CrawlJobs Logo

Endpoint Security Engineer

myticas.com Logo

Myticas Consulting

Location Icon

Location:
United States , Lemont

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

BIS-EE is seeking a full-time Endpoint Security Engineer to assist in improving our endpoint cyber hygiene and vulnerability management program in collaboration with the CSPO. The Endpoint Security Engineer (contractor) will be embedded within the endpoint engineering team (3 Windows engineers, 2 macOS engineers) to enhance security operations and strengthen the security posture of client workstations.

Job Responsibility:

  • Identify, analyze, and prioritize endpoint vulnerabilities using tools such as Tenable, Axonius, Jamf Pro, SCCM, Intune, Active Directory, and Entra
  • Assess environmental and operational factors that may impact remediation feasibility and timelines
  • Provide risk-based recommendations to improve the vulnerability management program
  • Develop, test, and deploy remediation scripts and configurations for Windows and macOS endpoints using tools such as Jamf, ConfigMgr/SCCM, Intune, and Group Policy
  • Write clear, maintainable scripts and automation (e.g., modular logic, meaningful naming, basic error handling and logging) that can be reused by the team
  • Document scripts and configurations with purpose, parameters, usage instructions, and any security considerations to support troubleshooting and cross-team adoption
  • Maintain an organized library of remediation artifacts
  • if applicable, help establish and use a version-controlled repository (e.g., Git) to track changes and support basic peer review
  • Contribute to secure baseline configurations aligned with Argonne CSPP, NIST 800-53 Rev 5, CIS Benchmarks, Microsoft Security Baselines, DISA STIGs, and/or macOS Security Compliance Project
  • Assist in development, testing, implementation, documentation of baseline configurations
  • Monitor baseline implementation for coverage, effectiveness, unapproved deviations, and required changes
  • Participate in regular team meetings to provide status updates, propose improvements, and discuss implementation strategies
  • Monitor endpoint compliance and provide reports on remediation effectiveness and baseline configurations to leadership and stakeholders

Requirements:

  • Endpoint Management Platform Expertise: Hands-on experience with SCCM (System Center Configuration Manager), Jamf Pro, and/or Microsoft Intune for managing and securing Windows and macOS endpoints in an enterprise environment
  • Vulnerability Management & Analysis: Proven ability to identify, analyze, and remediate endpoint vulnerabilities using tools like Tenable, Axonius, and native platform tools (Jamf, SCCM, Intune), with knowledge of frameworks such as NIST 800-53 and CIS Benchmarks
  • Scripting & Automation Proficiency: Strong scripting skills in PowerShell, Bash, and/or Python, with experience developing modular, reusable, and secure automation for endpoint remediation and configuration management
  • Secure SDLC & Documentation Practices: Experience with secure software development lifecycle (SDLC) practices, version control (Git), and creating clear documentation for scripts, configurations, and remediation procedures to ensure maintainability and cross-team adoption
  • Security Framework & Compliance Knowledge: Understanding of NIST 800-53 Rev 5, CIS Benchmarks, DISA STIGs, and Microsoft Security Baselines, with the ability to implement and monitor secure baseline configurations aligned with organizational and regulatory standards
  • Endpoint Management: Hands-on expertise with SCCM, Jamf Pro, and/or Microsoft Intune for Windows and macOS endpoints
  • Experience packaging and deploying applications, security updates, and scripts across enterprise platforms
  • Familiarity with Group Policy and Intune for configuration management
  • Secure Coding & SDLC Practices: Proficiency in automation scripting (PowerShell, Bash, Python) with emphasis on modular, reusable, and secure code
  • Strong grasp of SDLC principles: requirements gathering, design, implementation, testing, deployment, and maintenance
  • Experience with version control systems (Git) and collaborative development workflows (branching, pull requests, peer review)
  • Ability to document code and remediations clearly for cross-team adoption and knowledge transfer
  • Security Frameworks & Compliance: Knowledge of CVE program, NIST Vulnerability Database, CISA Known Exploited Vulnerability Database, and overall vulnerability management processes
  • Experience implementing NIST 800-53 Rev 5, CIS Benchmarks, DISA STIGs, Microsoft Security Baselines, and macOS Security Compliance Project
  • Ability to translate technical fixes into measurable improvements in endpoint security posture
  • Experience using Tenable.SC or Tenable.VM as part of vulnerability management
  • Soft Skills: Strong problem-solving skills with a focus on reducing organizational risk
  • Effective communication skills to convey technical concepts to both technical and non-technical stakeholders
  • Collaborative mindset for working within a mixed Windows/macOS engineering team
  • Must be a US Citizen
  • 3–5 years of experience in complex large enterprise environments

