Skip to main content
D-ploy

Endpoint & Microsoft 365 Security Engineer

RemoteBelgium only
Published
Role
Security
Experience
Senior
Employment
Full-time
Salary not disclosed
Check eligibility

Open to BE only. Set where you work from to check your eligibility.

No BS summary

Experienced security engineer with 5+ years in enterprise endpoint, Microsoft 365 and email security. Needs hands-on Microsoft Defender for Endpoint, Intune, Entra ID, Purview, email security controls and remediation ownership. Role is remote-first from Ghent/Belgium context with occasional office travel and requires a recent criminal record extract.

Core skills

Microsoft Defender for EndpointMicrosoft 365 SecurityEndpoint Security

Required skills

EDR/XDRMicrosoft IntuneMicrosoft 365Microsoft Entra IDConditional AccessMulti-Factor AuthenticationDMARCDKIMSPFMicrosoft PurviewData Loss PreventionMicrosoft Defender portalMicrosoft Entra admin centreExchange admin centreMicrosoft SentinelKQLServiceNowExcelPower BI

Optional skills

MimecastQualys

What you'll do

  • Protecting corporate laptops, desktops, supported mobile devices and other managed endpoints throughout their lifecycle, ensuring they remain securely configured, monitored and compliant.
  • Maintaining and improving endpoint security baselines, including endpoint protection, EDR/XDR health, vulnerability scanning, device telemetry, patching and update compliance.
  • Investigating and coordinating the remediation of devices that are degraded, non-compliant or no longer reporting correctly.
  • Managing or supporting organisational controls for permitted and prohibited applications.
  • Operating and enhancing Microsoft 365 and Entra ID security controls, particularly Conditional Access, device compliance, privileged access and local administrator protection.
  • Supporting Microsoft Purview security and compliance capabilities, including information protection, Data Loss Prevention, audit, eDiscovery and retention-related controls.
  • Working with privacy and compliance stakeholders to ensure that relevant Purview controls are appropriately implemented and maintained.
  • Managing or providing strong operational support for Microsoft 365 and Mimecast email security controls.
  • Reviewing and improving anti-spoofing, spam, phishing, attachment handling, impersonation and Business Email Compromise protections.
  • Maintaining email authentication and reporting controls, including DMARC, DKIM, SPF and user phishing-reporting processes.
  • Identifying and resolving email security assessment findings, configuration gaps and inappropriate exceptions in collaboration with internal teams and external specialists.
  • Establishing practical operating procedures, dashboards, control evidence, KPIs and continuous improvement actions for endpoint, Microsoft 365 and email security.
  • Using security incidents, phishing trends, audit observations, assessment results and user experience issues to develop sustainable improvements to security controls.
  • Documenting remediation activities, assigning clear ownership and ensuring that actions are supported by appropriate evidence.

What they require

  • At least five years of relevant security engineering or operational security experience within enterprise environments.
  • Practical experience configuring, governing, reviewing or assessing endpoint and Microsoft 365 security controls.
  • Strong hands-on knowledge of endpoint security, endpoint hardening, EDR/XDR, endpoint telemetry and patch or update compliance.
  • Experience working with Microsoft Defender for Endpoint and Microsoft Intune, including device compliance and the monitoring of endpoint security health.
  • Strong knowledge of Microsoft 365 and Microsoft Entra ID security, particularly Conditional Access, Multi-Factor Authentication, device posture, privileged access, audit logging and secure access governance.
  • Good understanding of Microsoft 365 email security and secure email gateway controls.
  • Experience with anti-spoofing, phishing and spam protection, attachment policies, impersonation and Business Email Compromise controls.
  • Knowledge of DMARC, DKIM, SPF, phishing-reporting processes, exception handling and safe links or safe attachments concepts.
  • Familiarity with Microsoft Purview capabilities, including information protection, Data Loss Prevention, audit, eDiscovery and retention concepts.
  • Experience using administrative and investigation tools such as Microsoft Defender portal, Microsoft Intune, Microsoft Entra admin centre and Exchange admin centre.
  • Familiarity with Mimecast administration or comparable secure email gateway technology.
  • Experience with Microsoft Sentinel, KQL or similar security monitoring and investigation tools.
  • Familiarity with vulnerability scanning or vulnerability management platforms such as Qualys.
  • Experience working with ServiceNow or similar platforms for incident management, exception handling and remediation tracking.
  • Ability to produce and maintain meaningful security reports and dashboards using tools such as Excel or Power BI.
  • Strong ability to review technical configurations, identify weak controls, bypasses or risky exceptions and convert findings into structured remediation plans.
  • Experience with operational governance, evidence collection, security exception management, incident or alert handover and remediation follow-up.
  • Strong communication and collaboration skills, with the ability to work effectively with technical teams, vendors and business stakeholders.
  • Ability to balance security requirements with operational constraints and user experience considerations.
  • Preferred: Relevant security or Microsoft certifications are desirable but not mandatory.
  • Valid criminal record extract, not older than three months, required.

Benefits

  • Broad range of tasks and responsibilities
  • Friendly and international working environment
  • Professional development opportunities
  • Referral program (“Fishing for Friends”)
  • Company-sponsored events

D-ploy is an IT and Engineering Solutions company delivering services to organisations across the EMEA region and the United States.

IT Services
Salary not disclosed