CrawlJobs Logo

Senior Endpoint Security Engineer

United States, Lemont · Job Posted January 24, 2026
Apply Position
Job Link Share

Job Description

Our direct client is Endpoint Security Engineer who will be embedded within the endpoint engineering team (3 Windows engineers, 2 macOS engineers) to enhance security operations and strengthen the security posture of client workstations. You will work closely with endpoint engineering and cybersecurity teams to identify vulnerabilities, automate remediation, and strengthen endpoint security baselines in a large enterprise environment. Will assist in improving our endpoint cyber hygiene and vulnerability management program in collaboration with the CSPO.

Job Responsibility

  • Identify, analyze, and prioritize endpoint vulnerabilities using tools such as Tenable, Axonius, Jamf Pro, SCCM, Intune, Active Directory, and Entra
  • Assess environmental and operational factors that may impact remediation feasibility and timelines
  • Provide risk-based recommendations to improve the vulnerability management program
  • Develop, test, and deploy remediation scripts and configurations for Windows and macOS endpoints using tools such as Jamf, ConfigMgr/SCCM, Intune, and Group Policy
  • Write clear, maintainable scripts and automation (e.g., modular logic, meaningful naming, basic error handling and logging) that can be reused by the team
  • Document scripts and configurations with purpose, parameters, usage instructions, and any security considerations to support troubleshooting and cross-team adoption
  • Maintain an organized library of remediation artifacts
  • if applicable, help establish and use a version-controlled repository (e.g., Git) to track changes and support basic peer review
  • Contribute to secure baseline configurations aligned with Argonne CSPP, NIST 800-53 Rev 5, CIS Benchmarks, Microsoft Security Baselines, DISA STIGs, and/or macOS Security Compliance Project
  • Assist in development, testing, implementation, documentation of baseline configurations
  • Monitor baseline implementation for coverage, effectiveness, unapproved deviations, and required changes
  • Participate in regular team meetings to provide status updates, propose improvements, and discuss implementation strategies
  • Monitor endpoint compliance and provide reports on remediation effectiveness and baseline configurations to leadership and stakeholders

Requirements

  • Endpoint engineering expertise
  • Strong cyber security skills
  • Modern, secure coding practices
  • 3–5 years of experience in complex large enterprise environments
  • Hands-on expertise with SCCM, Jamf Pro, and/or Microsoft Intune for Windows and macOS endpoints
  • Experience packaging and deploying applications, security updates, and scripts across enterprise platforms
  • Familiarity with Group Policy and Intune for configuration management
  • Proficiency in automation scripting (PowerShell, Bash, Python) with emphasis on modular, reusable, and secure code
  • Experience with version control systems (Git) and collaborative development workflows (branching, pull requests, peer review)
  • Knowledge of CVE program, NIST Vulnerability Database, CISA Known Exploited Vulnerability Database, and overall vulnerability management processes
  • Experience implementing NIST 800-53 Rev 5, CIS Benchmarks, DISA STIGs, Microsoft Security Baselines, and macOS Security Compliance Project
  • Strong problem-solving skills with a focus on reducing organizational risk
  • Effective communication skills to convey technical concepts to both technical and non-technical stakeholders
  • Collaborative mindset for working within a mixed Windows/macOS engineering team

Looking for more opportunities?

Search for other job offers that match your skills and interests.

Similar Jobs for

Senior Endpoint Security Engineer

8 matching positions

Senior Endpoint Security Engineer

Join our team as a Senior Endpoint Security Engineer, where you will design, dep...
Location
Location
Romania , Cluj
Salary
Salary:
Not provided
nttdata.com Logo
NTT DATA
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Information Security, Computer Science, or a related field
  • Minimum 10 years of experience in endpoint protection engineering, particularly in Red Hat Linux, Windows, and virtualized environments
  • Hands-on experience with McAfee endpoint protection solutions, including ePO, VirusScan, Host Intrusion Prevention, and Drive Encryption
  • Strong understanding of endpoint security principles, malware protection, and threat detection
  • Familiarity with virtualization platforms such as VMware and Citrix
  • Scripting skills (e.g., PowerShell, Bash, Python) for automation and reporting
  • Knowledge of security frameworks and compliance standards (e.g., ISO 27001, NIST)
  • Excellent problem-solving and analytical skills
  • Strong communication and documentation abilities
Job Responsibility
Job Responsibility
  • Being responsible for the designing, deploying, configuring, and maintaining of endpoint protection solutions across Red Hat Enterprise Linux, Windows, and virtualized environments
  • Ensuring the security and integrity of enterprise endpoints, with a focus on solutions provided by McAfee or similar platforms
  • Deploying and configuring endpoint protection solutions across diverse operating systems and virtual environments
  • Managing and maintaining McAfee ePolicy Orchestrator (ePO) and related endpoint security tools
  • Monitoring endpoint security posture and responding to threats, vulnerabilities, and incidents
  • Collaborating with IT and security teams to define and enforce endpoint protection policies
  • Integrating endpoint protection with SIEM platforms and other security infrastructure
  • Automating routine tasks and reporting using scripts and management tools
  • Supporting compliance initiatives by ensuring endpoint configurations meet regulatory and internal standards
  • Providing technical support and troubleshooting for endpoint protection issues
What we offer
What we offer
  • Smooth integration and a supportive mentor
  • Choose from Remote, Hybrid or Office work opportunities
  • Different working hours to suit your needs
  • Sponsored certifications, trainings and top e-learning platforms
  • Private Health Insurance
  • Individual coaching sessions or accredited Coaching School
  • Epic parties or themed events
Read More
Arrow Right

