05 sep
|
Engageware
|
Metepec
05 sep
Engageware
Metepec
About the RoleWe are looking for a Corporate Security Engineer to join our General Platform Operations team.
This is a hands-on technical role with a strong focus on Microsoft 365 security.You will own and advance our security infrastructure across Entra ID, Intune, Defender, and related M365 tooling, while serving as an escalation point for complex IT support issues that go beyond the scope of our first-line support.
Your work will directly shape the security posture of a cloud-first SaaS organization.
This role is open in Mexico (Contractors) What You Will DoSecurity Engineering (Primary)Own Entra ID configuration including Conditional Access policies, identity governance, privileged access controls (including just-in-time elevation via PIM or PAM and minimizing standing administrative access), and breakglass account proceduresDesign, deploy, and maintain device compliance policies across Intune for Windows and macOS endpointsConfigure, tune, and validate our Microsoft Defender and Defender for Cloud Apps detection and own alert response workflows in coordination with our MDR provider, including periodic testing to confirm alerts fire as expectedConfigure and operate data-exfiltration and insider-risk detection across the M365 estate including DLP, cloud-app anomaly detection, and insider-risk monitoring (e.g. Microsoft Purview or equivalent), and validate that these controls block and alert as intendedDesign and own security automation for user offboarding, including controls that mitigate insider risk during privileged and departing-user transitionsEvaluate, implement, and maintain SaaS backup coverage across M365 workloads, Salesforce, and other critical platformsDrive user lifecycle automation improvements.Administer and tune endpoint management tooling including ThreatLocker, Intune, and AddigyIdentify and close security gaps across our SaaS estate, with a focus on identity, access, data-exfiltration prevention,
and data protectionIT Operations Support (Secondary)Serve as the escalation path for complex tickets that cannot be resolved by our first-line IT support specialistProvide hands-on troubleshooting for M365, Entra ID, device management, and access issuesContribute to IT runbook documentation and Confluence knowledge base upkeepSupport onboarding and offboarding processes for technically complex cases What We Are Looking For4+ years of hands-on experience in IT security or security engineering rolesDeep working knowledge of Microsoft Entra ID, Conditional Access, identity governance, app registrations, privileged roles, and authentication methods including FIDO2/passkeysPractical experience with Microsoft Intune for Windows and Addigy for macOS devicesProficiency with Microsoft Defender and the M365 security portalHands-on experience with data loss prevention (DLP) and cloud or insider-risk anomaly detection, for example Purview DLP, Defender for Cloud Apps, Purview Insider Risk Management, or an equivalent third-party toolExperience administering core M365 services, Exchange Online, SharePoint, Teams, OneDrive, including licensing, transport rules, and shared mailbox managementStrong English communication skills, written and verbal; you will work closely with US-based leadership and stakeholdersAbility to work independently and drive projects to completion without close supervisionDemonstrated, hands-on use of AI tools (e.g. Claude) in your day-to-day work to increase your own effectiveness, drafting scripts and automations,
accelerating investigation and analysis, or speeding up documentation, paired with sound judgment about using them responsibly with sensitive data.
We expect you to already work this way, not to be planning to start.Nice to HaveFamiliarity with compliance frameworks such as SOC 2 or ISO *****, and experience supporting evidence collection or audit preparationExperience with Drata or similar compliance automation platformsExperience with ThreatLocker or similar application allowlisting toolsExperience evaluating and implementing SaaS backup solutions such as Druva, Spanning, or VeeamExperience with insider-risk or data-exfiltration monitoring tooling, Purview Insider Risk Management, Microsoft Defender for Cloud Apps, or specialist platforms such as Code42 IncydrScripting and automation skills (PowerShell, Python, or Bash) and comfort working in Linux What Success Looks LikeIn your first six months, you will have taken ownership of our Conditional Access enforcement initiative, closed meaningful gaps in our SaaS backup coverage, and established yourself as the go-to escalation resource for identity and access issues.
You will understand our environment deeply enough to make and execute good decisions independently, and you will have reduced the IT security workload that currently sits with the Head of Security and Infrastructure.
You will also have configured and validated exfiltration and insider-risk alerting — demonstrated to fire against a simulated departing-employee scenario — and stood up a security offboarding runbook.
What We OfferFully remote position with flexible working arrangementsCompetitive compensation benchmarked to your local marketA lean, technically capable team where your work has direct visibility and impactOpportunity to own and shape the security infrastructure of a growing SaaS companyEngageware is an equal opportunity employer.
📌 Corporate Security Engineer (Metepec)
🏢 Engageware
📍 Metepec