Endpoint Security Engineer

Insight Global
Suwanee, GA, United States
5 days ago
Apply on dejobs.org
Prepare application

Role details

Contract type
Temporary to permanent
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
10 years minimum
Compensation
$145,600.0 - $187,200.0
Working hours
Regular working hours
Job source

Tech stack

CompTIA Security+ Cyber Security Linux Software Deployment Software Vulnerability Management Windows Desktop EndPointSecurity Azure Security Center Tanium Platform Expertise Patch Management Server Operating Systems & Platforms

Job description

The Endpoint Security Engineer will serve as a technical owner for endpoint security operations and cyber hygiene across a large enterprise environment of approximately 50,000 managed endpoints. This individual will be responsible for maintaining the health, compliance, deployment, and performance of endpoint security tools, with a strong emphasis on Tanium and Microsoft Defender for Endpoint. The role focuses on enterprise-scale endpoint management, troubleshooting, compliance remediation, and process ownership rather than traditional SOC operations or incident response leadership.

This person will work closely with cybersecurity analysts, infrastructure teams, and endpoint management teams to ensure security controls remain operational, compliant, and effective. A key objective of this role is to reduce operational dependency on a single subject matter expert by taking ownership of established cyber hygiene processes, improving their consistency, and helping mentor junior team members.

Day to Day: - Monitor and maintain the health, performance, and compliance of endpoint security tools across approximately 50,000 managed endpoints - Administer and support Microsoft Defender for Endpoint and other endpoint security technologies - Use Tanium to query endpoints, deploy software, perform patching activities, and execute remediation efforts at enterprise scale - Investigate and resolve non-compliant, unmanaged, unhealthy, or non-reporting endpoints - Troubleshoot endpoint security agents, software deployments, operating system issues, and configuration inconsistencies - Identify root causes of endpoint compliance failures and develop remediation strategies - Support cyber hygiene initiatives by ensuring security tools remain installed, operational, and properly reporting - Evaluate endpoint health and validate that security products, services, processes, and configurations are functioning as expected - Partner with infrastructure, server, desktop engineering, and other IT teams to investigate issues potentially related to security tools or endpoint configurations - Provide technical support and guidance to SOC analysts regarding endpoint security tools and platform-related findings during investigations - Assist with enterprise patch management planning, testing, deployment, and validation through Tanium - Develop, maintain, and improve endpoint compliance metrics, reporting, and operational dashboards - Document operational procedures, troubleshooting steps, and remediation processes to improve team knowledge sharing - Take ownership of established cyber hygiene processes and identify opportunities to improve efficiency, consistency, and scalability - Help train, mentor, and coach junior team members to broaden endpoint management and cyber hygiene expertise across the team - Support change management processes and ensure endpoint changes are implemented in accordance with organizational standards - Collaborate on long-term improvements to the endpoint security program while maintaining ongoing operational responsibilities

Requirements

  • Strong experience within Cyber Security Operations within an enterprise environments - ideally 10+ years
  • Extensive experience with Tanium, specifically the core modules such as Patch, Deploy, Asset, Discover
  • Working knowledge of Microsoft Defender for Endpoint and endpoint detection technologies
  • Experience managing large- scale Windows desktop and server environments * This particular environment is around 50,000+ managed endpoints and 20,000 Chromebooks
  • Working knowledge of Linux
  • Experience identifying, troubleshooting, and remediating endpoint issues across large enterprise environments consisting of thousands of managed devices.
  • Endpoint security policy deployment and administration
  • Experience identifying and remediating unmanaged or unauthorized devices
  • Demonstrated experience taking ownership of established operational processes and improving their efficiency, consistency, and scalability.
  • Experience creating and maintaining custom IOCs within Microsoft Defender for Endpoint
  • Experience developing custom sensors, queries, or automation within Tanium
  • Experience mentoring junior engineers or analysts
  • Experience supporting large public sector, government, or education environments
  • Experience improving cyber hygiene or endpoint compliance programs
  • Security certifications (CISSP, GIAC, Security+, etc.)
  • Vulnerability management exposure

Benefits & conditions

This role is a 6 month contract with potential to extend based upon performance. The hourly rate for this role is between $70-$90/hr. Please note this range is subject to change and pay rate is determined upon a variety of factors.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dejobs.org
Prepare application

Good distractions

Loading talks and stories from around this role…