Base Career helps you apply smarter for this job.
We are Imbono.
A leading operator and provider of infrastructure and essential goods and services across emerging markets.
There is no other emerging markets player like us.
We combine global capital and operational expertise in a single, integrated model.
We are the architects of possibility – sharp thinkers, problem solvers, and resourceful innovators who make things happen when no one else can.
And every project is built to last.
Our ambition is to transform the lives of more than 100 million people by 2040 by expanding access to essential services such as water, energy, food, healthcare, education, and infrastructure.
Our mission is delivering integrated, high-impact solutions that expand access to essential services combining operational execution, local presence, strategic partnerships, and sustainable capital.
About the Department
The Information Security department is a strategic function within the IT division, responsible for establishing and governing of the organization’s Information Security Management System (ISMS).
The department protects corporate systems, data, and digital assets by designing, implementing, and maintaining a robust framework of security policies, procedures, and controls aligned with global standards and business objectives.
include managing cyber risks, ensuring regulatory compliance, monitoring and mitigating threats, and leading incident response and business continuity planning.
By fostering a culture of security awareness, the function collaborates with internal and external stakeholders to enable secure business operations, safeguard data privacy, and support the organization’s sustainable growth and digital transformation.
The Senior Microsoft Security Engineer will be the primary technical owner of Imbono's Microsoft 365 E5 security environment.
This role is responsible for designing, deploying, configuring, and operationally managing identity (Entra ID), endpoint management (Intune), the full Microsoft Defender XDR suite, Microsoft Sentinel (SIEM/SOAR), and Microsoft Purview (data protection).
Skip the repetitive application forms
Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.
Trusted by over 500,000 job seekers on Base Career
More from this employer
, UAE
The employer is seeking an Office Manager to oversee office operations, facilities, travel, procurement, vendors, budgets, and administrative services in Dubai. The role also supervises administrative staff, supports exe
, UAE
Imbono is seeking a Corporate Receptionist to manage front desk operations, visitors, communications, meeting coordination, and executive administrative support. The role requires 4–5 years of relevant experience, strong
, UAE
Imbono is seeking a professional Barista to provide beverage and hospitality services in its corporate office. The role includes coffee preparation, meeting and event support, pantry management, inventory control, equipm
, UAE
The employer is seeking a Workday Technical Specialist to lead the design, configuration, integration, enhancement, and support of Workday HCM solutions. The role requires 3–5 years of hands-on Workday experience, strong
, UAE
Imbono is seeking a financial modeling specialist to support investment decisions across emerging-market energy, water, food, and infrastructure projects. The role focuses on sophisticated valuation and project finance m
Dubai, UAE
Imbono seeks an IT Helpdesk Technician to provide frontline technical support to users in Dubai. The role involves supporting hardware, software, networks, Microsoft 365, and basic cybersecurity activities. The ideal can
, UAE
, UAE
, UAE
, UAE
, UAE
Dubai, UAE
The engineer leads the technical execution of each migration wave, co-ordinates with the incumbent MSP on source-tenant actions, and operates as the primary security incident responder from within the Imbono SOC.
The role is aligned with Imbono's ISO/IEC 27001:2022 ISMS and the NIST CSF 2.0 framework.
Configure the new Imbono Microsoft 365 E5 tenant from inception, including tenant settings, domain verification, authentication methods, Microsoft Secure Score baseline, and Microsoft licensing configuration.
Deliver the security hardening phases (Phases A-H) from July 2026 before the first migration wave commences.
Design and implement the Imbono Entra ID environment: directory structure, Conditional Access policies (Zero Trust), Multi-Factor Authentication (MFA/SSPR), Entra ID Privileged Identity Management (PIM) for just-in-time role activation, break-glass account procedures, Identity Protection risk policies, and Entra ID Governance (access reviews). Maintain named administrative roles and their lifecycle.
Configure the Cross-Tenant Access Policy (XTAP) bilaterally between the Imbono and Gemcorp tenants, inbound/outbound trust settings, MFA and device compliance claim trust, B2B direct connect for Teams shared channels, SharePoint and OneDrive cross-tenant sharing, and Global Address List visibility.
Validate federation baseline quarterly.
Deploy and operate Intune across the Imbono device estate (Dubai DIFC/DMCC, Angola/Cabinda Refinery, and remote users).
Configure Windows Autopilot for zero-touch provisioning, device compliance policies, configuration profiles, application deployment, App Protection Policies (BYOD/mobile), and endpoint security baselines.
Manage device re-enrolment during migration waves.
Maintain compliance posture for Conditional Access enforcement.
Configure and operate the full Defender suite: (1) Defender for Endpoint (MDE) — EDR, attack surface reduction rules, device compliance; (2) Defender for Office 365 (MDO) — anti-phishing, safe attachments, safe links, native email security replacing any incumbent gateway; (3) Defender for Identity (MDI) — identity-based threat detection and lateral movement alerts; (4) Defender for Cloud Apps (MDCA) — CASB, cloud app governance, in-line session controls; (5) Defender XDR portal — unified incident management and cross-domain correlation.
Deploy and operate Microsoft Sentinel as Imbono's central SIEM/SOAR.
Onboard log sources (Entra ID, Defender suite, firewalls, network infrastructure, Angola office).
Build and maintain detection rules in KQL (Kusto Query Language).
Configure analytics rules, watchlists, and automated response playbooks (Logic Apps/SOAR).
Manage the SOC alert queue, triage, and Level 1–2 incident response.
Continuously tune rules to reduce false positives.
Configure Purview sensitivity labels, DLP policies (endpoint, Teams, Exchange, SharePoint), retention policies, and information governance aligned with Imbono's data classification policy and ISO 27001 Annex A.8 controls.
Support ROPA maintenance and regulatory evidence production for UAE PDPL and Angola Lei 22/11.
Configure Compliance Manager and track compliance score.
Lead the technical execution of all migration workstreams: identity migration, Exchange Online mailbox migration (coexistence, mail forwarding, cutover), SharePoint and OneDrive content migration, Teams channel migration, device re-enrolment to Imbono Intune, SSO integration reconfiguration (including Together Platform SSO, hard gate for Wave 2), and source-tenant cleanup. Co-ordinate with Options Technology on source-tenant actions. Validate each wave against go/no-go criteria before sign-off. Execute the 4-hour domain cutover window on 27 February 2027 with rollback capability.
Operate as the primary technical responder for security incidents detected via Sentinel and the Defender suite.
Conduct triage, containment, evidence collection, forensic analysis, and post-incident review.
Maintain and continuously improve incident response playbooks.
Co-ordinate cross-tenant incident notification with Gemcorp Capital where cross-tenant impact is detected.
Provide SOC hypercare coverage during and immediately after the domain cutover window.
Manage day-to-day platform health, licence lifecycle, service health monitoring, and configuration change management for all M365 workloads.
Maintain Microsoft Secure Score and report platform security posture to the Head of Cyber Security.
Contribute to ISMS evidence (Annex A control evidence, audit artefacts) for ISO 27001:2022 certification audits.
*We believe that diversity strengthens our organisation and we welcome applications from individuals of all backgrounds and experiences.
We want every candidate to perform at their best.
If you need any reasonable adjustments during the application or interview process, please contact us at
careers@imbono.com
and we will work with you to meet your needs.*
Full-time
Mid-Senior
Onsite
Apply faster on company sites with our extension.