Senior Technical Support Engineer - Endpoint Security (Cortex XDR/XSIAM)

As a Senior Technical Support Engineer for Focused Services - XDR, you will be a...
Location
Location
India , Bengaluru
Salary
Salary:
Not provided
paloaltonetworks.it Logo
Palo Alto Networks Italia
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Engineering, a related technical field, equivalent military experience, or equivalent practical experience
  • Relevant experience in a technical support, systems engineering, or similar role with a focus on customer service
  • Demonstrated experience with endpoint security technologies such as XDR, SOAR, or SIEM
  • Expertise in troubleshooting and debugging applications on Windows, Linux, and macOS operating systems
  • Strong experience with Microsoft environments (SCCM, GPO, AD, MSSQL, IIS) and a fundamental understanding of malware and exploits
Job Responsibility
Job Responsibility
  • Respond to and triage user-reported issues via ticketing system, phone, or remote sessions, adhering to established Service Level Agreements
  • Perform advanced, multi-level troubleshooting at the application and OS level to isolate and resolve complex technical problems
  • Collaborate effectively with development and other teams to identify fault areas (code, environment, configuration) and drive the implementation of fixes
  • Facilitate comprehensive root cause investigations and manage the implementation of corrective and preventative measures to prevent future occurrences
  • Proactively engage with customers to address Cortex XDR technical needs and provide escalation management for enterprise deployment issues
  • Document all actions and solutions meticulously in tracking systems and account-specific repositories to ensure alignment and knowledge sharing
  • Reproduce customer issues in a lab environment to assist developers in resolving technical challenges and provide timely product feedback
  • Fulltime
Read More
Arrow Right

Senior Security Engineer, Corporate Security

We are hiring a Senior Corporate Security Engineer to own and scale the security...
Location
Location
Salary
Salary:
Not provided
turnkey.com Logo
Turnkey
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of experience in corporate and/or enterprise security, IT security, or endpoint security engineering
  • Hands-on experience with: MDM Platforms (JAMF, Kandji, Intune, or similar)
  • EDR/XDR solutions (Cloudstrike, SentinelOne, Microsoft Defender, etc.)
  • Identity and Access Management (Okta, Azure AD/Entra ID, etc.)
  • Authentication Protocols (SAML, OAuth, OIDC, SCIM, etc.)
  • Zero-trust principles (device trust, conditional access, least-privilege models)
  • Cloud security experience (AWS, GCP)
  • macOS security expertise (architecture, hardening, and fleet management)
  • Security-first mindset with practical knowledge of defense-in-depth and risk-based security
Job Responsibility
Job Responsibility
  • Build & Secure Corporate Infrastructure: Design, implement, and manage security for endpoints and distributed systems
  • deploy and operate our security stack (MDM, EDR/XDR, ZTNA, SSO)
  • enforce zero-trust principles, least-privilege access, and hardening standards
  • Drive Security Initiatives & Risk Reduction: Lead initiatives around endpoint hardening, access controls, and vendor risk
  • conduct security design reviews, risk assessments, and vulnerability remediation
  • develop and enforce security policies and best practices.
  • Detection, Response & Automation: Respond to security incidents with urgency and technical depth
  • collaborate on detection rules, alerts, and monitoring
  • automate workflows and create runbooks and playbooks to scale security operations efficiently.
  • Foster Security Culture & Education: Evangelize security best practices, build awareness programs, and partner with teams to embed “secure by default” principles into workflows
What we offer
What we offer
  • Full benefits, including medical, dental, vision, life, disability, HSA/FSA, 401(k)
  • Paid parental leave
  • Unlimited PTO
  • $3,000/yr learning and development budget to attend industry conferences
  • Multiple team offsites per year
  • Macbook Pro laptop
  • Lunch stipend (for those physically in the New York City office)
  • Fulltime
Read More
Arrow Right

