Job Summary:
We are seeking a highly skilled Endpoint Engineer to support and enhance cybersecurity automation processes. The successful candidate will be responsible for provisioning computing resources, software installations, managing network and firewall requests, and integrating backend security tools. This role requires expertise in automation, scripting, and endpoint security technologies, ensuring seamless operations and compliance with security standards.
Key Responsibilities:
- Automate and manage provisioning of computing resources, software installation, and account provisioning.
- Handle network/firewall requests and backend integrations with security tools such as PING, Splunk, SOAR, MyAccess, and Threat Intelligence Platform.
- Design, implement, and integrate cybersecurity tools, including EDR, NDR, XDR, SOAR, and MTD.
- Administer security systems such as SIEM, SOAR, DLP, UBA/UEBA to ensure enterprise-wide security.
- Develop automation scripts using Python, JavaScript, and Bash for system health checks, report consolidation, and operational efficiencies.
- Manage issue escalations and collaborate with internal and external teams to ensure timely resolution.
- Oversee the secure design and configuration of IT systems and infrastructure, ensuring compliance with regulatory security standards.
- Fulfill service requests related to enterprise security technologies, ensuring availability and functionality.
- Lead lifecycle management for assigned security platforms, including patching, upgrades, performance monitoring, and lifecycle planning.
- Prepare detailed support documentation for operational teams and facilitate smooth transition to production.
- Take ownership of assigned tasks/issues, ensuring timely resolution and closure.
- Provide technical consultation and advisory support to security teams on best practices and risk mitigation strategies.
- Demonstrate strong problem-solving, analytical, and interpersonal skills.
Requirements:
- Bachelor's degree in Computer Science, Information Technology, or a related field.
- Strictly 3 to 7 years of experience in designing, implementing, and integrating cybersecurity tools such as EDR, NDR, XDR, SOAR, MTD.
- Experience in administering various security systems, such as but not limited to SIEM, SOAR, DLP, UBA/UEBA.
- Must have experience in daily collaborative interaction with multiple stakeholders, including end users.
- Strong collaboration and troubleshooting skills on Endpoint
- Experience in troubleshooting cyber platforms and performing control changes.
- Strong hands-on experience with automation and scripting using Python, JavaScript, or Bash.
- Experience in automating daily operational tasks, system health checks, and report consolidation.
- In-depth knowledge of endpoint security technologies and enterprise security tools.
- Strong understanding of network security, firewall configurations, and backend integrations.
- Experience in service request fulfillment and troubleshooting security incidents.
- Ability to document security processes, system configurations, and operational procedures effectively.
- Preferred: IT security certifications such as CISSP, CISM, or equivalent
Job Summary:
We are seeking a highly skilled Endpoint Engineer to support and enhance cybersecurity automation processes. The successful candidate will be responsible for provisioning computing resources, software installations, managing network and firewall requests, and integrating backend security tools. This role requires expertise in automation, scripting, and endpoint security technologies, ensuring seamless operations and compliance with security standards.
Key Responsibilities:
- Automate and manage provisioning of computing resources, software installation, and account provisioning.
- Handle network/firewall requests and backend integrations with security tools such as PING, Splunk, SOAR, MyAccess, and Threat Intelligence Platform.
- Design, implement, and integrate cybersecurity tools, including EDR, NDR, XDR, SOAR, and MTD.
- Administer security systems such as SIEM, SOAR, DLP, UBA/UEBA to ensure enterprise-wide security.
- Develop automation scripts using Python, JavaScript, and Bash for system health checks, report consolidation, and operational efficiencies.
- Manage issue escalations and collaborate with internal and external teams to ensure timely resolution.
- Oversee the secure design and configuration of IT systems and infrastructure, ensuring compliance with regulatory security standards.
- Fulfill service requests related to enterprise security technologies, ensuring availability and functionality.
- Lead lifecycle management for assigned security platforms, including patching, upgrades, performance monitoring, and lifecycle planning.
- Prepare detailed support documentation for operational teams and facilitate smooth transition to production.
- Take ownership of assigned tasks/issues, ensuring timely resolution and closure.
- Provide technical consultation and advisory support to security teams on best practices and risk mitigation strategies.
- Demonstrate strong problem-solving, analytical, and interpersonal skills.
Requirements:
- Bachelor's degree in Computer Science, Information Technology, or a related field.
- Strictly 3 to 7 years of experience in designing, implementing, and integrating cybersecurity tools such as EDR, NDR, XDR, SOAR, MTD.
- Experience in administering various security systems, such as but not limited to SIEM, SOAR, DLP, UBA/UEBA.
- Must have experience in daily collaborative interaction with multiple stakeholders, including end users.
- Strong collaboration and troubleshooting skills on Endpoint
- Experience in troubleshooting cyber platforms and performing control changes.
- Strong hands-on experience with automation and scripting using Python, JavaScript, or Bash.
- Experience in automating daily operational tasks, system health checks, and report consolidation.
- In-depth knowledge of endpoint security technologies and enterprise security tools.
- Strong understanding of network security, firewall configurations, and backend integrations.
- Experience in service request fulfillment and troubleshooting security incidents.
- Ability to document security processes, system configurations, and operational procedures effectively.
- Preferred: IT security certifications such as CISSP, CISM, or equivalent