368,634open jobs
9,437companies
50,578added this week
Browse all
Location
Remote (Belgium)
Seniority
Senior · 5+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
We co-create exceptional workspaces for your business. Integrating interior solutions, architectural, furniture, technology, and logistics, since 1829.

D-ploy is an IT and Engineering Solutions company delivering services to organisations across the EMEA region and the United States. We work closely with our clients to provide reliable, secure and practical technology solutions, supported by collaborative teams and a people-focused working environment.

We are looking for an experienced Security Engineer specialising in endpoint, Microsoft 365 and email security. This is a hands-on role focused on protecting user devices, collaboration platforms and communication technologies by ensuring that security controls are correctly configured, effectively monitored and continuously improved.

The role combines technical engineering with operational security ownership. You will review security configurations, identify weaknesses and risky exceptions, coordinate remediation activities and provide clear visibility into the organisation’s endpoint, Microsoft 365 and email security posture.

This is a remote-first position, with occasional travel to company offices when required. You will collaborate with Workplace Technology, IT Operations, Security Operations, business stakeholders, external vendors and specialist service providers.

Your responsibilities will include:

  • Protecting corporate laptops, desktops, supported mobile devices and other managed endpoints throughout their lifecycle, ensuring they remain securely configured, monitored and compliant.
  • Maintaining and improving endpoint security baselines, including endpoint protection, EDR/XDR health, vulnerability scanning, device telemetry, patching and update compliance.
  • Investigating and coordinating the remediation of devices that are degraded, non-compliant or no longer reporting correctly.
  • Managing or supporting organisational controls for permitted and prohibited applications.
  • Operating and enhancing Microsoft 365 and Entra ID security controls, particularly Conditional Access, device compliance, privileged access and local administrator protection.
  • Supporting Microsoft Purview security and compliance capabilities, including information protection, Data Loss Prevention, audit, eDiscovery and retention-related controls.
  • Working with privacy and compliance stakeholders to ensure that relevant Purview controls are appropriately implemented and maintained.
  • Managing or providing strong operational support for Microsoft 365 and Mimecast email security controls.
  • Reviewing and improving anti-spoofing, spam, phishing, attachment handling, impersonation and Business Email Compromise protections.
  • Maintaining email authentication and reporting controls, including DMARC, DKIM, SPF and user phishing-reporting processes.
  • Identifying and resolving email security assessment findings, configuration gaps and inappropriate exceptions in collaboration with internal teams and external specialists.
  • Establishing practical operating procedures, dashboards, control evidence, KPIs and continuous improvement actions for endpoint, Microsoft 365 and email security.
  • Using security incidents, phishing trends, audit observations, assessment results and user experience issues to develop sustainable improvements to security controls.
  • Documenting remediation activities, assigning clear ownership and ensuring that actions are supported by appropriate evidence.

Requirements

  • At least five years of relevant security engineering or operational security experience within enterprise environments.
  • Practical experience configuring, governing, reviewing or assessing endpoint and Microsoft 365 security controls.
  • Strong hands-on knowledge of endpoint security, endpoint hardening, EDR/XDR, endpoint telemetry and patch or update compliance.
  • Experience working with Microsoft Defender for Endpoint and Microsoft Intune, including device compliance and the monitoring of endpoint security health.
  • Strong knowledge of Microsoft 365 and Microsoft Entra ID security, particularly Conditional Access, Multi-Factor Authentication, device posture, privileged access, audit logging and secure access governance.
  • Good understanding of Microsoft 365 email security and secure email gateway controls.
  • Experience with anti-spoofing, phishing and spam protection, attachment policies, impersonation and Business Email Compromise controls.
  • Knowledge of DMARC, DKIM, SPF, phishing-reporting processes, exception handling and safe links or safe attachments concepts.
  • Familiarity with Microsoft Purview capabilities, including information protection, Data Loss Prevention, audit, eDiscovery and retention concepts.
  • Experience using administrative and investigation tools such as Microsoft Defender portal, Microsoft Intune, Microsoft Entra admin centre and Exchange admin centre.
  • Familiarity with Mimecast administration or comparable secure email gateway technology. Direct Mimecast experience is strongly preferred.
  • Experience with Microsoft Sentinel, KQL or similar security monitoring and investigation tools.
  • Familiarity with vulnerability scanning or vulnerability management platforms such as Qualys.
  • Experience working with ServiceNow or similar platforms for incident management, exception handling and remediation tracking.
  • Ability to produce and maintain meaningful security reports and dashboards using tools such as Excel or Power BI.
  • Strong ability to review technical configurations, identify weak controls, bypasses or risky exceptions and convert findings into structured remediation plans.
  • Experience with operational governance, evidence collection, security exception management, incident or alert handover and remediation follow-up.
  • Strong communication and collaboration skills, with the ability to work effectively with technical teams, vendors and business stakeholders.
  • Ability to balance security requirements with operational constraints and user experience considerations.
  • Relevant security or Microsoft certifications are desirable but not mandatory.
  • Valid criminal record extract, not older than three months, required.

