The role
You will deliver and operate the security stack that our clients depend on — primarily Microsoft Defender, Entra ID, Intune, and Purview, backed by our SIEM and managed detection services. You will also be the engineer who makes our clients pass their compliance assessments and stay passed.
What you will own
- Deployment and hardening of Microsoft 365 security: Defender XDR, Defender for Endpoint, Defender for Office 365, Entra ID Conditional Access, Intune, Purview DLP and information protection
- Security baseline design and tenant hardening for new client onboarding
- Alert triage, investigation, and response across our managed detection service
- SIEM rule tuning and detection engineering [Wazuh / Microsoft Sentinel]
- Vulnerability management: scanning, prioritisation, and remediation guidance for clients
- Client compliance readiness — CSA Cyber Essentials and Cyber Trust, PDPA, security questionnaires from clients' customers and insurers
- Security documentation: baselines, assessment reports, remediation plans
The number you own
Client compliance pass rate, alongside alert-to-close time.
Requirements
- 4+ years in IT with at least 2 focused on security engineering or security operations
- Hands-on production experience with Microsoft 365 security tooling — Defender, Entra ID, Intune at minimum
- Understanding of identity, endpoint, and email as the three primary attack surfaces, and how to defend each
- Ability to write a clear assessment report a non-technical business owner can act on
- Strong written English
Strongly preferred
- Certifications: SC-200, SC-300, AZ-500, or equivalent
- SIEM experience — Wazuh, Sentinel, or similar
- Purview / data classification and DLP deployment experience
- Exposure to incident response in a real environment
- Familiarity with CSA Cyber Essentials / Cyber Trust or ISO 27001
Pay: RM2,500.00 - RM6,000.00 per month
Benefits:
- Opportunities for promotion
- Professional development
Work Location: In person