Endpoint Security & Exposure Engineer (Cyber Security)

Jacobs Engineering Group Inc.
Chicago, IL, United States
25 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Starter
Experience required
0 years minimum
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Active Directory Amazon Web Services Apple Mac Systems Microsoft Azure Cloud Computing Cloud Computing Security CompTIA Security+ Cyber Security Linux Python (Programming Language) Microsoft Security Essentials
+12 more
Windows Servers Windows PowerShell Zero Trust Network Access Software Vulnerability Management Google Cloud Microsoft InTune Azure Security Center CIS Benchmarks Api Management Qualys Servicenow Vulnerability Analysis

Job description

The Endpoint Security & Exposure Management Engineer is responsible for the design, implementation, administration, and continuous improvement of endpoint security controls and enterprise exposure management capabilities. This role focuses on reducing organizational cyber risk through effective application control, privilege management, vulnerability management, and remediation governance.

The successful candidate will serve as a technical subject matter expert for endpoint security technologies and exposure management platforms, within the Cybersecurity Engineering team, working closely with infrastructure, desktop engineering, application support, cloud, and wider IT teams to strengthen the organization’s security posture and ensure timely remediation of identified risks., Endpoint Security

  • Design, implement, and maintain endpoint security controls across Windows, Linux, and macOS environments.
  • Administer and optimize application control and application allowlisting solutions.
  • Develop and maintain privilege management policies based on Zero Trust and least-privilege principles.
  • Investigate and resolve endpoint security issues related to application execution, privilege elevation, and policy enforcement.
  • Collaborate with desktop engineering teams to develop secure endpoint standards and configurations.
  • Support endpoint hardening initiatives aligned with industry best practices and security frameworks.
  • Develop reporting and metrics to demonstrate endpoint security effectiveness and risk reduction.

Exposure Management & Vulnerability Management

  • Manage the enterprise vulnerability management lifecycle, including identification, assessment, prioritization, remediation, and validation.
  • Administer vulnerability scanning and assessment platforms across on-premises, cloud, and hybrid environments.
  • Analyze vulnerability findings and prioritize remediation activities based on risk, exploitability, asset criticality, and business impact.
  • Drive remediation efforts with infrastructure, application, cloud, and operations teams.
  • Monitor remediation performance against defined service level objectives and security policies.
  • Perform vulnerability trend analysis and identify recurring risk patterns.
  • Support attack surface reduction initiatives through proactive exposure identification and mitigation.
  • Administer and maintain ServiceNow Vulnerability Response.
  • Configure integrations between ServiceNow and vulnerability assessment platforms.
  • Develop and optimize vulnerability workflows, assignment rules, remediation tasks, and reporting.
  • Monitor remediation progress and ensure effective stakeholder engagement.
  • Create dashboards and executive-level reporting to communicate exposure trends and remediation performance.

Security Operations & Risk Management

  • Support security incident investigations involving vulnerable systems, unauthorized privilege use, or endpoint compromise.
  • Assess emerging vulnerabilities, threats, and security advisories to determine organizational impact.
  • Provide risk-based recommendations for remediation and compensating controls.
  • Participate in security assessments, audits, and compliance activities.
  • Contribute to cybersecurity standards, policies, and technical security roadmaps.
  • Act as a technical advisor for endpoint security and vulnerability management initiatives.

Requirements

  • Application control and allowlisting technologies
  • Privilege management solutions
  • Endpoint hardening methodologies
  • Zero Trust security principles
  • Least-privilege administration
  • Endpoint security architecture

Vulnerability & Exposure Management

  • Vulnerability assessment and management
  • Exposure management practices
  • Risk prioritization frameworks
  • Attack surface management
  • Patch and remediation management
  • Security risk analysis

Platforms & Technologies

  • Microsoft Windows Server and Windows 11
  • Linux operating systems
  • Active Directory and Entra ID
  • Microsoft Intune
  • Microsoft Defender for Endpoint
  • Cloud platforms (Azure, AWS, or Google Cloud)
  • ServiceNow Vulnerability Response

Scripting & Automation

  • PowerShell
  • Python
  • API integrations and workflow automation
  • Security reporting and dashboard development
  • Minimum 5 years of experience in cybersecurity, endpoint security, vulnerability management, or security engineering.
  • Hands-on experience administering application control and privilege management solutions.
  • Extensive experience managing enterprise vulnerability management programs.
  • Experience working with ServiceNow Vulnerability Response.
  • Experience using leading vulnerability management platforms such as:
  • Rapid7
  • Tenable
  • Qualys
  • Experience working within large enterprise environments.
  • Strong understanding of risk-based vulnerability management and remediation prioritization., * Experience implementing Zero Trust security controls.
  • Experience with endpoint detection and response (EDR) platforms.
  • Familiarity with security frameworks including:
  • NIST Cybersecurity Framework
  • CIS Controls
  • ISO 27001
  • NCSC Cyber Assessment Framework
  • Cyber Essentials Plus
  • Defence Cyber Certification, Levels 0-3
  • ACSC Essential Eight
  • Experience with cloud security and hybrid infrastructure environments.
  • Experience leading vulnerability remediation programs across multiple technology domains.

Preferred Certifications

  • CISSP
  • GIAC Security Certifications
  • CompTIA Security* Certified Information Security Manager (CISM)
  • ServiceNow Certified Implementation Specialist
  • Tenable Certified Professional
  • Qualys Certified Specialist
  • Microsoft Security Certifications

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dejobs.org

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

56 sec

Integrating automated approval workflows into the portal

Markus Eisele Markus Eisele · WWC 2025

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · WWC 2025

2:27 min

Establishing a simulated technical environment for the workflow demo

Tobias Dunn-Krahn · LIVE

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

2:12 min

Preparing engineering organizations for rapid vulnerability response and remediation

Milin Desai Milin Desai +3 · WWC Europe 2026

Videos

See all

Related articles

See all