Security Engineer – Endpoint & Data Protection

Company: NTT DATA
Apply for the Security Engineer – Endpoint & Data Protection
Location: London
Job Description:

Overview

In this role you will help secure client environments by implementing governance and protection for data and endpoints. You will work within our client delivery team to configure Microsoft Purview, AIP/MIP, DLP, and Insider Risk policies, and to monitor with Defender for Endpoint. You will conduct threat investigations using KQL, support threat hunting with Defender Experts, and manage vulnerability programs with Qualys. You’ll contribute to security maturity projects aligned with frameworks like NCSC CAF, and work with Zscaler and Proofpoint for secure web and email. You’ll join a globally connected, growth‑oriented organization with flexible and development opportunities.

Pay / Benefits

  • flexible work options
  • learning and development opportunities

Responsibilities

  • Implement and configure Microsoft Purview for data governance and compliance
  • Design and deploy Information Protection policies (AIP/MIP), including sensitivity labels and DLP
  • Advise on data leakage risk prevention and unauthorized sharing controls
  • Leverage Microsoft Defender for endpoint monitoring, threat hunting, and incident response
  • Perform advanced threat investigations using KQL and Defender portals
  • Coordinate with external services like Microsoft Defender Experts for proactive threat hunting
  • Support vulnerability management using Qualys and align with CIS Benchmarks
  • Provide operational support for Zscaler and Proofpoint for secure web access and email security
  • Contribute to projects improving security maturity against frameworks such as NCSC CAF

Key requirements

  • 2-3 Years experience managing Microsoft Security products
  • Microsoft Certified such as SC-100, SC-200, SC-400
  • Design, implement, and manage DLP policies and sensitivity labels
  • Develop and implement data governance policies using Microsoft Purview
  • Configure and monitor policies to detect and act on malicious activities
  • Experience with Microsoft Defender for endpoint security and threat hunting
  • Familiarity with KQL for advanced threat investigations
  • Experience in managing and monitoring Zscaler and Proofpoint
  • Strong knowledge of vulnerability management tools such as Qualys
  • Understanding of CIS Benchmarks and security hardening practices
  • Good understanding of web protocols (TCP/IP, HTTP, SSL/TLS)
  • Extensive multi-year project experience in complex environments
  • Microsoft Purview
  • AIP/MIP
  • Data Loss Prevention (DLP)
  • Microsoft Defender for Endpoint
  • Threat hunting
  • KQL

…

Posted: September 30th, 2026