Additional Information:

Job Posted:
March 03, 2026

Employment Type:
Fulltime
Work Type:
Remote work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Endpoint Security Engineer

Endpoint Security Engineer

The Endpoint Security Engineer is a customer-facing role responsible for ensurin...
Location
Location
Ireland , Galway
Salary
Salary:
Not provided
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Extensive cyber and IT security expertise including hands-on experience designing and implementing endpoint security controls at scale
  • deep hands-on expertise with a leading EDR platform (e.g. CrowdStrike Falcon, SentinelOne) in an enterprise environment
  • expert-level knowledge of Windows, macOS, and Linux operating systems and security features
  • advanced experience with cloud-hosted endpoints including a strong understanding of core Kubernetes concepts like Pods, Nodes, Namespaces, Deployments, and Daemon Sets
  • proficiency in scripting languages for automation and analysis (e.g., Python, PowerShell, Bash)
  • strong understanding of network protocols and host-based firewalls
  • experience with the technical delivery of projects ensuring successful implementation and deployment
  • fluent in English
Job Responsibility
Job Responsibility
  • Provide expert end-to-end technical troubleshooting for complex issues across Windows, Linux, Mac, and Cloud environments
  • manage the deployment and monitoring of Falcon sensors across various operating systems
  • configure and manage deployment and prevention policy settings
  • work collaboratively with Security Analysts and Incident Responders
  • create and maintain documentation for CrowdStrike configuration, processes, and best practices
  • assist in the overall security strategy for endpoints
  • lead configuration and management of EDR platforms and other enterprise security tools
  • work closely with IT, Network, and System Administration teams to integrate security solutions into the IT infrastructure
  • provide security recommendations for endpoint configuration
  • provide technical support and training to end-users
What we offer
What we offer
  • Comprehensive suite of benefits supporting physical, financial, and emotional wellbeing
  • programs catered to career development
  • unconditional inclusion
  • flexible work environment
Read More
Arrow Right

Principal Security Engineer

We’re building a world-class global Security team as part of our Trust Program. ...
Location
Location
India , Hyderabad
Salary
Salary:
Not provided
highspot.com Logo
Highspot
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 10+ years of robust, progressive experience in security engineering, application security, DevSecOps, incident detection and response, or closely related fields
  • Advanced proficiency in at least one programming language (Python, Ruby, Go, Rust, JavaScript), with deep experience conducting detailed code reviews and security assessments across multiple languages
  • Hands-on experience with deploying, operating, and interpreting results from security tools such as static analyzers, web vulnerability scanners, supply chain analysis scanners, and host-based intrusion detection systems
  • Demonstrated experience mentoring, coaching and guiding junior and mid-level security engineers, contributing to a strong team culture, and supporting peer development as a senior individual contributor
  • Demonstrated proactive approach, strong continuous learning orientation, and curiosity about emerging threats, security trends, and innovative technologies
  • Extensive expertise securing cloud-native environments (AWS, Azure, GCP, containers, microservices), with in-depth knowledge of modern cloud security risks and defenses
  • Demonstrated ability to embrace being wrong, practice humility, continuously learn from experiences, and actively seek insights through thoughtful questioning and collaboration
Job Responsibility
Job Responsibility
  • Lead comprehensive application security assessments, advanced threat modeling sessions, and secure code reviews across critical product features, internal tooling, endpoints, and third-party integrations
  • Collaborate strategically with product engineering to establish and enhance secure-by-default and privacy-by-design practices within the software development lifecycle (SDLC)
  • Lead and otherwise participate in incident detection, investigation, triage, containment, and root cause analysis for high impact security incidents, providing mentorship and guidance to junior engineers as required
  • Drive the development and continuous improvement of sophisticated detection rules, response automation, and optimized alert management across cloud environments, corporate infrastructure, and SaaS platforms
  • Lead and participate in complex vulnerability remediation processes, and effectively respond to security issues discovered by both internal teams and external sources
  • Document technical findings and strategic decisions in a clear and accessible manner, and procedural enhancements
  • significantly contribute to comprehensive security playbooks and knowledge repositories
  • Manage and oversee asksecurity@ request handling, and actively participate in sprint-based security activities, balancing strategic and tactical execution
  • Actively participate in the security on-call rotation, or provide senior-level guidance as required during an event and aid in rapid response capabilities to protect our 24x7 platform and global workforce
  • Fulltime
Read More
Arrow Right

