Salary: £66,000 - 69,000 per year Requirements: Proven hands-on experience implementing Intune/Endpoint Manager for Corporate BYOD environments Strong capability implementing MAM, Conditional Access, App Protection Policies, and Zero Trust aligned controls Solid experience with Azure AD / Entra ID, MFA, SSO, and identity governance Practical delivery of security hardening aligned to CIS Benchmarks Experience working with retail or distributed site/store environments (desirable) Deep understanding of CIS Controls v8 (IG2), CIS Benchmarks, and NIST CSF (Tier 3 maturity) Must be a hands-on implementer (not advisory or consultancy only) Able to work in fast-paced, time-boxed delivery cycles Comfortable with weekly milestone reporting and governance Capable of documenting exceptions, justifications, and compensating controls Responsibilities: Design MDM setup for corporate and BYOD devices Define required MDM/MAM/Conditional Access configuration aligned to CIS IG2 Implement and enforce corporate and BYOD MDM policies Enforce separate compliance & Conditional Access policies Implement MAM controls and approved application enforcement Deploy applications via Company Portal Document configuration, exceptions, and operational guidance Ensure security and compliance visibility/reporting is operational Assess current identity and authentication controls Define scope and implementation plan for SSO and MFA Implement SSO/MFA policies and Conditional Access configurations Enforce authentication policies with evidence of operation Deliver operational documentation and testing evidence Define device hardening baselines aligned to CIS Benchmarks Implement and enforce the hardening baseline using technical controls Conduct multiple site location security and architecture review Deliver and implement actionable security remediation Evidence compliance and enforcement Technologies: Azure Security Swift Cloud Mobile More: We are a dynamic and focused team seeking a highly capable M365 Security Consultant to join us in executing a series of impactful security improvement phases. This role is fully remote but requires our consultant to be based in the UK. We offer a contract length of 3–6 months with an attractive day rate and an opportunity for career advancement through hands-on implementation of security controls. Our team values swift execution and collaboration, ensuring that our security measures are not just designed but effectively delivered. last updated 5 week of 2026