<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
     xmlns:content="http://purl.org/rss/1.0/modules/content/"
     xmlns:wfw="http://wellformedweb.org/CommentAPI/"
     xmlns:dc="http://purl.org/dc/elements/1.1/"
     xmlns:atom="http://www.w3.org/2005/Atom"
     xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
     xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
     >
    <channel>
        <title>Ace Job Hub - Feed</title>
        <atom:link href="https://acejobhub.com/?feed=job_feed&#038;sector_cat=it" rel="self" type="application/rss+xml" />
        <link>https://acejobhub.com</link>
        <description>Specialized Job Board for Top Industry Talent</description>
        <lastBuildDate>Thu, 30 Jul 2026 14:09:48 +0000</lastBuildDate>
        <language></language>
        <sy:updatePeriod>hourly</sy:updatePeriod>
        <sy:updateFrequency>1</sy:updateFrequency>
        <generator>https://wordpress.org/?v=7.0.2</generator>

<image>
	<url>https://acejobhub.com/wp-content/uploads/2025/12/cropped-Blue-logo-32x32.png</url>
	<title>Ace Job Hub</title>
	<link>https://acejobhub.com</link>
	<width>32</width>
	<height>32</height>
</image> 
                        <item>
                    <RecuiterJobNumber><![CDATA[13449]]></RecuiterJobNumber>
                    <title><![CDATA[Endpoint Security Management]]></title>
                    <link><![CDATA[https://acejobhub.com/job/endpoint-security-management/]]></link>
                    <PostDate>Thu, 30 Jul 2026 14:09:48 +0000</PostDate>
                    <expiryDate>Thu, 13 Aug 2026 00:00:00 +0000</expiryDate>
                                            <applicationDeadline>Thu, 13 Aug 2026 00:00:00 +0000</applicationDeadline>
                                            <featured><![CDATA[no]]></featured>
                                            <salary><![CDATA[]]></salary>
                                            <employer><![CDATA[]]></employer>
                    <employerImg><![CDATA[https://acejobhub.com/wp-content/uploads/2026/05/unnamed-4-150x150.webp]]></employerImg>
                                            <location><![CDATA[West Rand]]></location>
                                                <sector><![CDATA[IT]]></sector>
                                                <type><![CDATA[CONTRACTOR]]></type>
                                            <excerpt><![CDATA[Vacancy Details Employer: Araxi Group Endpoint Security Management Design, implement and manage Microsoft Intune security configurations across Windows, macOS, iOS and Android devices. Develop and maintain: Compliance Policies Configuration Profiles Endpoint Security Policies Security Baselines Device Restrictions App Protection Policies (MAM) Ensure endpoint security controls remain aligned to Microsoft security best practices, CIS benchmarks and...]]></excerpt>
                    <description><![CDATA[<h1>Vacancy Details</h1>
<p>Employer: <strong>Araxi Group</strong></p>
<p><strong>Endpoint Security Management</strong></p>
<ul>
<li>Design, implement and manage Microsoft Intune security configurations across Windows, macOS, iOS and Android devices.</li>
<li>Develop and maintain:</li>
<ul>
<li>Compliance Policies</li>
<li>Configuration Profiles</li>
<li>Endpoint Security Policies</li>
<li>Security Baselines</li>
<li>Device Restrictions</li>
<li>App Protection Policies (MAM)</li>
</ul>
<li>Ensure endpoint security controls remain aligned to Microsoft security best practices, CIS benchmarks and organisational standards.</li>
<li>Continuously review and optimise endpoint security configurations to reduce risk and improve user experience.</li>
</ul>
<p><strong>Intune &#038; Device Management</strong></p>
<ul>
<li>Administer Microsoft Intune as the primary endpoint management platform.</li>
<li>Drive adoption of modern endpoint management capabilities and cloud-native device management practices.</li>
<li>Support co-management strategies between Intune and SCCM/MECM.</li>