Sr. Infrastructure Security Engineer

As a Sr. Infrastructure Security Engineer, you will be responsible for protectin...
Location
Location
United States , West Point
Salary
Salary:
84410.00 - 129987.00 USD / Year
haeaus.com Logo
Hyundai AutoEver America
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in computer science, Information Systems, or related field, or equivalent experience and certifications
  • Ability to script using Python
  • 7+ years of experience in Security Engineering, including planning and operations
  • Advanced knowledge of security technologies in medium to complex computing environments
  • Hands-on experience with multiple enterprise security technologies (e.g., firewalls, VPNs, intrusion detection/prevention, endpoint security)
  • Strong understanding of server/network architecture and core networking concepts (e.g., routing, DNS, DHCP)
Job Responsibility
Job Responsibility
  • Design and Deploy Security Solutions: Build, test, and implement new security technologies, including creating operational manuals and runbooks
  • Operate and Optimize Security Systems: Maintain and improve existing security tools such as DLP, Antivirus, IPS/IDS, and Endpoint Protection, while automating monitoring and enforcement processes
  • Conduct Risk Assessments and Incident Response: Lead or support technical risk evaluations and respond to security incidents, ensuring thorough remediation and reporting
  • Collaborate and Advise: Work with internal and external stakeholders to identify security needs, recommend solutions, and stay current with evolving technologies
  • Monitor and Report: Continuously monitor infrastructure for threats, produce security reports for senior leadership, and implement changes following established procedures
  • Fulltime
Read More
Arrow Right

Security Engineer

Airspace Link is seeking a Security Engineer to support the security posture of ...
Location
Location
United States , Detroit
Salary
Salary:
Not provided
airspacelink.com Logo
Airspace Link
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 2–5 years of experience in security engineering, cloud security, SOC/IR operations, or related hands-on security roles
  • Working knowledge of Azure security concepts and Microsoft cloud security tools
  • Practical experience with: Microsoft Defender for Cloud, Endpoint, Identity, and Cloud Apps
  • Microsoft Sentinel (KQL querying, incident investigation, dashboards)
  • Microsoft Intune / Endpoint Manager (MDM/MAM)
  • Microsoft Purview (DLP and compliance tooling)
  • Hands-on experience supporting vulnerability remediation with engineering teams
  • Familiarity with Terraform, secure CI/CD practices, and cloud configuration management
  • Strong written and verbal communication skills with the ability to collaborate cross-functionally
Job Responsibility
Job Responsibility
  • Assist with implementing and maintaining security controls within Azure and SaaS environments
  • Support the incident response lifecycle, including initial investigation, coordination with engineering, and documentation of remediation actions
  • Monitor, tune, and assist in the operation of the Microsoft Defender suite (Defender for Cloud, Endpoint, Identity, Cloud Apps, and Vulnerability Management)
  • Support mobile device management (MDM) and endpoint compliance using Microsoft Intune and Endpoint Manager
  • Partner with engineering teams to identify, prioritize, and track remediation of vulnerabilities across applications, cloud infrastructure, and CI/CD pipelines
  • Help implement and maintain Entra ID Conditional Access and Privileged Identity Management (PIM)
  • Assist in integrating DevSecOps guardrails within Azure DevOps and GitHub pipelines (e.g., CodeQL, IaC scanning, secret governance)
  • Participate in developing dashboards and analytics in Microsoft Sentinel, including KQL queries and incident correlation support
  • Contribute to threat modeling and risk assessments as part of project reviews
  • Support the creation and upkeep of security configuration baselines, Terraform modules, and policy templates
  • Fulltime
Read More
Arrow Right

