Host Security Engineer
Summary
Designs and implements enterprise security solutions for endpoints, OS, and infrastructure, evaluates new tech, and leads security projects with a focus on EDR/XDR, SIEM, and vulnerability management.
Host Security Engineer
Key Responsibilities
- Design and implement enterprise security solutions that improve protection across endpoints, operating systems, and infrastructure.
- Develop security standards, technical roadmaps, and best practices aligned with industry frameworks.
- Evaluate emerging security technologies and recommend solutions that reduce organizational risk.
- Lead security projects from planning and architecture through deployment, validation, and operational support.
- Collaborate with infrastructure, networking, cloud, and application teams to ensure security is incorporated into new technologies and business initiatives.
- Provide advanced troubleshooting and Tier III support for security platforms and enterprise security incidents.
- Conduct root cause analysis and recommend improvements to strengthen detection, response, and prevention capabilities.
- Support vulnerability management initiatives by identifying risks and assisting with remediation strategies.
- Participate in architecture reviews to ensure new technologies meet enterprise security requirements.
- Develop technical documentation, implementation standards, and operational procedures.
- Assist with automation and orchestration initiatives to improve security operations and response efficiency.
- Stay current on evolving cyber threats, attack techniques, and industry best practices.
Required Qualifications
- 7+ years of experience in Information Security, with experience supporting enterprise environments.
- Strong knowledge of endpoint security technologies, endpoint detection and response (EDR/XDR), antivirus, anti-malware, and host-based protection.
- Experience with vulnerability management across Windows, Linux, databases, and network infrastructure.
- Knowledge of SIEM platforms, log management, security monitoring, and threat detection.
- Experience supporting incident response and security investigations.
- Familiarity with automation and orchestration technologies used in modern Security Operations.
- Understanding of identity, authentication, and access control concepts.
- Experience evaluating and implementing enterprise security solutions.
- Ability to troubleshoot complex security issues and communicate technical findings effectively.
- Bachelor's degree in Computer Science, Information Security, or related field preferred. Relevant industry certifications may be considered in lieu of degree requirements.
Preferred Technical Skills
- Endpoint Security Platforms
- EDR/XDR Solutions
- SIEM & Log Analytics
- Vulnerability Management
- Threat Detection & Response
- Security Automation
- Operating System Security
- File Integrity Monitoring
- Mobile Device Security
- Incident Response
- Security Architecture
- Enterprise Infrastructure Security
- Endpoint Security (EDR/XDR, Defender, CrowdStrike, Tanium, SentinelOne)
- SIEM & Security Monitoring (Splunk, Microsoft Sentinel, QRadar)
- Vulnerability Management (Tenable, Qualys, Rapid7, remediation lifecycle)