<li>Lead workload transitions from on-premise management solutions to Intune where appropriate.</li>
<li>Maintain device lifecycle security standards across enrolment, compliance, monitoring and decommissioning processes.</li>
</ul>
<p><strong>SCCM/MECM Administration</strong></p>
<ul>
<li>Manage SCCM/MECM environments supporting:</li>
<ul>
<li>Patch deployment</li>
<li>Software distribution</li>
<li>Endpoint configuration management</li>
<li>Compliance reporting</li>
</ul>
<li>Ensure timely deployment of security updates and critical patches.</li>
<li>Support patch governance and vulnerability remediation initiatives.</li>
<li>Collaborate with infrastructure and EUC teams to improve endpoint management maturity.</li>
</ul>
<p><strong>BYOD Security Governance</strong></p>
<ul>
<li>Design and implement BYOD security frameworks that balance corporate security requirements with user convenience.</li>
<li>Configure and manage:</li>
<ul>
<li>App Protection Policies (MAM)</li>
<li>MAM without MDM</li>
<li>Device enrolment controls</li>
<li>Conditional Access device requirements</li>
<li>Corporate application access controls</li>
</ul>
<li>Ensure corporate data remains protected on personal devices through appropriate security controls and data separation mechanisms.</li>
<li>Review BYOD adoption and security posture regularly and recommend improvements where necessary.</li>
</ul>
<p><strong>Endpoint Protection &#038; Hardening</strong></p>
<ul>
<li>Configure and optimise Microsoft Defender for Endpoint security capabilities including:</li>
<ul>
<li>Endpoint Detection and Response (EDR)</li>
<li>Antivirus</li>
<li>Attack Surface Reduction (ASR)</li>
<li>Threat and Vulnerability Management</li>
<li>Automated Investigation and Remediation</li>
</ul>
<li>Implement and maintain endpoint hardening standards using:</li>
<ul>
<li>BitLocker</li>
<li>Windows Security Baselines</li>
<li>Firewall Policies</li>
<li>Device Control Policies</li>
<li>CIS Benchmarks</li>
</ul>
<li>Monitor emerging endpoint risks and recommend mitigation strategies.</li>
</ul>
<p><strong>Compliance Monitoring &#038; Risk Reduction</strong></p>
<ul>
<li>Monitor device health, compliance status and security posture across the endpoint estate.</li>
<li>Investigate and remediate non-compliant devices in collaboration with EUC and Service Desk teams.</li>
<li>Support vulnerability management and patch compliance initiatives.</li>
<li>Develop reporting and dashboards to track endpoint security performance and trends.</li>
</ul>
<p><strong>Incident Response &#038; Security Operations</strong></p>
<ul>
<li>Provide technical support during endpoint security incidents.</li>
<li>Perform endpoint containment activities including:</li>
<ul>
<li>Device isolation</li>
<li>Investigation support</li>
<li>Forensic artefact collection</li>
<li>Malware remediation</li>
</ul>
<li>Work closely with Security Operations Centre (SOC) teams during investigations and recovery activities.</li>
<li>Assist in identifying root causes and implementing preventative measures.</li>
</ul>
<p><strong>Zero Trust Enablement</strong></p>
<ul>
<li>Support the organisation&#8217;s Zero Trust security strategy by integrating endpoint compliance with identity and access controls.</li>
<li>Collaborate with IAM and security engineering teams to align Conditional Access policies with device trust signals.</li>
<li>Ensure device compliance data is effectively leveraged to strengthen access control decisions.</li>
<li>Contribute to broader cloud and modern workplace security initiatives.</li>
</ul>
<p><strong>Decision-Making Authority</strong></p>
<p>The successful candidate will:</p>
<ul>
<li>Implement and manage endpoint security configurations within delegated authority.</li>
<li>Recommend security baselines, compliance controls and BYOD security requirements.</li>
<li>Escalate high-risk devices, unresolved security issues and persistent non-compliance concerns to cyber leadership.</li>
<li>Influence endpoint security standards and best practices across the organisation.</li>
</ul>