Benefits

  • Broad range of tasks and responsibilities
  • Friendly and international working environment
  • Professional development opportunities
  • Referral program (“Fishing for Friends”)
  • Company-sponsored events

Is IT in your DNA?

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,634 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Ghent
$27k – $53k per year (Estimated) • Remote • Full-Time • 6+ years exp
SQL
Databases
Oracle
Analytics
Power BI
Tableau
Marketing
Salesforce
Apply
$80k – $169k per year (Estimated) • Equity • Remote • Full-Time • 5+ years exp
Go
Python
Databases
PostgreSQL
RabbitMQ
DevOps
Alertmanager
Ansible
Atlantis
Backstage
Chef
CI/CD
containerd
Docker
GCP
GitOps
Google GKE
Grafana
Helm
Incident Management
Kubernetes
Loki
Platform Engineering
Prometheus
Puppet
Terraform
Thanos
IAM
Cybersecurity
Checkov
SOC 2
Least Privilege
Apply
$112k – $217k per year (Estimated) • Equity • Remote • Full-Time • 5+ years exp
Go
Python
Databases
PostgreSQL
RabbitMQ
DevOps
Alertmanager
Ansible
Atlantis
Backstage
Chef
CI/CD
containerd
Docker
GCP
GitOps
Google GKE
Grafana
Helm
Incident Management
Kubernetes
Loki
Platform Engineering
Prometheus
Puppet
Terraform
Thanos
IAM
Cybersecurity
Checkov
SOC 2
Least Privilege
Apply
$42k – $106k per year (Estimated) • Equity • Remote • Full-Time • 5+ years exp
Go
Python
Databases
PostgreSQL
RabbitMQ
DevOps
Alertmanager
Ansible
Atlantis
Backstage
Chef
CI/CD
containerd
Docker
GCP
GitOps
Google GKE
Grafana
Helm
Incident Management
Kubernetes
Loki
Platform Engineering
Prometheus
Puppet
Terraform
Thanos
IAM
Cybersecurity
Checkov
SOC 2
Least Privilege
Apply
$175k – $195k per year • Remote • 8+ years exp
Python
Python
pySpark
AI/ML
Spark
Edge AI
DevOps
AWS
CI/CD
Incident Management
Platform Engineering
Amazon S3
Analytics
ETL/ELT
Apply
In office • Full-Time • Nuremberg
Apply
In office • Full-Time • Reutlingen
Apply
In office • Full-Time • 3+ years exp • Ghent
DevOps
AWS
Azure
Azure AKS
CI/CD
Kubernetes
Platform Engineering
Terraform
GitHub
Apply
Remote • Full-Time • Prague
DevOps
VMWare
Windows Server
Apply
In office • Full-Time • 10+ years exp • Prague
Cybersecurity
ISO 27001
PCI DSS
SOC 2
Apply
$30k – $100k per year • In office • Ghent
Java
Kotlin
Mobile
Kotlin Multiplatform
DevOps
GCP
Apply
Remote/Hybrid • Full-Time • 8+ years exp • Bachelor's Degree • Ghent
Apex
C#
Java
Python
Apex
Lightning Web Components
AI/ML
Edge AI
Frontend
Lighthouse
DevOps
CI/CD
Marketing
Salesforce
Apply
Remote/Hybrid • Full-Time • Ghent
Python
Databases
Google BigQuery
AI/ML
AI Agents
Claude
Claude Code
Gemini
LLM
Edge AI
DevOps
GCP
Apply
In office • 5+ years exp • Ghent
Node JS
TypeScript
JavaScript
Databases
DynamoDB
OpenSearch
AI/ML
AWS Bedrock
LLM
Prompt Engineering
Semantic Search
Semantic Search
DevOps
AWS
AWS Lambda
CI/CD
API Gateway
Apply
In office • Full-Time • 3+ years exp • Ghent
DevOps
AWS
Azure
Azure AKS
CI/CD
Kubernetes
Platform Engineering
Terraform
GitHub
Apply
See all jobs
This is one of many
368,634 more open roles from verified company boards, updated every day.