CrawlJobs Logo

Endpoint Security Engineer

amgen.com Logo

Amgen

Location Icon

Location:
Portugal , Lisbon

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

As an Endpoint Security Senior Associate, you will be a technical endpoint security engineer for a very diverse endpoint solution. This engineer will play a key role in designing, deploying, and maintaining solutions to build our evolving endpoint protection capabilities. Endpoint Security Engineers operate, lead, and improve multiple endpoint security technologies. This associate will protect Amgen from threats inside of the company's environment within both the global corporate network and manufacturing environments. You will ensure that all technologies are operationally ready and that the endpoint security, SOC teams are enabled to execute on capabilities as needed to resolve operational issues or business requirements. This position will be responsible for delivering world-class security systems and tools management related to the Endpoint Security space. The role will work with other engineers and business units to help spec, build, administer/configure, and maintain critical preventive and detective security infrastructure related to Amgen’s endpoints.

Job Responsibility:

  • Run policies and software deployment in anti-virus, anti-malware, and endpoint detection and response solutions
  • Operate endpoint discovery software deployment, while improving process maturity
  • Develop and update enterprise documentation for endpoint security processes, policies, and standards
  • Provide end to end support to enterprise counterparts, identifying root cause of sophisticated enterprise initiatives with endpoint security solutions
  • Perform moderate trouble shooting across complex enterprise applications, server, and endpoint environments
  • Ability to onboard, learn and implement new security technologies
  • Maintain secure configuration process for software and version compliance across global enterprises
  • Demonstrate sophisticated knowledge of malware operation and indicators of threat across Amgen

Requirements:

  • Master’s degree
  • Or Bachelor’s degree and 2 years of experience in Information Systems, or Computer Science
  • Or Associate degree and 4 years of experience in Information Systems, or Computer Science
  • Or High school diploma / GED and 6 years of experience in Information Systems, or Computer Science
  • Knowledge of Windows and Linux OSs and associated scripting languages
  • Demonstrated knowledge and experience on endpoint security with technologies and solutions like Traditional Anti-Malware Technologies, Next Generation Anti-Malware, Application Allowlisting, and Endpoint Detection and Response
  • Experience in one or more Information Security domains to include security monitoring, threat intelligence, network protection, data protection, endpoint protection, technical security assessments, or security architecture
  • Familiarity with information security frameworks and policies like ISO 27001/27002, NIST, and CoBIT
  • Excellent analytical and troubleshooting skills with complex technologies that impact security
  • Experience in complex enterprise environments with contending business priorities
  • Excellent verbal and written communication skills
  • Effective working with global, virtual teams in a collaborative setting, placing priority on the successful completion of team goals
  • Self-starter with a high degree of initiative and the ability to optimally prioritize
  • Experience creating and maintain basic automation routines to support different repetitive tasks and recurrent security events
  • In depth experience with Windows operating systems (workstation and server)

Nice to have:

  • Experience with regulated systems (GxP, SOX) in the pharmaceutical, biotechnology, healthcare industry is preferred
  • Preferred Certifications (Any): SANS (GSEC, GCED)
  • Systems Security Certified Practitioner (SSCP) or Security+
  • Microsoft Certifications (MCSA, MCSD, MCSE)
What we offer:
  • Work That Matters – Build tech that accelerates scientific breakthroughs and helps patients worldwide
  • Modern Tech Stack – Cloud-first, automation-focused, AI-powered
  • Global Scale, Agile Mindset – Collaborate across continents while working in nimble, high-impact teams
  • Continuous Learning – Access to certifications, trainings, mentorship, and career mobility
  • AMGEN Total Rewards Plan – Comprehensive benefits in healthcare, finance, and well-being
  • Flexibility – Hybrid work model with time split between our Lisbon office and remote work

Additional Information:

