Menu

Security Engineer

  • Fully Remote
  • Outside IR35
Apply for this job

Security Engineer with end user computing experience required to design, build, and secure Windows-based end-user environments across physical devices, cloud, and virtual desktops. This role is split 50/50 between hands-on engineering and security consulting, ensuring Windows builds are secure, compliant, and operationally viable, while advising on risk, design decisions, and configuration changes.

You will own secure Windows builds, ensure compliance with security controls (eg CIS), integrate security and operational tooling, and enable other products to safely operate on the build. The role also requires reviewing risk decisions prior to configuration changes and balancing security with usability.

Key Responsibilities

Hands-On Engineering

  • Build and maintain secure Windows 10/11 images for physical devices and virtual desktops.
  • Ensure Windows builds are security compliant (CIS-aligned) and production-ready.
  • Configure and manage endpoint security tooling (Microsoft Defender, Qualys, encryption, EDR).
  • Integrate operational tooling and ensure other products can safely operate on the secure build.
  • Secure and manage Azure Virtual Desktop (AVD) environments, including persistent vs personal desktops.
  • Implement endpoint policies using Intune, Entra ID, and Microsoft 365.

Consulting & Advisory

  • Advise on secure EUC architecture across physical, virtual, and cloud desktops.
  • Review and assess risk decisions prior to configuration changes.
  • Provide guidance on identity, access, and endpoint security design.
  • Support stakeholders with secure desktop strategies and trade-off decisions.
  • Contribute to documentation, standards, and security recommendations.

Required Skills & Experience

  • Strong experience building and securing Windows desktop images.
  • Knowledge of Intune, Microsoft 365, Entra ID, and Microsoft Defender.
  • Experience with Azure Virtual Desktop (AVD), including persistent vs personal desktops and mapping virtual builds to physical devices.
  • Familiarity with CIS benchmarks and secure configuration standards.
  • Experience with vulnerability management tools such as Qualys.
  • Ability to assess risk and clearly communicate security decisions.

Barclay Simpson, worldwide specialists in Cyber Security jobs: https://www.barclaysimpson.com/specialisms/cyber-security-jobs/

An official job listing by Barclay Simpson: https://www.barclaysimpson.com/job/security-engineer/

Apply for this job
Upload your CV/resume or any other relevant file. Max. file size: 2 MB.
I consent to the storing and processing of my personal data as detailed in Barclay Simpson’s Privacy Policy.

We seek individuals from a diverse talent pool and encourage applicants from underrepresented groups to apply to our vacancies. Our commitment to fair recruitment processes means that we welcome applicants from all backgrounds, regardless of their lived experience or personal characteristics. We also invite applicants who meet most of the listed requirements, even if not all, to apply. If you require any adjustments to the application process, please let us know.

Barclay Simpson acts as an Employment Agency for permanent positions and an Employment Business for temporary/contract engagements.