This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
We are seeking an experienced Endpoint Engineer to support large-scale endpoint environments across multiple client infrastructures. This role focuses on maintaining endpoint security posture, ensuring patch compliance, and managing device security operations across enterprise device fleets. The ideal candidate will have hands-on experience managing thousands of endpoints in complex environments and will work across endpoint management, vulnerability remediation, and security monitoring activities. This position combines technical engineering responsibilities with operational support and client-facing collaboration.
Job Responsibility:
Plan, test, and deploy operating system and application updates across large endpoint fleets using structured deployment strategies such as pilot groups and phased rollouts
Monitor patch compliance and coordinate maintenance windows, approvals, and remediation timelines
Troubleshoot patch deployment failures and coordinate rollback or recovery actions when updates introduce system instability or compatibility issues
Deploy, configure, and maintain endpoint protection platforms including EDR/XDR solutions
Tune security policies, configure alerting and prevention settings, and investigate suspicious endpoint activity
Contain or isolate compromised systems when threats are detected
Investigate security alerts and abnormal endpoint behaviors including malware, ransomware, and unauthorized activity
Support incident response activities including investigation, containment, eradication, and recovery
Document findings and contribute to post-incident remediation and security improvements
Review endpoint vulnerability findings and prioritize remediation based on severity and risk exposure
Track remediation progress and ensure endpoint compliance across operating systems and applications
Support regular vulnerability scanning validation and endpoint security assessments
Implement endpoint security configurations and baseline standards across enterprise devices
Support endpoint encryption, firewall policies, privilege controls, and system security settings
Develop PowerShell scripts and automation to improve patch deployment, compliance reporting, and endpoint management processes
Generate operational reports and security metrics related to patch status, endpoint coverage, and vulnerability remediation
Maintain device inventory and asset lifecycle records for enterprise endpoints including desktops, laptops, and associated services
Ensure endpoints remain compliant with patching and security requirements throughout their lifecycle
Identify and remove outdated, unauthorized, or unsupported tools and applications from endpoint environments
Communicate security posture updates, patch compliance status, and incident response activities to internal teams and client stakeholders
Participate in operational reviews and security discussions to provide technical insights and recommendations
Requirements:
3+ years of experience supporting endpoint environments within a managed services, service provider, or multi-tenant IT environment
Hands-on experience with endpoint device management platforms and endpoint administration tools
Experience operating endpoint detection and response (EDR/XDR) platforms and endpoint vulnerability management solutions, including policy configuration and incident containment
Working knowledge of PowerShell scripting for automation, reporting, or operational tasks
Strong understanding of Windows endpoint administration, device compliance in Active Directory or Entra ID, and basic networking concepts
Experience managing large endpoint environments of 2,000+ devices including desktops and laptops
Experience overseeing patch management and compliance for enterprise endpoint fleets
Familiarity with endpoint asset inventory and lifecycle management processes
Ability to troubleshoot patch failures and implement remediation or rollback strategies when necessary
Strong communication skills with the ability to provide clear updates during security reviews or operational incidents
Nice to have:
Experience supporting hybrid enterprise environments integrating on-prem and cloud-based infrastructure
Familiarity with endpoint security monitoring, threat investigation, and vulnerability remediation workflows
Exposure to automation, reporting tools, and endpoint security metrics tracking
Experience supporting large enterprise or multi-client endpoint environments