Senior Security Engineer

As a Senior SOC Engineer you will be responsible for monitoring, analysing and r...
Location
Location
Germany , Berlin
Salary
Salary:
Not provided
stepstone.de Logo
StepStone
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 10+ years of experience in a Security Operations Center (SOC) or similar role with hands-on experience with SIEM tools (e.g., Sentinel, QRadar, ArcSight)
  • Proficient in Python for automation and scripting
  • Strong understanding of Incident Response processes and methodologies and experience with MITRE ATT&CK framework to map and analyse threats
  • Knowledge of Endpoint Detection and Response (EDR) platforms (e.g., CrowdStrike, Carbon Black, SentinelOne)
  • Familiarity with threat hunting techniques and processes
  • Certifications such as GSEC, CISSP, OSCP, MaD are preferred
Job Responsibility
Job Responsibility
  • Analyse security data from diverse sources, including logs, EDR solutions, and network traffic, to identify and assess threats
  • Coordinate and lead security incident response efforts, including containment, eradication, and recovery
  • Develop and implement automation scripts and playbooks using Python to streamline incident detection, response, and reporting processes
  • Automate security alert triage, enrichment, and remediation workflows to reduce response time and improve efficiency
  • Use the MITRE ATT&CK framework to classify attack vectors, understand adversary behaviour, and enhance detection capabilities
  • Map security incidents and alerts to the MITRE ATT&CK tactics, techniques, and procedures (TTPs) for comprehensive analysis
  • Manage and configure EDR platforms for real-time endpoint monitoring and protection
What we offer
What we offer
  • 30 days of holidays + 2 extra days for Christmas and New Year's Eve
  • Hybrid working model
  • Company pension scheme
  • 24/7 Employee Assistance Programme
  • Life Assurance Cover
  • Volunteering days
  • Job bike
  • Discounted parking or job ticket
  • In-house gym
  • In-house barista
  • Fulltime
Read More
Arrow Right

Senior Security Engineer

As a Senior SOC Engineer you will be responsible for monitoring, analysing and r...
Location
Location
Germany , Düsseldorf
Salary
Salary:
Not provided
stepstone.de Logo
StepStone
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 10+ years of experience in a Security Operations Center (SOC) or similar role with hands-on experience with SIEM tools (e.g., Sentinel, QRadar, ArcSight)
  • Proficient in Python for automation and scripting
  • Strong understanding of Incident Response processes and methodologies and experience with MITRE ATT&CK framework to map and analyse threats
  • Knowledge of Endpoint Detection and Response (EDR) platforms (e.g., CrowdStrike, Carbon Black, SentinelOne)
  • Familiarity with threat hunting techniques and processes
Job Responsibility
Job Responsibility
  • Analyse security data from diverse sources, including logs, EDR solutions, and network traffic, to identify and assess threats
  • Coordinate and lead security incident response efforts, including containment, eradication, and recovery
  • Develop and implement automation scripts and playbooks using Python to streamline incident detection, response, and reporting processes
  • Automate security alert triage, enrichment, and remediation workflows to reduce response time and improve efficiency
  • Use the MITRE ATT&CK framework to classify attack vectors, understand adversary behaviour, and enhance detection capabilities
  • Map security incidents and alerts to the MITRE ATT&CK tactics, techniques, and procedures (TTPs) for comprehensive analysis
  • Manage and configure EDR platforms for real-time endpoint monitoring and protection
What we offer
What we offer
  • 30 days of holidays + 2 extra days for Christmas and New Year's Eve
  • Hybrid working model
  • Company pension scheme
  • 24/7 Employee Assistance Programme
  • Life Assurance Cover
  • Volunteering days
  • Job bike
  • Discounted parking or job ticket
  • In-house gym
  • In-house barista
  • Fulltime
Read More
Arrow Right

