Cybersecurity Engineer - Endpoint

Roche
Madrid, Spain
5 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience required
3 years minimum
Working hours
Regular working hours
Languages
English

Tech stack

Microsoft Windows Apple Mac Systems ARM Architecture Configuration Management Cyber Security Data Security Linux File Systems Memory Management Github System Center Configuration Manager Performance Tuning
+14 more
Systems Development Life Cycle Ansible Software Engineering Git Microsoft InTune Azure Security Center Gitlab-ci Information Technology Deployment Automation Casper Suite Terraform Software Version Control Api Management Jenkins

Job description

At Roche you can show up as yourself, embraced for the unique qualities you bring.Our culture encourages personal expression, open dialogue, and genuine connections, where you are valued, accepted and respected for who you are, allowing you to thrive both personally and professionally.This is how we aim to prevent, stop and cure diseases and ensure everyone has access to healthcare today and for generations to come.Join Roche, where every voice matters.The PositionWe are looking for a highly skilled Cybersecurity Engineer responsible for protecting our digital footprint at the endpoint level.Our team manages critical security products across the enterprise, including Endpoint Detection and Response (EDR), Application Control, and Secure Data Erasure.Our team consists of deep subject matter experts in cybersecurity and we are looking for a driven, technically rigorous Security Engineer to join us.Your primary mission will be to maintain and evolve our security tools, bringing a modern, automation?first development mindset to our operational security practices to ensure optimal performance.Job ResponsibilitiesConfigure, deploy, and maintain our global Endpoint Detection and Response (EDR) solution across thousands of endpoints (Windows, macOS, and Linux) to ensure peak performance.Design, implement, and fine?tune Application Control policies (e.g., AppLocker, WDAC, or third?party equivalents) to ensure only trusted executables, scripts, and libraries run within our environment, balancing security with user productivity.Continuously evaluate to minimize false positives, optimize system performance, and improve the overall signal?to?noise ratio.Support the maintenance and auditing of our enterprise?grade secure data wiping services.Build scripts, tools, and API integrations that automate repetitive engineering tasks and deployment processes.Partner with other senior cybersecurity experts, translating their deep security requirements into scalable, automated technical solutions.QualificationsEducation / Experience:Bachelor’s degree in Computer Science, Software Engineering, Cybersecurity, or equivalent practical experience.3+ years of proven, hands?on experience managing EDR solutions (e.g., Cortex XDR, CrowdStrike, Microsoft Defender for Endpoint) in a large?scale enterprise environment.Proficiency in written and spoken English (C1 or above level).Technical SkillsGood fundamental understanding of enterprise cybersecurity, specifically around endpoint security (EDR/XDR platforms like Cortex XDR), application whitelisting, and secure data handling.Strong practical experience designing, rolling out, and maintaining Application Control/Whitelisting strategies across complex organizational structures.Strong understanding of operating system architectures, processes, memory management and filesystems (Windows, Linux, macOS).Excellent troubleshooting skills with the ability to dive into complex system logs to trace issues back to their root cause.Hands?on experience with configuration management and deployment tools (e.g., Ansible, Terraform, SCCM, Microsoft Intune, Jamf).Solid understanding of software development lifecycles (SDLC), version control (Git), and CI/CD pipelines (e.g., GitLab CI, Jenkins, GitHub Actions).Additional QualificationsYou look at a manual, repetitive IT task and immediately think about how to write a script to do it better and faster.Capable of troubleshooting complex deployment failures across varied endpoint environments.Comfortable working in a highly dynamic cybersecurity environment where priorities can shift based on emerging needs.Ability to collaborate effectively with internal and external teammates and stakeholders.Who we areA healthier future drives us to innovate.Together, more than 100,000 employees across the globe are dedicated to advance science, ensuring everyone has access to healthcare today and for generations to come.Our efforts result in more than 26 million people treated with our medicines and over 30 billion tests conducted using our Diagnostics products.We empower each other to explore new possibilities, foster creativity, and keep our ambitions high, so we can deliver life?changing healthcare solutions that make a global impact.Let’s build a healthier future, together.Roche is an Equal Opportunity Employer.#J-*****-Ljbffr

Requirements

Bachelor’s degree in Computer Science, Software Engineering, Cybersecurity, or equivalent practical experience. 3+ years of proven, hands?on experience managing EDR solutions (e.g., Cortex XDR, CrowdStrike, Microsoft Defender for Endpoint) in a large?scale enterprise environment. Proficiency in written and spoken English (C1 or above level). Technical Skills Good fundamental understanding of enterprise cybersecurity, specifically around endpoint security (EDR/XDR platforms like Cortex XDR), application whitelisting, and secure data handling. Strong practical experience designing, rolling out, and maintaining Application Control/Whitelisting strategies across complex organizational structures. Strong understanding of operating system architectures, processes, memory management and filesystems (Windows, Linux, macOS). Excellent troubleshooting skills with the ability to dive into complex system logs to trace issues back to their root cause. Hands?on experience with configuration management and deployment tools (e.g., Ansible, Terraform, SCCM, Microsoft Intune, Jamf). Solid understanding of software development lifecycles (SDLC), version control (Git), and CI/CD pipelines (e.g., GitLab CI, Jenkins, GitHub Actions)., You look at a manual, repetitive IT task and immediately think about how to write a script to do it better and faster. Capable of troubleshooting complex deployment failures across varied endpoint environments. Comfortable working in a highly dynamic cybersecurity environment where priorities can shift based on emerging needs. Ability to collaborate effectively with internal and external teammates and stakeholders.

About the company

At Roche you can show up as yourself, embraced for the unique qualities you bring. Our culture encourages personal expression, open dialogue, and genuine connections, where you are valued, accepted and respected for who you are, allowing you to thrive both personally and professionally. This is how we aim to prevent, stop and cure diseases and ensure everyone has access to healthcare today and for generations to come. Join Roche, where every voice matters., Who we are A healthier future drives us to innovate. Together, more than 100,000 employees across the globe are dedicated to advance science, ensuring everyone has access to healthcare today and for generations to come. Our efforts result in more than 26 million people treated with our medicines and over 30 billion tests conducted using our Diagnostics products. We empower each other to explore new possibilities, foster creativity, and keep our ambitions high, so we can deliver life?changing healthcare solutions that make a global impact. Let’s build a healthier future, together. Roche is an Equal Opportunity Employer. #J-*****-Ljbffr

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.buscojobs.com.es

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

6:21 min

Investigating push inefficiencies with upstream Git experts

Jonathan Creamer · Coffee With Developers

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · WWC 2025

6:36 min

Funding open source through GitHub Accelerator and Sponsors

Stormy Peters · WWC 2023

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

56 sec

Favorite git commands and the importance of patch commits

Eileen Uchitelle Eileen Uchitelle +1 · Coffee With Developers

Videos

See all

Related articles

See all