Job Posted:
January 05, 2026

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Endpoint Security Engineer

Senior Endpoint Security Engineer

The Endpoint Security Engineer will design and support solutions that support th...
Location
Location
United States , Seattle; Bellevue
Salary
Salary:
135000.00 - 180000.00 USD / Year
truveta.com Logo
Truveta
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of hands-on experience in an endpoint security, cybersecurity engineering, or similar role
  • Deep understanding of modern operating systems (Windows, macOS) and their architecture, configuration and deployment in a large enterprise environment
  • Strong hands-on experience on Azure Cloud PC, VM, Azure Firewall and Azure Networking
  • Strong hands-on experience on Microsoft Intune and JAMF administration, such as device enrollment, OS upgrade/patch, configuration, profile
  • Define and assign compliance/security policies to ensure corporation devices meet organizational security standards
  • Strong hands-on experience on applications control, deployment, patch and upgrade
  • Proven experience with industry-leading EPM platforms such as CyberArk and BeyondTrust to control user privileged access and provide advanced threat protection and vulnerability management
  • Solid understanding of TCP/IP IPv4/v6, experience of office network (Routing / Switching / WAN, Wi-Fi & Security) management and network security concepts
  • Strong knowledge of cybersecurity frameworks (e.g., NIST, MITRE), threat intelligence, and incident response methodologies
  • Experiences with SOC 2 Type 2, HITRUST, and ISO compliance frameworks. Interact with the compliance team to ensure the company compliant and remediate gaps during compliance finding and controls
Job Responsibility
Job Responsibility
  • Device Management: Define, implement and maintain endpoint hardening baselines for Windows, macOS, and Linux systems with MDM such as Microsoft Intune, and JAMF
  • Policy & Hardening: Develop and enforce security policies, standards, and procedures for all endpoint devices. Implement system hardening configurations based on industry best practices
  • Deploy & Manage Security Tools: Implement, configure, and maintain endpoint security solutions, including Endpoint Detection and Response (EDR), Extended Detection and Response (XDR), antivirus/anti-malware software, and host-based firewalls
  • Incident Response: Collaborate with IT and Security team to respond to endpoint-related incidents. Triage, remediate, and contain security incidents and threats on endpoints. Perform forensic analysis when necessary
  • Vulnerability Management: Manage the endpoint vulnerability lifecycle, from discovery and assessment to remediation, using scanning tools and patch management systems
  • Patch Management: Design and oversee the deployment of updates, security patches for operating system and applications
  • Automation & Scripting: Develop scripts and automation (e.g., using Python, PowerShell) to streamline security operations, automate repetitive tasks, and improve response times
  • AI Protection: Secure endpoints used for AI development, including devices accessing model weights, training data, and production inference systems, implementing guardrails on AI tool usage (e.g., prompt injection prevention in local LLM dev tools, restricted plugins/add-ons)
  • Data Loss Prevention: Enforce data loss prevention (DLP) and encryption policies on devices used to handle sensitive AI training datasets, including PHI/PII and proprietary corporation data
  • On-call: Ability to participate in On-call rotation
What we offer
What we offer
  • Interesting and meaningful work for every career stage
  • Great benefits package
  • Comprehensive benefits with strong medical, dental and vision insurance plans
  • 401K plan
  • Professional development & training opportunities for continuous learning
  • Work/life autonomy via flexible work hours and flexible paid time off
  • Generous parental leave
  • Regular team activities (virtual and in-person)
  • Additional compensation such as incentive pay and stock options (for certain roles)
  • Fulltime
Read More
Arrow Right

Endpoint Security Engineer

The Endpoint Security Engineer is a customer-facing role responsible for ensurin...
Location
Location
Ireland , Galway
Salary
Salary:
Not provided
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Extensive cyber and IT security expertise including hands-on experience designing and implementing endpoint security controls at scale
  • deep hands-on expertise with a leading EDR platform (e.g. CrowdStrike Falcon, SentinelOne) in an enterprise environment
  • expert-level knowledge of Windows, macOS, and Linux operating systems and security features
  • advanced experience with cloud-hosted endpoints including a strong understanding of core Kubernetes concepts like Pods, Nodes, Namespaces, Deployments, and Daemon Sets
  • proficiency in scripting languages for automation and analysis (e.g., Python, PowerShell, Bash)
  • strong understanding of network protocols and host-based firewalls
  • experience with the technical delivery of projects ensuring successful implementation and deployment
  • fluent in English
Job Responsibility
Job Responsibility
  • Provide expert end-to-end technical troubleshooting for complex issues across Windows, Linux, Mac, and Cloud environments
  • manage the deployment and monitoring of Falcon sensors across various operating systems
  • configure and manage deployment and prevention policy settings
  • work collaboratively with Security Analysts and Incident Responders
  • create and maintain documentation for CrowdStrike configuration, processes, and best practices
  • assist in the overall security strategy for endpoints
  • lead configuration and management of EDR platforms and other enterprise security tools
  • work closely with IT, Network, and System Administration teams to integrate security solutions into the IT infrastructure
  • provide security recommendations for endpoint configuration
  • provide technical support and training to end-users
What we offer
What we offer
  • Comprehensive suite of benefits supporting physical, financial, and emotional wellbeing
  • programs catered to career development
  • unconditional inclusion
  • flexible work environment
Read More
Arrow Right