<p><strong>Essential Skills &#038; Experience</strong></p>
<p><strong>Technical Experience</strong></p>
<ul>
<li>Minimum 5-8 years&#8217; experience in endpoint security, endpoint management or modern workplace security engineering.</li>
<li>Strong hands-on experience administering Microsoft Intune in enterprise environments.</li>
<li>Experience managing SCCM/MECM and co-managed endpoint environments.</li>
<li>Extensive experience implementing Microsoft Defender for Endpoint security controls.</li>
<li>Proven experience managing BYOD and mobile device security frameworks.</li>
<li>Experience with Windows, macOS, iOS and Android device management and security.</li>
<li>Strong understanding of endpoint hardening, patch management and vulnerability remediation.</li>
</ul>
<p><strong>Security &#038; Governance Knowledge</strong></p>
<ul>
<li>Knowledge of:</li>
<ul>
<li>Zero Trust security principles</li>
<li>CIS Benchmarks</li>
<li>Microsoft Security Baselines</li>
<li>Device compliance frameworks</li>
<li>Endpoint risk management</li>
<li>Data protection controls</li>
</ul>
<li>Understanding of Conditional Access, identity-driven security and device trust concepts.</li>
<li>Experience supporting audits, compliance reviews and security assessments.</li>
</ul>
<p><strong>Professional Skills</strong></p>
<ul>
<li>Strong troubleshooting and problem-solving capabilities.</li>
<li>Excellent stakeholder engagement and communication skills.</li>
<li>Ability to work effectively with EUC, Service Desk and Security Operations teams.</li>
<li>Strong attention to detail and commitment to security best practice.</li>
<li>Ability to prioritise work effectively within a fast-paced environment.</li>
</ul>
<p><strong>Preferred Qualifications</strong></p>
<ul>
<li>Microsoft Certified: Endpoint Administrator Associate (MD-102)</li>
<li>Microsoft Certified: Security Operations Analyst Associate (SC-200)</li>
<li>Microsoft Certified: Identity and Access Administrator Associate (SC-300)</li>
<li>Microsoft Certified: Azure Administrator Associate (AZ-104)</li>
<li>Microsoft Certified: Azure Security Engineer Associate (AZ-500)</li>
<li>CompTIA Security+</li>
<li>CISSP, CISM or equivalent security certification advantageous</li>
</ul>
<p><strong>Core Technologies</strong></p>
<p><strong>Endpoint Management</strong></p>
<ul>
<li>Microsoft Intune</li>
<li>Endpoint Security Policies</li>
<li>Compliance Policies</li>
<li>Configuration Profiles</li>
<li>App Protection Policies (MAM)</li>
</ul>
<p><strong>Endpoint Protection</strong></p>
<ul>
<li>Microsoft Defender for Endpoint</li>
<li>Endpoint Detection and Response (EDR)</li>
<li>Antivirus</li>
<li>Attack Surface Reduction (ASR)</li>
<li>Threat &#038; Vulnerability Management</li>
</ul>
<p><strong>Legacy &#038; Co-Management Platforms</strong></p>
<ul>
<li>SCCM / MECM</li>
<li>Software Deployment</li>
<li>Patch Management</li>
<li>Co-Management</li>
</ul>
<p><strong>Device Hardening &#038; Compliance</strong></p>
<ul>
<li>BitLocker</li>
<li>Windows Security Baselines</li>
<li>CIS Benchmarks</li>
<li>Device Compliance Policies</li>
<li>Firewall Management</li>
</ul>
<p><strong>BYOD Security</strong></p>
<ul>
<li>Mobile Application Management (MAM)</li>
<li>MAM without MDM</li>
<li>BYOD Conditional Access</li>
<li>Corporate Data Protection Controls</li>
</ul>
<p><strong>Identity Integration</strong></p>
<ul>
<li>Microsoft Entra ID</li>
<li>Device Registration</li>
<li>Hybrid Azure AD Join</li>
<li>Conditional Access Integration</li>
</ul>
<p><strong>Why Join Us?</strong></p>
<p>This is an exciting opportunity to play a key role in securing a modern workplace environment through best-in-class endpoint and BYOD security practices. You will work with leading Microsoft technologies, contribute to critical Zero Trust initiatives, and help shape the future of endpoint security across the organisation.</p>
<p><strong></strong></p>
]]></description>
                                                        </item>
                    </channel>
</rss>