Corporate Security Engineer

Engageware

Mexico

On-site

PHP 6,716,000 - 10,379,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Engageware is seeking a Corporate Security Engineer to join our Global Platform Operations team. This hands-on role focuses on Microsoft 365 security, Entra ID, Intune, and Defender to harden our cloud-native SaaS stack.

You will own security infrastructure, serve as escalation for complex IT issues, and help shape the security posture across the SaaS estate while working remotely for a Mexico-based contractor setup.

Qualifications

  • 4+ years of hands-on IT security or security engineering experience.
  • Deep working knowledge of Microsoft Entra ID, Conditional Access, identity governance, app registrations, privileged roles, and authentication methods including FIDO2.
  • Practical experience with Microsoft Intune for Windows and Addigy for macOS.
  • Proficiency with Microsoft Defender and the M365 security portal.
  • Hands-on experience with data loss prevention (DLP) and cloud or insider-risk anomaly detection, e.g. Purview DLP, Defender for Cloud Apps, Purview Insider Risk Management.
  • Experience administering core M365 services (Exchange Online, SharePoint, Teams, OneDrive), including licensing, transport rules, and shared mailbox management.
  • Strong English communication skills, written and verbal; collaboration with US-based leadership.
  • Ability to work independently and drive projects to completion.
  • Experience using AI tools (e.g., Claude) to draft scripts and automations.

Responsibilities

  • Own Entra ID configuration including Conditional Access policies, identity governance, privileged access controls, and breakglass procedures.
  • Design, deploy, and maintain device compliance policies across Intune for Windows and macOS endpoints.
  • Configure, tune, and validate Defender and Defender for Cloud Apps detection and alert response workflows in coordination with MDR.
  • Configure data‑exfiltration and insider‑risk detection across the M365 estate and validate controls.
  • Design and own security automation for user offboarding and privileged transitions.
  • Evaluate, implement, and maintain SaaS backup coverage across M365 workloads and other platforms.
  • Drive user lifecycle automation improvements.
  • Administer and tune endpoint management tooling including ThreatLocker, Intune, and Addigy.
  • Identify and close security gaps across the SaaS estate focusing on identity, data protection, and exfiltration prevention.

Skills

Entra ID
Conditional Access
Identity governance
Privileged access controls
PIM/PAM
Intune
Addigy
Microsoft Defender
Defender for Cloud Apps
DLP
Insider risk monitoring
Purview
Exchange Online
SharePoint
English communication
Scripting (PowerShell, Python)

Tools

Entra ID
Intune
Addigy
Microsoft Defender
Defender for Cloud Apps
Purview

Job description

About the Role

We are looking for a Corporate Security Engineer to join our Global Platform Operations team. This is a hands-on technical role with a strong focus on Microsoft 365 security.

You will own and advance our security infrastructure across Entra ID, Intune, Defender, and related M365 tooling, while serving as an escalation point for complex IT support issues that go beyond the scope of our first-line support. Your work will directly shape the security posture of a cloud-first SaaS organization.

This role is open in Mexico (Contractors)