Principal Security Engineer

We’re building a world-class global Security team as part of our Trust Program. ...
Location
Location
India , Hyderabad
Salary
Salary:
Not provided
highspot.com Logo
Highspot
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 10+ years of robust, progressive experience in security engineering, application security, DevSecOps, incident detection and response, or closely related fields
  • Advanced proficiency in at least one programming language (Python, Ruby, Go, Rust, JavaScript), with deep experience conducting detailed code reviews and security assessments across multiple languages
  • Hands-on experience with deploying, operating, and interpreting results from security tools such as static analyzers, web vulnerability scanners, supply chain analysis scanners, and host-based intrusion detection systems
  • Demonstrated experience mentoring, coaching and guiding junior and mid-level security engineers, contributing to a strong team culture, and supporting peer development as a senior individual contributor
  • Demonstrated proactive approach, strong continuous learning orientation, and curiosity about emerging threats, security trends, and innovative technologies
  • Extensive expertise securing cloud-native environments (AWS, Azure, GCP, containers, microservices), with in-depth knowledge of modern cloud security risks and defenses
  • Demonstrated ability to embrace being wrong, practice humility, continuously learn from experiences, and actively seek insights through thoughtful questioning and collaboration
Job Responsibility
Job Responsibility
  • Lead comprehensive application security assessments, advanced threat modeling sessions, and secure code reviews across critical product features, internal tooling, endpoints, and third-party integrations
  • Collaborate strategically with product engineering to establish and enhance secure-by-default and privacy-by-design practices within the software development lifecycle (SDLC)
  • Lead and otherwise participate in incident detection, investigation, triage, containment, and root cause analysis for high impact security incidents, providing mentorship and guidance to junior engineers as required
  • Drive the development and continuous improvement of sophisticated detection rules, response automation, and optimized alert management across cloud environments, corporate infrastructure, and SaaS platforms
  • Lead and participate in complex vulnerability remediation processes, and effectively respond to security issues discovered by both internal teams and external sources
  • Document technical findings and strategic decisions in a clear and accessible manner, and procedural enhancements
  • significantly contribute to comprehensive security playbooks and knowledge repositories
  • Manage and oversee asksecurity@ request handling, and actively participate in sprint-based security activities, balancing strategic and tactical execution
  • Actively participate in the security on-call rotation, or provide senior-level guidance as required during an event and aid in rapid response capabilities to protect our 24x7 platform and global workforce
  • Fulltime
Read More
Arrow Right

Sr. Infrastructure Security Engineer

As a Sr. Infrastructure Security Engineer, you will be responsible for protectin...
Location
Location
United States , West Point
Salary
Salary:
84410.00 - 129987.00 USD / Year
haeaus.com Logo
Hyundai AutoEver America
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in computer science, Information Systems, or related field, or equivalent experience and certifications
  • Ability to script using Python
  • 7+ years of experience in Security Engineering, including planning and operations
  • Advanced knowledge of security technologies in medium to complex computing environments
  • Hands-on experience with multiple enterprise security technologies (e.g., firewalls, VPNs, intrusion detection/prevention, endpoint security)
  • Strong understanding of server/network architecture and core networking concepts (e.g., routing, DNS, DHCP)
Job Responsibility
Job Responsibility
  • Design and Deploy Security Solutions: Build, test, and implement new security technologies, including creating operational manuals and runbooks
  • Operate and Optimize Security Systems: Maintain and improve existing security tools such as DLP, Antivirus, IPS/IDS, and Endpoint Protection, while automating monitoring and enforcement processes
  • Conduct Risk Assessments and Incident Response: Lead or support technical risk evaluations and respond to security incidents, ensuring thorough remediation and reporting
  • Collaborate and Advise: Work with internal and external stakeholders to identify security needs, recommend solutions, and stay current with evolving technologies
  • Monitor and Report: Continuously monitor infrastructure for threats, produce security reports for senior leadership, and implement changes following established procedures
  • Fulltime
Read More
Arrow Right

