Remote job
Endpoint Security Engineer
Job details
About this role
Role overview An Endpoint Security Engineer is needed to safeguard corporate workstations, production servers, and critical infrastructure. The role centers on deploying and tuning endpoint protection tooling, maintaining OS hardening baselines, and partnering with IT, Cyber Defense, IAM, and Compliance teams to keep coverage measurable and risk low.
Responsibilities - Deploy, operate, and tune endpoint security controls such as EDR/XDR, EPP, and MDM across workstations, servers, and critical systems. - Implement and maintain hardening baselines for Windows, Linux, and macOS based on CIS Benchmarks, DISA STIG, and internal policy. - Monitor endpoint telemetry, investigate security events, and identify potential incidents. - Support vulnerability remediation, patching, and configuration improvements with IT and infrastructure teams. - Configure file integrity monitoring and endpoint isolation readiness, and assist SOC and Cyber Defense during containment events. - Track endpoint security gaps, document configurations, and record investigation findings.
Requirements - 3+ years of hands-on experience in endpoint, infrastructure, or system security. - Practical background securing both desktop endpoints and server workloads at enterprise scale; environments with 1,000+ managed endpoints preferred. - Strong experience with EDR/XDR, EPP, and MDM platforms. - Deep understanding of Windows, Linux, and macOS architecture, logging, and security mechanisms. - Familiarity with native OS security features such as Defender, ASR, BitLocker, SELinux, AppArmor, Gatekeeper, SIP, and FileVault. - Scripting ability in PowerShell and Python; intermediate to upper-intermediate English and fluent Ukrainian.
Benefits and work setup - 15 paid vacation days and 10 paid sick leave days, plus public holidays. - Medical, professional education, language learning, and wellness budgets. - Remote work opportunity.