 - 130 000
Identity and Access Engineer (AD FS, Federation and Certificates) for NATO with security clearance
Identity and Access Engineer (AD FS, Federation and Certificates) for NATO with security clearance

Wlgroup • Henegouwen

Sur place
EUR 90 000 - 120 000
Microsoft 365 Workplace Security Architect
Microsoft 365 Workplace Security Architect

Editx • Machelen

Sur place
EUR 70 000 - 100 000
Microsoft Security Architect & Solution Owner
Microsoft Security Architect & Solution Owner

Resilient Security • Heverlee

Sur place
EUR 90 000 - 120 000
Identity and Access Engineer (AD FS, Federation and Certificates) for NATO with security clearance
Identity and Access Engineer (AD FS, Federation and Certificates) for NATO with security clearance

WLG • Henegouwen

Sur place
EUR 90 000 - 120 000