Information System Security Engineer - Senior

In support of a challenging, critical, and rewarding program that provides integ...
Location
Location
United States , Warrenton
Salary
Salary:
185000.00 USD / Year
amentum.com Logo
Amentum
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Must have active Top-Secret clearance with SCI or TS with the ability to acquire SCI
  • Knowledge and experience with NESSUS/ACAS and Trellix administration
  • Experience in Splunk role while working in a Splunk Clustered Environment
  • Must be able to work a 40-hour work week, normally Monday through Friday
  • Ability to work overtime during critical peaks and be available to meet last-minute requests for overtime if needed
  • Ability to travel (5-10%) primarily within 75 miles
  • Familiarity with MS Office applications such as Excel, Word, Outlook, SharePoint, Project, and Visio
  • Exceptional attention to detail
  • excellent verbal and written communication skills
  • strong critical thinking, organizational, time-management, and problem-solving skills
Job Responsibility
Job Responsibility
  • Endpoint Security Engineering (Trellix/ePO): Expertly design, configure, and maintain Trellix components (ePO, Trellix Agent, DLP, HIPS, Policy Auditor, ABM, and VSE) across Windows and Linux environments
  • Author and deploy endpoint security policies for ENS modules (Threat Prevention, Firewall, Web Control) based on DISA STIGs and organizational needs
  • Develop custom signatures, rules, and exceptions to address zero-day threats and specific operational requirements
  • Validate custom exceptions to ensure uninterrupted operation of mission-critical processes without compromising compliance
  • Vulnerability Management (ACAS/Nessus): Design enterprise-wide vulnerability scanning strategies and manage the deployment of Security Centers and Nessus scanners
  • Serve as the final escalation point for complex scan issues, credentialing problems, and system communication failures
  • Configure automated reporting of compliance data to continuous monitoring systems and risk-scoring repositories
  • Security Integration & Engineering: Integrate Trellix and ACAS with tools such as Splunk, XSOAR, and ServiceNow to automate workflows and enhance incident response
  • Provide authoritative recommendations and ACAS-generated artifacts to support the Assessment and Authorization (A&A) process and RMF packages for Authority to Operate (ATO)
  • Lead the maintenance and scalability of test, development, and operational environments, collaborating with Network and DevSecOps teams to enhance resilience
What we offer
What we offer
  • Health, dental, and vision insurance
  • Paid time off and holidays
  • Retirement benefits (including 401(k) matching)
  • Educational reimbursement
  • Parental leave
  • Employee stock purchase plan
  • Tax-saving options
  • Disability and life insurance
  • Pet insurance
  • Fulltime
Read More
Arrow Right

Senior Security Engineer

We are seeking a Senior Security Engineer to design, implement, and manage enter...
Location
Location
United States , Jacksonville
Salary
Salary:
Not provided
https://www.roberthalf.com Logo
Robert Half
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of experience in cybersecurity, security engineering, or related IT roles
  • Strong knowledge of security tools and technologies: SIEM platforms
  • Firewalls, IDS/IPS
  • Endpoint protection / anti-malware
  • Experience with: Cloud security (AWS, Azure, or GCP)
  • Network security and system hardening
  • Identity and access management (IAM) concepts
  • Understanding of cybersecurity frameworks (NIST, ISO, etc.)
  • Experience with vulnerability management and risk mitigation strategies
  • Knowledge of compliance standards (PCI, privacy regulations)
Job Responsibility
Job Responsibility
  • Design, deploy, and support secure systems aligned with business objectives and regulatory requirements
  • Develop and maintain security policies, standards, and best practices to improve overall security posture
  • Architect and support security infrastructure including: SIEM (Security Information and Event Management)
  • DLP (Data Loss Prevention)
  • IPS (Intrusion Prevention Systems)
  • Monitor and manage security systems, including provisioning, alerting, and incident response
  • Perform system validation, troubleshooting, and root cause analysis for security incidents
  • Conduct vulnerability assessments and partner with teams to implement remediation plans
  • Support system patching, maintenance, and security hardening initiatives
  • Collaborate with engineering, infrastructure, and business teams to integrate security into all projects
What we offer
What we offer
  • Medical, vision, dental, and life and disability insurance
  • 401(k) plan
  • Free online training
  • Fulltime
Read More
Arrow Right

Senior Security Engineer (DLP)

Shape global data protection strategies and make a massive impact on enterprise ...
Location
Location
Malaysia , Kuala Lumpur
Salary
Salary:
7000.00 - 10000.00 MYR / Month
https://www.randstad.com Logo
Randstad
Expiration Date
July 02, 2026
Flip Icon
Requirements
Requirements
  • Bachelor Degree
  • Strong hands-on expertise in Microsoft Purview for building and managing enterprise-wide security policies
  • Navigate and secure platforms including Endpoint, Exchange, SharePoint, OneDrive, and Teams
  • Design, deploy, and maintain complex data classification and auto-labeling frameworks
  • Investigate high-level data leakage alerts and troubleshoot complex, escalated security incidents
  • Lead technical initiatives, support compliance benchmarking, and provide actionable technical guidance to security teams
Job Responsibility
Job Responsibility
  • End-to-End Management: Drive the complete lifecycle of DLP policies across diverse enterprise platforms using Microsoft Purview
  • Proactive Classification: Build and maintain sensitivity labels and auto-labeling rules to guarantee data is secure by design right at creation
  • Advanced Incident Response: Lead investigations for data leakage alerts and serve as the ultimate escalation point for complex operational issues
  • Strategic Optimization: Continuously audit and fine-tune policies to silence the noise of false positives while strictly blocking high-risk data movement
  • Leadership & Development: Spearhead security projects, support compliance audits, and mentor junior analysts on advanced incident handling
Read More
Arrow Right