Destaca-te nesta função — gera um currículo e uma carta de apresentação personalizados em cerca de um minuto.
Dyson GmbH seeks a Cloud & Endpoint Security Engineer to drive integrated cloud-connected and endpoint security capabilities across workspace platforms. You will bridge cloud security services with endpoint telemetry, manage Defender vulnerabilities, Defender for Cloud Apps integrations, and automate security posture controls across the workplace ecosystem.
You will lead the architecture for Defender for Endpoint, CASB, and exposure management, delivering visibility and remediation across cloud
As the Cloud & Endpoint Security Engineer, you are accountable for engineering integrated cloud-connected and endpoint security capabilities to maintain a high security posture across all workspace platforms. Operating as a cross-domain engineering lead, you will bridge the gap between cloud security services and endpoint telemetry. By managing Defender Vulnerability Management, maintaining Defender for Cloud Apps integrations, and implementing automated security posture controls, you will provide visibility and technical remediation across the workplace ecosystem. In this role, you will lead and manage the following domains:
Deep technical expertise in cloud-delivered security solutions, exposure management, CASB architecture, API integrations, and threat vector analysis across hybrid workspaces.
Expertise with Microsoft Defender for Endpoint (MDE), Defender Vulnerability Management, Defender for Cloud Apps (MDA), Microsoft Sentinel integration, and Security Posture Management tools.
Ability to leverage vulnerability scoring models (CVSS, EPSS) and asset business context to prioritize exposure remediation across cloud and endpoint boundaries.
Experience designing cloud access policies, sanctioning SaaS applications, and establishing vulnerability management exception tracking mechanisms.
Track record of managing enterprise-scale security tooling platforms, maintaining seamless API connections, and delivering against operational SLAs.
Strong data-analysis skills using KQL and API data feeds to create executive dashboards demonstrating security posture improvements and risk trends.
Effective communicator capable of collaborating with cloud operations, networking, and IT operations teams to implement security posture changes.
Ability to utilize threat intelligence indicators to identify malicious SaaS application usage, unusual tenant activities, and high-risk endpoint vulnerabilities.
Proven execution capability to lead complex engineering projects, translate security outcomes into practical steps, and guide operational teams.
A drive to automate security checks, vulnerability ticketing workflows (e.g., via ITSM integrations), and cloud app policy adjustments.
Accountability: Deploy, operate, and optimize Defender Vulnerability Management to identify, prioritize, and drive technical exposure reduction.
Success Measures: Maintain >95% accurate scan and telemetry coverage across all active cloud-managed devices; Measurable structural reduction in organizational Exposure Score within Defender Vulnerability Management.
Accountability: Architect and manage Defender for Cloud Apps integrations to enforce SaaS governance, detect anomalous cloud behavior, and control unsanctioned applications.
Success Measures: 100% of cloud app traffic monitored and evaluated against security risk policies; Automated block controls enforced for high-risk, unsanctioned cloud platforms.
Accountability: Drive end-to-end security telemetry pipelines between MDE, Cloud Apps, and centralized monitoring tools (e.g., Sentinel/ServiceNow).
Success Measures: 100% platform uptime and event ingestion reliability across security tool integrations; Significant reduction in manual tracking through automated posture and vulnerability ticketing workflows.
Dyson is an equal opportunity employer. We know that great minds don’t think alike, and it takes all kinds of minds to make our technology so unique. We welcome applications from all backgrounds and employment decisions are made without regard to race, colour, religion, national or ethnic origin, sex, sexual orientation, gender identity or expression, age, disability, protected veteran status or other any other dimension of diversity.