Security Engineer

Airspace Link is seeking a Security Engineer to support the security posture of ...
Location
Location
United States , Detroit
Salary
Salary:
Not provided
airspacelink.com Logo
Airspace Link
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 2–5 years of experience in security engineering, cloud security, SOC/IR operations, or related hands-on security roles
  • Working knowledge of Azure security concepts and Microsoft cloud security tools
  • Practical experience with: Microsoft Defender for Cloud, Endpoint, Identity, and Cloud Apps
  • Microsoft Sentinel (KQL querying, incident investigation, dashboards)
  • Microsoft Intune / Endpoint Manager (MDM/MAM)
  • Microsoft Purview (DLP and compliance tooling)
  • Hands-on experience supporting vulnerability remediation with engineering teams
  • Familiarity with Terraform, secure CI/CD practices, and cloud configuration management
  • Strong written and verbal communication skills with the ability to collaborate cross-functionally
Job Responsibility
Job Responsibility
  • Assist with implementing and maintaining security controls within Azure and SaaS environments
  • Support the incident response lifecycle, including initial investigation, coordination with engineering, and documentation of remediation actions
  • Monitor, tune, and assist in the operation of the Microsoft Defender suite (Defender for Cloud, Endpoint, Identity, Cloud Apps, and Vulnerability Management)
  • Support mobile device management (MDM) and endpoint compliance using Microsoft Intune and Endpoint Manager
  • Partner with engineering teams to identify, prioritize, and track remediation of vulnerabilities across applications, cloud infrastructure, and CI/CD pipelines
  • Help implement and maintain Entra ID Conditional Access and Privileged Identity Management (PIM)
  • Assist in integrating DevSecOps guardrails within Azure DevOps and GitHub pipelines (e.g., CodeQL, IaC scanning, secret governance)
  • Participate in developing dashboards and analytics in Microsoft Sentinel, including KQL queries and incident correlation support
  • Contribute to threat modeling and risk assessments as part of project reviews
  • Support the creation and upkeep of security configuration baselines, Terraform modules, and policy templates
  • Fulltime
Read More
Arrow Right

End Point Security Senior Engineer

Senior Engineer role focused on endpoint security implementation and maintenance...
Location
Location
India , Noida
Salary
Salary:
Not provided
https://www.soprasteria.com Logo
Sopra Steria
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Hands-on experience with EDR/XDR platforms such as Microsoft Defender for Endpoint or Sentinel One
  • Familiarity with vulnerability management tools
  • Knowledge of endpoint technologies including BitLocker, Application control, Endpoint privilege management, Windows Defender Firewall
  • Understanding of endpoint threat intelligence and ability to analyze threat data
  • Scripting or automation experience using PowerShell or other scripting languages
  • Total Experience Expected: 02-06 years
  • B.tech/BE/BCA qualification
Job Responsibility
Job Responsibility
  • Implement and maintain endpoint security solutions such as EDR, antivirus, encryption, and application control tools
  • Monitor, analyze, and respond to security alerts and incidents originating from workstations and endpoints
  • Apply and manage workstation hardening standards, including adherence to security baselines
  • Conduct vulnerability assessments on endpoints and coordinate timely remediation activities
  • Manage patch deployment for operating systems and applications to ensure compliance with internal policies and reduce exposure to threats
  • Ensure endpoint systems comply with security policies, standards, and regulatory frameworks
  • Actively participate in incident response efforts related to endpoint breaches or malware incidents
  • Contribute to risk assessments and provide input during security architecture reviews related to endpoints
  • Maintain a strong understanding of Windows and macOS operating systems from a security perspective
  • Fulltime
Read More
Arrow Right

