Introduction
The Endpoint Security Engineer is responsible for designing, implementing, and managing endpoint protection solutions to safeguard enterprise environments from cyber threats. This role requires a strong understanding of endpoint security, threat detection and response, device hardening, and integration with broader enterprise security controls. The engineer will work closely with SOC, infrastructure, and application teams to ensure secure and compliant operations across endpoint devices in both on-premise and cloud environments.
Your Role And Responsibilities
As a Endpoint Security Engineer, you play a critical role in strengthening enterprise security by designing, implementing, and managing endpoint protection and security operations capabilities. You work closely with stakeholders to identify vulnerabilities, mitigate risks, and enhance overall security posture.
- Design, deploy, and manage endpoint security solutions (EDR/XDR, antivirus, and device control).
- Monitor and analyse endpoint activity to detect, investigate, and respond to security threats.
- Perform proactive threat hunting and endpoint-focused investigations to identify advanced threats.
- Troubleshoot and resolve endpoint security issues, including malware infections, agent failures, and policy conflicts.
- Conduct regular health checks, upgrades, and performance tuning of endpoint security tools and agents.
- Support incident response through endpoint containment, forensics, root cause analysis, and remediation.
- Integrate endpoint security solutions with SIEM and other security platforms for improved visibility and response.
Required Technical And Professional Expertise
- Experience with endpoint security tools such as CrowdStrike, Trend Micro, Microsoft Defender for Endpoint, or similar solutions.
- Strong understanding of operating systems (Windows, macOS, Linux) and endpoint configurations.
- Hands-on experience with threat detection, incident response, and remediation in endpoint environments.
- Familiarity with EDR/XDR technologies, including alert triage, investigation, and threat hunting.
- Knowledge of endpoint hardening, patch management, and integration with SIEM or other security platforms.
Preferred Technical And Professional Experience
- Hands-on experience with endpoint security tools such as CrowdStrike, Trend Micro, Microsoft Defender for Endpoint, or similar solutions.
- Experience with advanced threat hunting, endpoint forensics, and incident response in enterprise environments.
- Familiarity with integrating endpoint security solutions with SIEM/SOAR platforms and automating security operations.