Sr. Endpoint Security Engineer

4 days ago


Lahore, Punjab, Pakistan SparkAi Full time

Job Designation: Endpoint Security Engineer

About the Role

The Endpoint Security Engineer is a critical role responsible for safeguarding endpoints, including

desktops, laptops, servers, and mobile devices, from cyber threats. This position involves

implementing, managing, and monitoring endpoint security solutions to protect against malware,

ransomware, data breaches, and other security incidents. The Endpoint Security Engineer will

work closely with the IT and security teams to develop and enforce security policies, conduct

vulnerability assessments, and respond to security incidents. This role requires a deep

understanding of endpoint security technologies, threat landscapes, and security best practices.

The Endpoint Security Engineer will also be responsible for staying up-to-date on the latest

security threats and trends, and for recommending and implementing new security measures to

protect our organization's endpoints.

Core Objective

The primary objective of the Endpoint Security Engineer is to ensure the confidentiality, integrity,

and availability of our organization's endpoint devices and the data they contain. This involves

implementing and maintaining endpoint security solutions, such as endpoint detection and

response (EDR) systems, antivirus software, and host-based firewalls. The Endpoint Security

Engineer will also be responsible for developing and enforcing security policies and procedures,

conducting security awareness training for employees, and responding to security incidents. This

role requires a proactive approach to security, with a focus on identifying and mitigating potential

threats before they can impact our organization. The Endpoint Security Engineer will also be

responsible for collaborating with other IT and security teams to ensure a coordinated and

effective security posture.

Core Responsibilities

Malicious Code Protection:

  • Implement and manage endpoint protection platforms (EPP) and endpoint detection and response (EDR) solutions
  • Configure and maintain antivirus software and malware protection mechanisms
  • Develop and enforce policies for malicious code detection and response
  • Monitor and analyze security alerts related to malware detection
  • Conduct regular testing of malware protection systems
  • Maintain signature databases and behavioral analysis rules
  • Implement signature-based and behavioral-analysis protection mechanisms
  • Configure automatic updates for malware protection systems
  • Perform weekly full-system scans and real-time scanning of external files
  • Block or quarantine detected malicious code
  • Configure alert notifications and logging
  • Conduct monthly testing of protection mechanisms

Security Configuration Management:

  • Establish and maintain baseline security configurations for all endpoint systems
  • Implement least privilege access controls and application whitelisting
  • Manage system hardening procedures and security standards compliance
  • Oversee configuration change management processes
  • Enforce security policies for software installation and system modifications
  • Document and maintain security configuration standards
  • Implement DoD STIG-compliant security configurations
  • Configure systems for mission-essential capabilities only
  • Enforce allow-list policies for software execution
  • Maintain baseline configurations
  • Document and track configuration changes
  • Implement least functionality principles

Patch, Vulnerability & Exposure Management:

  • Coordinate vulnerability scanning and assessment programs
  • Manage patch deployment and validation processes
  • Conduct risk assessments of identified vulnerabilities
  • Prioritize and track remediation efforts
  • Maintain vulnerability management documentation
  • Collaborate with vendors on security updates and patches
  • Assess and remediate vulnerabilities based on risk level
  • Follow established change control protocols
  • Review historical logs for compromise indicators
  • Maintain patch management documentation
  • Track remediation metrics and timelines
  • Validate security updates and patches

System Observability:

  • Monitor endpoint telemetry and system performance metrics
  • Analyze system health and security events
  • Generate and review security reports and metrics
  • Maintain inventory of hardware and software assets
  • Track system resource utilization and capacity
  • Collect and analyze security and operational telemetry
  • Monitor system processor, memory, and storage utilization
  • Monitor service performance and availability
  • Generate regular system health reports

Qualifications

  • Bachelor's degree in computer science, cybersecurity, or a related field.
  • 3 + years of experience in endpoint security engineering or a related role.
  • Strong understanding of endpoint security technologies, such as EDR, antivirus,
  • host-based firewalls, and System Configuration Baselines.
  • Experience with security policy development and enforcement.
  • Knowledge of vulnerability management and penetration testing techniques.
  • Experience with incident response and remediation.
  • Familiarity with security frameworks and standards, such as NIST, ISO, and CIS.
  • Excellent analytical and problem-solving skills.
  • Strong communication and interpersonal skills.

