Enable job alerts via email!

Windows Security Engineer

Point72

London

On-site

GBP 60,000 - 100,000

Full time

6 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Join a forward-thinking company as part of their Global Information Security Team, where you'll play a key role in protecting vital information assets. This position involves designing secure Windows Server architectures, managing identity solutions, and implementing security standards across various platforms. With a commitment to employee well-being, the firm offers generous benefits, including fully-paid health care and tuition assistance. Be part of an innovative environment that values diversity and invests in your career development. If you are passionate about security and technology, this opportunity is perfect for you.

Benefits

Fully-paid health care benefits
Generous parental and family leave policies
Volunteer opportunities
Support for employee-led affinity groups
Mental and physical wellness programs
Tuition assistance
401(k) savings program with employer match

Qualifications

  • 7+ years of experience in Windows Server administration and security.
  • Deep expertise in Active Directory and related Microsoft technologies.
  • Proficiency with PowerShell and security assessment practices.

Responsibilities

  • Design and implement secure Windows Server and Active Directory architectures.
  • Collaborate with teams to secure Windows endpoints and manage identity solutions.
  • Monitor and respond to security incidents related to Windows infrastructure.

Skills

Windows Server Administration
Active Directory
AzureAD/EntraID
PowerShell
Security Assessments
Identity Protection Solutions
Network Infrastructure
Group Policy
SQL Server
Windows Firewall Management

Education

Bachelor's degree in Computer Science
Bachelor's degree in Information Security

Tools

SCCM
InTune
CrowdStrike Identity Protection
Defender for Identity
Quest Active Roles

Job description

A Career with Point72's Global Information Security Team

Our Global Information Security team's mission is to ensure the development, implementation, and management of a comprehensive program that effectively protects the confidentiality, integrity, and availability of Point72 information assets. Our team is comprised of security professionals with expertise in a diverse portfolio of security disciplines.

What you'll do
  1. Design and implement secure Windows Server and Active Directory architectures at scale
  2. Architect and maintain hybrid identity solutions integrating on-premise AD with EntraID (Azure AD) and Okta
  3. Configure and manage AD delegation models following least privilege principles
  4. Implement and maintain identity protection solutions (eg: Defender for Identity, CrowdStrike Identity Protection, Quest Active Roles, etc)
  5. Develop and enforce security standards for Windows Server deployments, including bare metal, VMware and public cloud (AWS, Azure, GCP)
  6. Collaborate with Endpoint Engineering teams to secure Windows endpoints using solutions including SCCM and InTune
  7. Configuration management for Windows Firewall and ASR rules across our endpoint estate
  8. Help to monitor and mature our Windows patching and vulnerability management program Windows
  9. Perform security assessments and audits of Windows infrastructure
  10. Monitor and respond to security incidents related to Windows infrastructure
  11. Collaborate with infrastructure and security teams on identity and access management initiatives

What's required
  1. Bachelor's degree in Computer Science, Information Security, or related field
  2. 7+ years of experience in Windows Server administration and security with deep expertise in Active Directory, Group Policy, AzureAD/EntraID, ADFS, DFS, SMB/CIFS, IIS, SQL Server, Kerberos, LDAP, NTLM, DNS, WMI, LAPS, Bitlocker and related Microsoft Server technologies
  3. Experience with all common versions of Windows Server (2012, 2016, 2019, 2022 & 2025) and Windows 10-11 desktop OS
  4. Strong general knowledge of core infrastructure (Networking, storage, virtualization/VMware, etc)
  5. Advanced knowledge of AD delegation models and associated best practices
  6. Experience with identity protection platforms (Defender for Identity, CrowdStrike Identity Protection, etc.)
  7. Proficiency navigating and triaging Windows event logs
  8. Familiarity with Centrify as means of integrating Linux with Active Directory
  9. Familiarity with Quest Active Directory security products (eg: Active Roles)
  10. Proficiency with PowerShell required

We take care of our people

We invest in our people, their careers, their health, and their well-being. When you work here, we provide:
  1. Fully-paid health care benefits
  2. Generous parental and family leave policies
  3. Volunteer opportunities
  4. Support for employee-led affinity groups representing women, people of color and the LGBT+ community
  5. Mental and physical wellness programs
  6. Tuition assistance
  7. A 401(k) savings program with an employer match and more

About Point72

Point72 Asset Management is a global firm led by Steven Cohen that invests in multiple asset classes and strategies worldwide. Resting on more than a quarter-century of investing experience, we seek to be the industry's premier asset manager through delivering superior risk-adjusted returns, adhering to the highest ethical standards, and offering the greatest opportunities to the industry's brightest talent. We're inventing the future of finance by revolutionizing how we develop our people and how we use data to shape our thinking. For more information, visit www.Point72.com/working-here.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.