The posting
L2 Microsoft Defender for Endpoint Support
Industry / Domain: Enterprise Cybersecurity / Endpoint Security
Location: Singapore, Onsite
Employment Type: Contract – 3 to 6 months (renewable contract)
Job Summary
- Support a large-scale endpoint security migration with a focus on Microsoft Defender for Endpoint, go-live readiness, Hypercare, and warranty support.
- Provide L2 technical support across Microsoft Defender for Endpoint, Defender Antivirus, EDR configuration, Attack Surface Reduction rules, and Intune-based policy deployment.
- Key Responsibilities
- Investigate MDE onboarding issues, policy deployment behavior, endpoint configuration gaps, AV exclusions, ASR rule concerns, and deviations from approved Defender design guidance.
- Review logs, screenshots, connector status, device policy status, configuration evidence, and troubleshooting information provided by IT and security teams.
- Support go-live and Hypercare discussions related to Defender policy rollout, endpoint security transition, and post-deployment stabilization.
- Coordinate with endpoint, Intune, identity, SOC, and security teams to confirm root cause, validate remediation steps, and track issue closure.
- Escalate complex or unresolved issues to L3 engineers, SMEs, or architects where deeper platform or design guidance is required.
- Maintain issue trackers, action notes, support documentation, closure updates, and evidence-based troubleshooting records.
Required Skills
- Experience in endpoint security support, MDE operations, MDE onboarding, or enterprise Microsoft security support.
- Hands-on knowledge of Microsoft Defender for Endpoint, Defender Antivirus, EDR, ASR rules, and Intune policy deployment.
- Ability to assess device policy status, endpoint deployment issues, operational exceptions, AV exclusions, and ASR behavior.
- Familiarity with Entra ID Conditional Access, SOC integration, Microsoft Sentinel, Splunk, and enterprise support governance.