End Point Security Senior Engineer

Senior Engineer role focused on endpoint security implementation and maintenance...
Location
Location
India , Noida
Salary
Salary:
Not provided
https://www.soprasteria.com Logo
Sopra Steria
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Hands-on experience with EDR/XDR platforms such as Microsoft Defender for Endpoint or Sentinel One
  • Familiarity with vulnerability management tools
  • Knowledge of endpoint technologies including BitLocker, Application control, Endpoint privilege management, Windows Defender Firewall
  • Understanding of endpoint threat intelligence and ability to analyze threat data
  • Scripting or automation experience using PowerShell or other scripting languages
  • Total Experience Expected: 02-06 years
  • B.tech/BE/BCA qualification
Job Responsibility
Job Responsibility
  • Implement and maintain endpoint security solutions such as EDR, antivirus, encryption, and application control tools
  • Monitor, analyze, and respond to security alerts and incidents originating from workstations and endpoints
  • Apply and manage workstation hardening standards, including adherence to security baselines
  • Conduct vulnerability assessments on endpoints and coordinate timely remediation activities
  • Manage patch deployment for operating systems and applications to ensure compliance with internal policies and reduce exposure to threats
  • Ensure endpoint systems comply with security policies, standards, and regulatory frameworks
  • Actively participate in incident response efforts related to endpoint breaches or malware incidents
  • Contribute to risk assessments and provide input during security architecture reviews related to endpoints
  • Maintain a strong understanding of Windows and macOS operating systems from a security perspective
  • Fulltime
Read More
Arrow Right

Security Engineer II

PagerDuty is seeking an Enterprise Security Engineer to join its global IT Opera...
Location
Location
Canada , Toronto
Salary
Salary:
122000.00 - 185000.00 CAD / Year
https://www.pagerduty.com Logo
PagerDuty
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • At least 3 years of experience in the information security industry, with 2+ years in network security or zero-trust, and 2+ years in security architecture or solution experience
  • Knowledge of Information Security concepts, especially in the areas of security threats, analyzing security logs and driving Incident response
  • Knowledge and practical experience in network security and zero-trust
  • Understanding of the IAM cybersecurity landscape, including identity stores, authentication/authorization, strong authentication, and privileged access management capabilities and methodologies
  • Understanding of security technologies and concepts, including SIEM, MDR/XDR, EDR and vulnerability management
  • Understanding of security best practices and frameworks (e.g., MITRE ATT&CK, NIST Cybersecurity Framework)
  • Knowledge of incident response processes
Job Responsibility
Job Responsibility
  • Partner closely with CISO organization to design and implement enterprise IT security architectures and solutions
  • Tracking the evolution of cutting-edge security technologies, and keeping up to date of the latest security threats and trends
  • Focus on enterprise security and zero-trust technology, serving as the principal technical expert in this area within the Enterprise Security department
  • Monitors security alerts and leads the team in identifying and responding to security threats
  • Monitors systems for vulnerabilities, provides prioritization, and drives remediation efforts
  • Working cross-functionally to triage suspicious activity and drive remediation (performing L2-L3 duties as needed)
  • Analyzing threat intelligence feeds to develop metrics, alerts, and techniques to protect against new and emerging attack vectors
  • Develop metrics, thresholds, alerts, dashboards, and incident response playbooks
  • Drive the design and development of automated security response and maintenance solutions
  • Oversee our workstation vulnerability management & endpoint compliance program
What we offer
What we offer
  • Competitive salary
  • Comprehensive benefits package
  • Flexible work arrangements
  • Company equity
  • ESPP (Employee Stock Purchase Program)
  • Retirement or pension plan
  • Generous paid vacation time
  • Paid holidays and sick leave
  • Dutonian Wellness Days & HibernationDuty - companywide paid days off in addition to PTO
  • Paid parental leave: 22 weeks for pregnant parent, 12 weeks for non-pregnant parent
  • Fulltime
Read More
Arrow Right

