Windows Security Engineer
Caxton Associates
We are seeking a Windows Security Engineer to join the Systems and Infrastructure team. The role will be focused on hardening, monitoring, and improving security across endpoints, servers, identity systems, and supporting infrastructure.
The successful candidate will play a key role in the Systems and Infrastructure team, contributing to the operational efficiency, reliability, and security of our Windows infrastructure.
Responsibilities:
- Manage and optimize Microsoft Defender, EDR/XDR tooling, vulnerability scanners, and patching processes.
- Implement and maintain Windows security controls (Group policy, baseline hardening, endpoint protection, logging).
- Continuously improve the core security controls that protect Windows systems across the organization.
- Monitor security alerts, investigate incidents, and assist with remediation.
- Support and improve identity and access management (Active Directory, Azure AD, conditional access, MFA).
- Perform regular security assessments, configuration reviews, and compliance checks.
- Develop and maintain security documentation, playbooks, and automation scripts (PowerShell / Python).
- Collaborate on architecture reviews and secure deployments.
Experience:
- Strong knowledge of Windows OS internals, Active Directory, Group Policy, and Windows security baselines and university degree in related domain.
- At least 5 years’ experience working in a similar role
- Experience with EDR platforms, SIEM tools, and security monitoring
- Automation using PowerShell (and/or Python)
- Deploy and support Enterprise Windows systems and third-party applications
- Familiarity with vulnerability management and patching tools
- Understanding of network security fundamentals (firewalls, DNS, TLS, authentication flows)
- Exposure to Azure security controls (Defender for Cloud, conditional access, identity protection)
- Ability to investigate systems issues and applications as required.
- Highly self-motivated and directed, with keen attention to detail.
- Proven analytical and creative problem-solving abilities.
- Communicates clearly and works well cross-functionally.
- Operates with the highest degree of ethics and integrity.
The following would be highly beneficial:
- Experience with Intune
- Knowledge of AWS Infrastructure
- Understanding of Zero Trust principles