We’re looking for an Application Security Engineer to join our Information Security team, working closely with Engineering, Infrastructure and Architecture to help us build and maintain secure applications at scale.
This is a hands‑on role focused on improving the security of our software development lifecycle. You’ll work collaboratively with engineering teams across multiple products, helping to identify and reduce risk while enabling teams to deliver at pace.
As a member of a globally distributed team, you’ll be comfortable working independently, takingownership of your work, and proactively engaging with colleagues across regions.
Why join Mintel?
Mintel is the world’s leading market intelligence agency. Technology underpins our success, enabling us to deliver trusted data, insights, and analysis to clients across the globe. Security plays a critical role in protecting our people, platforms, anddataandwe’recontinuing to invest in building a mature, modern security capability.
Wedelivera culture that values collaboration, learning, and continuous improvement.
What you will do
- Own thesecurity triage workflowend‑to‑end (intake to prioritisation to coordination to closure), ensuring issues are handled consistently and driven to completion
- Investigate and respond to security alerts and incidents acrossendpoint, identity, and email security
- Operate and improve security controls within theMicrosoft securityecosystem,including Defender, Intune, identity, and Conditional Access
- Actively contribute tosecurity configuration hygiene and tuning, reducingnoise andimproving baseline posture over time
- Coordinate remediation activities with wider IT teams
- Support incident response activities within agreed guardrails and escalation thresholds
- Contribute tosecurity improvement projects, including configuration uplift and operational maturity initiatives
- Identifyrecurring issues and patterns, feeding them into continuous improvement cycles with the Operational Security Lead
What are we looking for?
This role is intended for amid‑level security operations professional. It is not an entry‑level or SOC‑only position.
Tooperateeffectively, this role is expected to have delegated operational access (within guardrails) to:
- Microsoft Defender (XDR components relevant to endpoint, identity, email, and cloud app security)
- Microsoft Intune (device compliance, configuration profiles, investigation support)
- BYOD security controls
- Identity & access management, including account investigation, remediation, security group membership management, and participation in scoped Conditional Access changes
You’lloperateindependently within defined guardrails, escalating to the Operational Security Lead when thresholds are crossed, including:
- Suspected data exfiltration, privileged account compromise, or uncontained malware/ransomware
- Changes to Conditional Access or global security policies
- Incidents requiring executive awareness or involvement of Legal / Privacy / DPO
- Actions that risk widespread disruption or service downtime (e.g.tenant‑wide blocking, mass device isolation)
Collaboration is the normal operating mode for complex investigations, significant configuration changes, and improvement initiatives.
Essential knowledge and experiencewe areseeking
- Ideally 5 + years of practical experience insecurity operations, including triage, investigation, and response
- Experience managing security issues fromintake through to closure,coordinating across teams
- Hands‑on experience with parts of theMicrosoft 365 security stack, such as Microsoft Defender
- Working knowledge ofidentity and access management, including accounts and group memberships
- Exposure toendpoint and device security investigations
- Experience withMicrosoft Intuneconfiguration and policy management
- Experience supporting or contributing toConditional Access policy hygiene or tuning
- Confidence making day‑to‑day operational and configuration decisions within defined guardrails
- Clear written and verbal communication skills
Desirable knowledge
- Querying or investigation languages (e.g.KQL)
- Scripting or automation exposure (PowerShell, Python, Logic Apps)
- Cloud security exposure (e.g.AWS investigations or hygiene)
- Experience supporting audits or assurance activities from an operational perspective
Emergent
- Interest in howAI and automation are being applied in modern security operations
- Curiosity about AI‑assisted investigation and response workflows
- Willingness to learn and adapt as AI‑enabled security capabilities become embedded in day‑to‑day SecOps
Whatyou’llget in return
- A collaborative culture that supports hybrid working
- Strong emphasis on learning, development, and sharing knowledge
- The opportunity to build deep, hands‑on experience across modern Microsoft security tooling
- Real operationalownership and the ability to influence how security works in practice
- A clear growth path into senior security operations, security engineering, or operational security leadership roles
Minteloperatesglobally, with teams based across Europe, the Americas, and Asia‑Pacific.