NetOps Africa

Security Engineer

NetOps Africa · Western Cape, South Africa

Staffing and Recruiting · 51-200 employees

Jul 20
Remote Mid (2-5 yrs) Contractor South Africa
Log in to apply, save this posting, or score it against your profile with AI.

About the role

The Security Engineer will manage and maintain security platforms while proactively monitoring client environments for threats and vulnerabilities. They are responsible for investigating security incidents, performing configuration reviews, and providing clear technical communication to stakeholders.

What they look for

Active Directory Microsoft Entra ID Microsoft 365 Network Security Endpoint Protection Incident Response Firewall Management VPN Identity and Access Management Vulnerability Management Security Auditing Technical Documentation Client Support Exchange Online EDR Patch Management

Requirements

Candidates must have 4-5 years of experience with Microsoft cloud security, Active Directory, and network security infrastructure. Strong problem-solving skills and the ability to manage escalated security tickets in a multi-client environment are essential.

Full description

Security Engineer

Job Overview

We are seeking an experienced and customer-focused Security Engineer to support a growing managed services provider and its clients.

The Security Engineer will help manage and maintain security platforms, proactively monitor client environments, respond to security incidents, and identify opportunities to improve each client’s overall security posture.

This position combines hands-on security operations with Microsoft 365 security, identity and access management, network security, endpoint protection, documentation, and client support. The successful candidate must be comfortable working across multiple client environments, managing escalated security tickets, and communicating technical risks clearly to both technical and nontechnical stakeholders.

Key Responsibilities

Security Operations

  • Manage and maintain security platforms, tools, policies, and configurations.
  • Proactively monitor client environments for threats, vulnerabilities, and suspicious activity.
  • Investigate and remediate security incidents and alerts.
  • Escalate complex incidents when additional support is required.
  • Perform routine security assessments, audits, and configuration reviews.
  • Identify opportunities to improve client security controls and processes.
  • Stay current with emerging threats, vulnerabilities, and security technologies.
  • Assist with security-related projects and implementations.

Identity and Access Management

  • Administer Active Directory and Microsoft Entra ID environments.
  • Manage users, groups, roles, permissions, and access controls.
  • Configure and maintain multifactor authentication.
  • Implement and manage Conditional Access policies.
  • Support identity governance and secure access practices.
  • Troubleshoot authentication, authorization, and access-related issues.
  • Administer Group Policy and related identity security controls.

Microsoft 365 and Cloud Security

  • Manage Microsoft 365 security features and configurations.
  • Administer Exchange Online Protection and Microsoft Defender for Office 365.
  • Configure Safe Attachments, Safe Links, anti-phishing, anti-spam, and mail flow policies.
  • Support Microsoft Defender for Cloud and other Azure security services.
  • Implement and monitor data loss prevention policies.
  • Manage security configurations across Exchange Online, SharePoint, Teams, and OneDrive.
  • Review and improve Microsoft 365 tenant security posture.

Network and Endpoint Security

  • Configure and maintain IPsec, SSL, and site-to-site VPN tunnels.
  • Implement and manage firewall policies, rules, and access controls.
  • Monitor network traffic for anomalies and potential threats.
  • Troubleshoot firewall, VPN, routing, DNS, DHCP, and connectivity issues.
  • Support endpoint protection platforms, including antivirus, EDR, and patch management.
  • Assist with switch configurations, VLANs, segmentation, and secure network design.
  • Support backup and disaster recovery security practices.

Ticketing, Documentation, and Client Support

  • Manage and resolve escalated security tickets and service requests.
  • Record all work accurately through the client’s ticketing and PSA systems.
  • Maintain security documentation, client inventories, procedures, and technical records.
  • Communicate ticket status, risks, outages, and remediation progress clearly to clients.
  • Identify, document, and communicate security risks to leadership and clients.
  • Follow established standard operating procedures and security processes.
  • Submit timesheets and expense reports according to company procedures.
  • Deliver a responsive, friendly, and professional client experience.

Requirements

Required Experience

  • Strong hands-on experience with Active Directory and Microsoft Entra ID.
  • Experience administering users, groups, permissions, Group Policy, and authentication services.
  • Strong understanding of Microsoft Azure and Microsoft cloud security services.
  • Experience securing Microsoft 365 environments.
  • Experience with Exchange Online Protection and Microsoft Defender for Office 365.
  • Experience configuring MFA and Conditional Access policies.
  • Understanding of email security, phishing protection, spam filtering, and mail flow rules.
  • Experience supporting Microsoft Exchange Online, SharePoint, Teams, and OneDrive.
  • Understanding of network security, including firewalls, VPNs, routing, VLANs, DNS, DHCP, and TCP/IP.
  • Experience managing endpoint security platforms such as antivirus, EDR, and patch management tools.
  • Experience responding to and remediating security incidents.
  • Familiarity with security assessments, vulnerability management, and industry best practices.
  • Experience working through ticketing, PSA, and remote support platforms.
  • Strong technical documentation and written communication skills.
  • Ability to explain security risks and recommendations clearly to clients.
  • Previous MSP or multi-client IT support experience.
  • Strong problem-solving, organization, and time-management skills.
  • Ability to work independently while following established procedures.

Preferred Experience

  • Microsoft Sentinel or another SIEM platform.
  • Huntress.
  • NinjaOne.
  • Auvik.
  • Liongard.
  • Microsoft Defender for Endpoint.
  • Microsoft Defender for Cloud.
  • Vulnerability management platforms.
  • Security auditing and risk assessment experience.
  • Backup and disaster recovery technologies.
  • Experience supporting compliance initiatives involving: • CMMC
  • NIST
  • CIS Controls
  • ISO 27001
  • HIPAA
  • SOC 2
  • PCI DSS
  • Professional certifications such as: • CompTIA Security+
  • Microsoft Security certifications
  • CISSP
  • CISM

Remote Work Requirements

Candidates must have:

  • A reliable fibre internet connection with a minimum speed of 100 Mbps.
  • Backup power capable of supporting the computer and internet connection during outages.
  • A dedicated and professional home working environment.
  • A noise-cancelling headset and functioning webcam.
  • A dedicated work computer with at least an Intel Core i5 or equivalent processor.
  • A minimum of 16 GB RAM.
  • A computer that is less than five years old.
  • A device capable of securely running all required remote support and security tools.
  • The ability to work consistently during the client’s required US hours.
  • A personal device that is dedicated exclusively to work during scheduled working hours.