Technology Services Engineer – Endpoint Protection

Immediate need for an Endpoint Protection Tech Services Engineer to work with a ...
Location
Location
United States , Alpharetta, Georgia
Salary
Salary:
Not provided
tier4group.com Logo
Tier4 Group
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 3+ years in an MSP or multi-tenant environment focused on endpoint security and patch management
  • Hands-on expertise with device management tools
  • Operational experience with EDR/XDR and vulnerability tools for Endpoints including policy tuning, incident handling, and containment
  • Intermediate PowerShell for automation and reporting
  • Solid fundamentals in Windows endpoint administration, AD/Entra device compliance, networking basics and change management
  • Clear, concise communication: comfortable leading client-facing security reviews and incident updates
Job Responsibility
Job Responsibility
  • Patch management at scale: Build ringed deployment strategies, pilots, and phased rollouts
  • schedule maintenance windows
  • handle approvals/rollback
  • track patch compliance SLAs across Windows (and macOS where applicable) via various ITSM tools
  • Application & driver updates: Package, test, and deploy third-party updates (e.g., browsers, runtimes)
  • manage superdense and compatibility issues
  • EDR/XDR operations: Deploy and maintain EDR/XDR
  • configure policies, prevention/visibility settings, exclusions, device control, and rules
  • monitor detections and contain/isolate endpoints
  • Threat hunting & investigations: Use ITSM tools (Advanced Hunting / KQL) to identify IOCs, suspicious behaviors, lateral movement, and persistence
What we offer
What we offer
  • Competitive salary
  • comprehensive benefits (medical, dental, vision, life, disability, 401(k) match)
  • robust PTO
  • Impactful work: your projects directly support the systems that power healthcare delivery
  • Close collaboration with experienced engineers and IT leaders across infrastructure, cloud, and security
  • Opportunity to shape and scale project delivery practices in a growing MSP environment
  • Fulltime
Read More
Arrow Right

End Point Security Engineer

End Point Security Engineer position focusing on McAfee/Trellix security product...
Location
Location
India , Noida
Salary
Salary:
Not provided
https://www.soprasteria.com Logo
Sopra Steria
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Hands-on experience with complete Trellix lifecycle management including installations, deployments, upgrades, and performance optimization
  • Good knowledge and skills in threat hunting, incident response, custom rule development, database management, and creating executive dashboards with compliance reporting capabilities
  • Supports the customer through, or performs, product configuration of average complexity
  • Able to support & manage the production launch, the optimization, and the deployment
  • Co-facilitates and participate in client meetings and working closely with customers
  • Available for customer assistance and support assignments in their field without supervision
  • Security Product Management - Data Security & Antivirus Management, like Trellix (formerly McAfee), Defender, TrendMicro etc
  • Vulnerability management - Fair knowledge on vulnerability management concepts
  • Mitigation - thinking analytically and executing efficiently
  • Analyze and optimize orchestration and automation between security tools
Job Responsibility
Job Responsibility
  • Hands-on experience with complete Trellix lifecycle management
  • Threat hunting and incident response
  • Custom rule development and database management
  • Creating executive dashboards with compliance reporting capabilities
  • Product configuration in alignment with customer requirements
  • Support and manage production launch, optimization, and deployment
  • Co-facilitate and participate in client meetings
  • Customer assistance and support assignments
What we offer
What we offer
  • Commitment to fighting against all forms of discrimination
  • Inclusive and respectful work environment
  • Positions open to people with disabilities
  • Fulltime
Read More
Arrow Right