Security Engineer II

PagerDuty is seeking an Enterprise Security Engineer to join its global IT Opera...
Location
Location
Canada , Toronto
Salary
Salary:
122000.00 - 185000.00 CAD / Year
https://www.pagerduty.com Logo
PagerDuty
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • At least 3 years of experience in the information security industry, with 2+ years in network security or zero-trust, and 2+ years in security architecture or solution experience
  • Knowledge of Information Security concepts, especially in the areas of security threats, analyzing security logs and driving Incident response
  • Knowledge and practical experience in network security and zero-trust
  • Understanding of the IAM cybersecurity landscape, including identity stores, authentication/authorization, strong authentication, and privileged access management capabilities and methodologies
  • Understanding of security technologies and concepts, including SIEM, MDR/XDR, EDR and vulnerability management
  • Understanding of security best practices and frameworks (e.g., MITRE ATT&CK, NIST Cybersecurity Framework)
  • Knowledge of incident response processes
Job Responsibility
Job Responsibility
  • Partner closely with CISO organization to design and implement enterprise IT security architectures and solutions
  • Tracking the evolution of cutting-edge security technologies, and keeping up to date of the latest security threats and trends
  • Focus on enterprise security and zero-trust technology, serving as the principal technical expert in this area within the Enterprise Security department
  • Monitors security alerts and leads the team in identifying and responding to security threats
  • Monitors systems for vulnerabilities, provides prioritization, and drives remediation efforts
  • Working cross-functionally to triage suspicious activity and drive remediation (performing L2-L3 duties as needed)
  • Analyzing threat intelligence feeds to develop metrics, alerts, and techniques to protect against new and emerging attack vectors
  • Develop metrics, thresholds, alerts, dashboards, and incident response playbooks
  • Drive the design and development of automated security response and maintenance solutions
  • Oversee our workstation vulnerability management & endpoint compliance program
What we offer
What we offer
  • Competitive salary
  • Comprehensive benefits package
  • Flexible work arrangements
  • Company equity
  • ESPP (Employee Stock Purchase Program)
  • Retirement or pension plan
  • Generous paid vacation time
  • Paid holidays and sick leave
  • Dutonian Wellness Days & HibernationDuty - companywide paid days off in addition to PTO
  • Paid parental leave: 22 weeks for pregnant parent, 12 weeks for non-pregnant parent
  • Fulltime
Read More
Arrow Right

Technology Services Engineer – Endpoint Protection

Immediate need for an Endpoint Protection Tech Services Engineer to work with a ...
Location
Location
United States , Alpharetta, Georgia
Salary
Salary:
Not provided
tier4group.com Logo
Tier4 Group
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 3+ years in an MSP or multi-tenant environment focused on endpoint security and patch management
  • Hands-on expertise with device management tools
  • Operational experience with EDR/XDR and vulnerability tools for Endpoints including policy tuning, incident handling, and containment
  • Intermediate PowerShell for automation and reporting
  • Solid fundamentals in Windows endpoint administration, AD/Entra device compliance, networking basics and change management
  • Clear, concise communication: comfortable leading client-facing security reviews and incident updates
Job Responsibility
Job Responsibility
  • Patch management at scale: Build ringed deployment strategies, pilots, and phased rollouts
  • schedule maintenance windows
  • handle approvals/rollback
  • track patch compliance SLAs across Windows (and macOS where applicable) via various ITSM tools
  • Application & driver updates: Package, test, and deploy third-party updates (e.g., browsers, runtimes)
  • manage superdense and compatibility issues
  • EDR/XDR operations: Deploy and maintain EDR/XDR
  • configure policies, prevention/visibility settings, exclusions, device control, and rules
  • monitor detections and contain/isolate endpoints
  • Threat hunting & investigations: Use ITSM tools (Advanced Hunting / KQL) to identify IOCs, suspicious behaviors, lateral movement, and persistence
What we offer
What we offer
  • Competitive salary
  • comprehensive benefits (medical, dental, vision, life, disability, 401(k) match)
  • robust PTO
  • Impactful work: your projects directly support the systems that power healthcare delivery
  • Close collaboration with experienced engineers and IT leaders across infrastructure, cloud, and security
  • Opportunity to shape and scale project delivery practices in a growing MSP environment
  • Fulltime
Read More
Arrow Right