Success Metrics

  • Reduction in endpoint security incidents
  • Improved endpoint security posture
  • Compliance with security policies and regulations
  • Effective incident response and remediation
  • Positive feedback from stakeholders

Working Relationships

  • Reports to: Manager of Cybersecurity Engineering and Risk Management
  • Direct Reports: None
  • Collaborates with: Customer Experience Team, Project Management Team, Cybersecurity
  • Engineering Team
#J-18808-Ljbffr

  • Lahore, Punjab, Pakistan beBee Careers Full time

    Sr. Endpoint Security Engineer Job Summary:We are seeking an experienced Sr. Endpoint Security Engineer to join our team. The ideal candidate will have a strong background in endpoint security technologies and a proven track record of developing and enforcing security policies.The successful candidate will be responsible for safeguarding endpoints, including...

  • Network Security

    1 week ago


    Lahore, Punjab, Pakistan beBee Careers Full time

    Network Security & Endpoint Support SpecialistAbout the Role:We are seeking a highly skilled Network Security & Endpoint Support Specialist to join our team. The successful candidate will be responsible for managing our network infrastructure, enforcing internet policies, and resolving technical issues across devices.The ideal candidate will have a strong...


  • Lahore, Punjab, Pakistan beBee Careers Full time

    We are seeking a seasoned Azure Security Engineer to join our team. This role requires hands-on experience with Azure security measures, including App Service, Endpoint, Azure WAF, Key Vault, and storage account security. The ideal candidate should have expertise in designing and implementing security solutions, ensuring the confidentiality, integrity, and...


  • Lahore, Punjab, Pakistan beBee Careers Full time

    System Security EngineerWe are seeking an experienced System Security Engineer to join our IT infrastructure team. The ideal candidate will have deep technical expertise in managing and securing Microsoft 365 and Azure environments, with strong hands-on experience in endpoint security, device management, SIEM/SOAR systems, and network infrastructure.This...


  • Lahore, Punjab, Pakistan beBee Careers Full time

    Key Responsibilities:Development and maintenance of corporate cyber-security.Multiple projects related to corporate cybersecurity, such as implementation of new tools and policies, performing internal audits, and participating in issuing ISO27001 certification.Participation in incident response activities, including identifying, investigating, and mitigating...

  • Sr Software Engineer

    2 weeks ago


    Lahore, Punjab, Pakistan People Full time

    About the job Sr Software Engineer - AngularWe are looking for a Sr. Software Engineer (Angular) for People Tech having experience of 5+ years.Job Responsibilities:Development in ANGULAR along with CSS/HTML as per requirements.Enhancement and changing existing front end screens/reports, understanding requirements, and creating development estimations with...


  • Lahore, Punjab, Pakistan beBee Careers Full time

    Information Security Analyst – Technical ExpertThis role requires a hands-on technical expert specializing in security technologies across the enterprise.The successful candidate will be responsible for ensuring the security posture of various environments, including applications, databases, servers, endpoints, network infrastructures, and Microsoft cloud...


  • Lahore, Punjab, Pakistan Trilliuminfosec Full time

    Trillium Information Security Systems (TISS) | PermanentCyber Security Solution Support EngineerFounded in 2005, Trillium Information Security Systems (TISS) is Pakistan's first, and largest cybersecurity company. Today, Trillium has gained unrivaled expertise and experience; having delivered complex information assurance solutions to customers, performed...


  • Lahore, Punjab, Pakistan beBee Careers Full time

    Job Title: Cloud Security SpecialistWe are seeking an experienced Cloud Security Specialist to join our team. This role involves securing cloud environments using Azure security measures, including App Service, Endpoint, Azure WAF, Key Vault, and storage account security.


  • Lahore, Punjab, Pakistan beBee Careers Full time

    Job Title:Network & Endpoint Security SpecialistDescription:We are seeking a skilled Network & Endpoint Security Specialist to join our team. The ideal candidate will have a strong background in network administration and endpoint support.The role involves maintaining and troubleshooting internet connectivity, firewalls, switches, and VPNs. Additionally, the...