What You Will Do
Security Engineering (Primary)
  • Own Entra ID configuration including Conditional Access policies, identity governance, privileged access controls (including just-in-time elevation via PIM or PAM and minimizing standing administrative access), and breakglass account procedures
  • Design, deploy, and maintain device compliance policies across Intune for Windows and macOS endpoints
  • Configure, tune, and validate our Microsoft Defender and Defender for Cloud Apps detection and own alert response workflows in coordination with our MDR provider, including periodic testing to confirm alerts fire as expected
  • Configure and operate data‑exfiltration and insider‑risk detection across the M365 estate including DLP, cloud-app anomaly detection, and insider‑risk monitoring (e.g. Microsoft Purview or equivalent), and validate that these controls block and alert as intended
  • Design and own security automation for user offboarding, including controls that mitigate insider risk during privileged and departing‑user transitions
  • Evaluate, implement, and maintain SaaS backup coverage across M365 workloads, Salesforce, and other critical platforms
  • Drive user lifecycle automation improvements.
  • Administer and tune endpoint management tooling including ThreatLocker, Intune, and Addigy
  • Identify and close security gaps across our SaaS estate, with a focus on identity, access, data‑exfiltration prevention, and data protection
IT Operations Support (Secondary)
  • Serve as the escalation path for complex tickets that cannot be resolved by our first‑line IT support specialist
  • Provide hands‑on troubleshooting for M365, Entra ID, device management, and access issues
  • Contribute to IT runbook documentation and Confluence knowledge base upkeep
  • Support onboarding and offboarding processes for technically complex cases
What We Are Looking For
Required
  • 4+ years of hands‑on experience in IT security or security engineering roles
  • Deep working knowledge of Microsoft Entra ID, Conditional Access, identity governance, app registrations, privileged roles, and authentication methods including FIDO2/passkeys
  • Practical experience with Microsoft Intune for Windows and Addigy for macOS devices
  • Proficiency with Microsoft Defender and the M365 security portal
  • Hands‑on experience with data loss prevention (DLP) and cloud or insider‑risk anomaly detection, for example Purview DLP, Defender for Cloud Apps, Purview Insider Risk Management, or an equivalent third‑party tool
  • Experience administering core M365 services, Exchange Online, SharePoint, Teams, OneDrive, including licensing, transport rules, and shared mailbox management
  • Strong English communication skills, written and verbal; you will work closely with US‑based leadership and stakeholders
  • Ability to work independently and drive projects to completion without close supervision
  • Demonstrated, hands‑on use of AI tools (e.g. Claude) in your day‑to‑day work to increase your own effectiveness, drafting scripts and automations, accelerating investigation and analysis, or speeding up documentation, paired with sound judgment about using them responsibly with sensitive data. We expect you to already work this way, not to be planning to start.
Nice to Have
  • Familiarity with compliance frameworks such as SOC 2 or ISO 27001, and experience supporting evidence collection or audit preparation
  • Experience with Drata or similar compliance automation platforms
  • Experience with ThreatLocker or similar application allowlisting tools
  • Experience evaluating and implementing SaaS backup solutions such as Druva, Spanning, or Veeam
  • Experience with insider‑risk or data‑exfiltration monitoring tooling, Purview Insider Risk Management, Microsoft Defender for Cloud Apps, or specialist platforms such as Code42 Incydr
  • Scripting and automation skills (PowerShell, Python, or Bash) and comfort working in Linux
What Success Looks Like

In your first six months, you will have taken ownership of our Conditional Access enforcement initiative, closed meaningful gaps in our SaaS backup coverage, and established yourself as the go-to escalation resource for identity and access issues. You will understand our environment deeply enough to make and execute good decisions independently, and you will have reduced the IT security workload that currently sits with the Head of Security and Infrastructure. You will also have configured and validated exfiltration and insider‑risk alerting — demonstrated to fire against a simulated departing‑employee scenario — and stood up a security offboarding runbook.

What We Offer
  • Fully remote position with flexible working arrangements
  • Competitive compensation benchmarked to your local market
  • A lean, technically capable team where your work has direct visibility and impact
  • Opportunity to own and shape the security infrastructure of a growing SaaS company

Engageware is an equal opportunity employer.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Remote Security Engineer: M365 & Identity Protection
Remote Security Engineer: M365 & Identity Protection

Engageware • Mexico

Hybrid
PHP 6,716,000 - 10,379,000
Senior M365 Engineer
Senior M365 Engineer

ScalableOS • Philippines

On-site
PHP 900,000 - 1,500,000
Onboarding / Security Engineer (WFH)
Onboarding / Security Engineer (WFH)

Prime System Solutions • Philippines

Remote
PHP 600,000 - 800,000
HMO
Work From Home setup
Government-mandated benefits
+2
Microsoft 365 Security Escalation Engineer
Microsoft 365 Security Escalation Engineer

ScalableOS • Philippines

On-site
PHP 900,000 - 1,300,000
Senior Workplace Consultant
Senior Workplace Consultant

GloPros • Manila

On-site
PHP 900,000 - 1,400,000
Microsoft 365 Engineer – Migration & Modern Workplace Delivery (Remote)
Microsoft 365 Engineer – Migration & Modern Workplace Delivery (Remote)

CyberOne • Metro Manila

Remote
PHP 1,000,000 - 1,500,000
Competitive compensation
Flexible working hours
Funded Microsoft certification pathways
+2
Security Engineer - AppSec
Security Engineer - AppSec

Coberon Chronos • España

Remote
PHP 4,972,000 - 7,813,000
Senior Security Engineer (AU Education, Hybrid)
Senior Security Engineer (AU Education, Hybrid)

ConnectOS • Metro Manila

Hybrid
PHP 1,500,000 - 2,300,000
Hybrid work
Medical, Dental, Life insurance
Paid vacation and sick leave
+7
Onboarding / Security Engineer (WFH)
Onboarding / Security Engineer (WFH)

Prime System Solutions • Manila

Remote
HMO
Work From Home setup
Government-mandated benefits
+2
Senior Security Engineer (AU Education, Hybrid)
Senior Security Engineer (AU Education, Hybrid)

ConnectOS • Mandaluyong

Hybrid
PHP 893,000 - 1,339,000
Hybrid Work Arrangement
Medical and Dental Coverage
Paid Vacation and Sick Leave
+2