> Markdown version of [/jobs/ext/290320-senior-security-endpoint-engineer](https://www.wearedevelopers.com/jobs/ext/290320-senior-security-endpoint-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Security Endpoint Engineer - **Company:** Stefanini - **Location:** United States (Remote available) - **Experience:** Expert - **Salary:** $83,200.0 - $104,000.0 - **Contract:** Temporary to permanent - **Skills:** Bash Shell, Identity and Access Management, Intrusion Detection and Prevention, Python (Programming Language), Azure Active Directory, Zero Trust Network Access, Security Information and Event Management, Okta, Deployment Automation, Casper Suite, Gsuite, CIS Benchmarks, Splunk, Api Management - **Published:** May 31, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=730013d7d926613f ## About the Role Do you have experience in Endpoint Security?, * Endpoint Security Engineering: 3 years (Required) * JAMF Pro: 3 years (Required) * IAM Platforms: 3 years (Required) * EDR/XDR: 3 years (Required) ## Description * We're looking for a Senior Endpoint Security Engineer to own and evolve our endpoint security and identity ecosystem across a modern, cloud-first environment. * This is a high-impact role where you'll lead strategy and hands-on execution across: * macOS endpoint management (Jamf Pro) * Apple Business Manager * Identity platforms (Entra ID, Okta, Google Workspace) * EDR/XDR (CrowdStrike or similar, including managed SOC integrations) * You'll help drive Zero Trust architecture, automate device lifecycle management, and improve enterprise security posture at scale. What You'll Do * Endpoint Security (macOS-Focused) * Own and manage Jamf Pro for macOS fleet (configuration, compliance, patching) * Lead Apple Business Manager integration for automated device enrollment & lifecycle * Implement endpoint hardening (CIS benchmarks, encryption, policy enforcement) * Threat Detection & Response * Deploy & optimize CrowdStrike (or equivalent EDR/XDR) * Partner with MDR/MSSP providers for 24/7 threat coverage * Investigate alerts, tune detections, and improve response playbooks * Identity & Access (Zero Trust Enablement) * Integrate and manage: * Microsoft Entra ID (Azure AD) * Okta (SSO, MFA, lifecycle) * Google Workspace (existing identity layer) * Build conditional access policies tied to device posture * Enable seamless SSO and identity federation * Automation & Integration * Automate provisioning/deprovisioning across Jamf, Okta, Entra ID, Google Workspace * Build scripts (Python/Bash) and API integrations * Integrate with SIEM/SOAR platforms (e.g., Sentinel, Splunk) * Compliance & Governance * Support SOX / SOC 2 / ISO audit readiness * Maintain endpoint and identity security documentation * Deliver reporting on device compliance, vulnerabilities, and incidents ## Related Videos - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [ Secure Code Superstars: Empowering Developers and Surpassing Security Challenges Together](https://www.wearedevelopers.com/videos/422-secure-code-superstars-empowering-developers-and-surpassing-security-challenges-together) - [The Developer Workstation Blind Spot: Why Your Security Stack Can't See What Matters Most](https://www.wearedevelopers.com/videos/100254-the-developer-workstation-blind-spot-why-your-security-stack-can-t-see-what-matters-most) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers)