Endpoint Security Engineer
Responsibilities:
- Lead vulnerability management initiatives across enterprise endpoints, ensuring timely remediation and compliance with security standards.
- Deploy security patches and remediation packages, reducing exposure to known threats.
- Manage and optimize device configurations for precise targeting and efficient patch deployment.
- Analyze vulnerabilities and propose tailored remediation strategies, improving resolution times and reducing risk.
- Collaborate with security teams to align remediation efforts with organizational policies and regulatory requirements.
- Monitor remediation progress and generate reports to track compliance and effectiveness of vulnerability mitigation.
- Provide advanced support for endpoint security issues, including troubleshooting of patch failures and system anomalies.
- Conduct root cause analysis for recurring vulnerabilities and recommend long-term solutions to prevent reoccurrence.
- Enhance endpoint hardening by implementing configuration baselines and security controls.
- Automate software deployment processes to accelerate delivery and reduce human error.
Qualifications:
- Bachelor's degree in Computer Science, Information Security, or a related field.
- Proven experience in endpoint security management, with a focus on vulnerability management and patch deployment.
- Strong knowledge of Microsoft System Center Configuration Manager (SCCM) or similar endpoint management tools.
- Strong knowledge of Microsoft Intune
- Proficiency in scripting languages such as PowerShell or VBA for automation.
- Familiarity with cloud environments such as Azure and Amazon AWS.
- Knowledge of security frameworks and compliance standards such as CIS benchmarks.
- Experience with Microsoft 365 administration and security.
- Experience with Active Directory administration and Group Policy management.
- Excellent troubleshooting and problem-solving skills.
- Strong communication and collaboration skills.
Bonus Points:
- Relevant certifications such as Microsoft Certified: Azure Fundamentals, Microsoft Certified: Security, Compliance, and Identity Fundamentals, Microsoft 365 Certified: Fundamentals, or Certified in Cybersecurity: ISC2.
- Experience with Workspace One.
- Experience with ServiceNow for dashboard creation and report generation.
- Experience with vulnerability scanning tools such as Tenable.
- Experience with solution such as Carbon Black, Zscaler, Ivanti Secure Access.