Job Title: Senior Endpoint Cybersecurity Engineer
Location: Remote (EST time zone)
Day to Day job Duties: (what this person will do on a daily/weekly basis)
• Design, deploy, configure, and maintain enterprise endpoint security solutions across workstations and servers.
• Administer and optimize EDR, EPP, endpoint protection, and deception technologies.
• Configure and tune endpoint security policies, detection rules, prevention controls, exclusions, and automated response actions.
• Monitor endpoint telemetry and investigate suspicious activity, malware, security alerts, and indicators of compromise.
• Partner with SOC and Incident Response teams to investigate, contain, remediate, and close endpoint security incidents.
• Develop and tune detection logic based on threat intelligence, emerging attack techniques, and MITRE ATT&CK.
• Identify and reduce false positives while maintaining effective endpoint detection and prevention coverage.
• Troubleshoot endpoint agents, policies, connectivity, telemetry, and deployment issues.
• Integrate endpoint security platforms with SIEM, SOAR, threat intelligence, IAM, and vulnerability management tools.
• Support threat hunting, endpoint hardening, vulnerability remediation, and Zero Trust security initiatives.
• Evaluate new endpoint security technologies, participate in vendor assessments, and support proof-of-concept activities.
• Maintain endpoint security standards, architecture documentation, procedures, and operational runbooks.
• Mentor junior engineers and communicate security risks, incidents, and remediation recommendations to technical and business stakeholders.
Basic Qualifications: (what are the skills required to this job with minimum years of experience on each)
• Minimum 8+ years of experience in Cybersecurity, Information Security, Security Engineering, or Endpoint Security.
• Minimum 5+ years of hands-on experience with enterprise endpoint security technologies.
• Minimum 3+ years of experience with EDR/EPP platforms, endpoint detection, threat hunting, or incident response.
• Hands-on experience with CrowdStrike, Microsoft Defender, SentinelOne, Trellix, Carbon Black, or similar platforms.
• Strong knowledge of endpoint security, malware, ransomware, threat detection, incident response, and endpoint hardening.
• Minimum 3+ year’s Experience with MITRE ATT&CK, SIEM/SOAR, threat intelligence, and security monitoring.
• Working knowledge of Windows and Linux security and endpoint architecture.
• Minimum 3+ years Experience with PowerShell, Python, Bash, or similar scripting/automation tools.
• Understanding of Zero Trust, vulnerability management, security controls, and enterprise risk management.
• Strong analytical, troubleshooting, documentation, communication, and stakeholder-management skills.
• Ability to explain previous projects covering security requirements, technical contribution, challenges, and delivered outcomes.
Travel: NA
Degree:
Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related field, or equivalent experience.