Description:
Join Our Team as our new Systems Engineer at CBN!
Are you an experienced Systems Engineer with a passion for Microsoft Modern Workplace, Azure and with solid Security skills? We have a permanent role with a financial services client based in the CBD, who work a hybrid model with two days working from home.
The successful candidate will be responsible for the planning, deployment and support of Microsoft 365 solutions including Intune, Defender as well as security configurations.
Future initiatives include the integration of new multi-tenant clients, a large-scale security uplift plus a number of other long-term projects.
This role involves a hands-on approach to setting up, configuring and maintaining Microsoft 365 services to enhance security, streamline IT processes and ensure compliance with security standards. The successful candidate will work closely with other team members to drive secure and efficient implementations for clients and internal teams.
Experience
- 5+ years demonstrated experience in IT infrastructure roles with a strong focus on Microsoft 365, Azure and Security
- Strong problem solving, communication and stakeholder engagement using a logical and structured approach.
- Strong interpersonal skills and the ability to work with a wide range of stakeholders
- Self-starter, capable of working with minimal supervision and the ability to independently research processes and solutions
- Demonstrated knowledge of ITIL V3/V4 Service Management Framework
- Have a positive work ethic and high attention to detail
What You’ll Do:
Identity & Access Management
- Configure and enforce Microsoft 365 security and compliance best practices, including Conditional Access, Identity Protection and Defender for Cloud.
- Implement and support Entra ID for single sign-on (SSO) and multi-factor authentication (MFA).
- Oversee Privileged Identity Management (PIM) and Role-Based Access Control (RBAC).
- Configure Microsoft 365 security and compliance features tailored to client or business needs.
Microsoft Intune
- Device Enrolment and Configuration (Windows, iOS, Android)
- Application packaging and deployment
- User and device configuration (Wi-Fi, VPN, Email, Security settings)
- Security Baselines (Windows Security, Device Protection)
- Mobile Application Management (MAM) and Mobile Device Management (MDM)
- Autopilot for Windows 11 provisioning
Cloud Technologies
- Assist with the delivery and build of Azure Services
- Follow best practice when deploying various Azure PaaS and IaaS services
- Leverage Azure services such as Synapse, Azure Storage, Key Vault, Logic Apps or databases
- Configure and optimize Azure networking components such as Virtual Networks (VNet) and Network Security Groups (NSG)
Security
- Have a firm understanding of security guidelines and frameworks, such as ASD/ACSC Essential 8, CIS and NIST
- Ability to implement a Zero Trust security model across identity, endpoints and networks.
- Conduct regular vulnerability assessments and patch management.
- Implement data loss prevention (DLP) and compliance policies in Microsoft Purview.
- Deploy and configure Microsoft Defender solutions to protect against cybersecurity threats.
- Conduct threat analysis and develop mitigation strategies using Defender's reporting and alerting tools.
- Optimise Defender settings and features to align with best practices in security.
- Collaborate with internal teams to design and enforce policies for data protection, conditional access and identity governance.
- Assist in maintaining compliance with industry standards and regulatory requirements.
Technical Support and Documentation
- Lead and execute Microsoft 365 Tenant-to-Tenant migration projects, ensuring minimal disruption to business operations.
- Manage and configure Microsoft 365 services, including Exchange Online, SharePoint Online, OneDrive, Teams, and Intune.
- Monitor Azure cost management, optimization, and performance tuning.
- Document configurations, policies, and technical guidelines for reference, troubleshooting and training.
Skills and Attributes
- Foster a Collaborative Environment
- Share knowledge and mentor junior team members
- Provide technical leadership on Azure, Microsoft 365, Intune and Security matters.
- Set the standard for security and cloud best practices
- Work with cross-functional teams to support IT projects and system enhancements.
- Certifications such as AZ-900 and AZ-104 are a bonus
- Previous experience with Arctic Wolf would be ideal, but is not essential
Why CBN?
At CBN, we believe in fostering growth—for you and the entire team. As part of a supportive network, you'll get the tools and opportunities to expand your knowledge and skills. Plus, we’re committed to delivering exceptional service, and you’ll play a critical role in that!
Ready to bring your IT skills to a team that values collaboration, service, and continuous improvement? Apply today and help us deliver top-tier support across the CBN Authorised Broker Network!
Our Awesome Benefits!
Great Place to Work certified 3 years in a row
Hybrid working flexibility: x3 Days in the Office, x2 Days at Home!
Well-being allowance
2x Mental health days and birthday leave (on top of annual leave)
Competitive salaries
Study support / L&D
Generous incentive & bonus plan
Paid parental leave
❤️ Salary continuance benefit
✈️ Generous Travel insurance and cyber security insurance discounts
Celebrates personal & professional achievements
Regular team building functions, events and cultural activities
Other benefits: discounted gym memberships, health insurance, retail stores and more!