Specialist Endpoint Security

CPX Piceance

Abu Dhabi

On-site

AED 239,000 - 312,000

Full time

3 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

CPX Piceance is seeking an experienced Endpoint Security Specialist to monitor, investigate, and contain cyber threats across Windows, macOS, and Linux endpoints. You will manage Trend Micro AV/XDR deployments, perform rapid containment, and coordinate with SOC and IT teams to validate remediation.

The role requires 5+ years in endpoint security, strong incident response skills, and familiarity with CyberArk and SIEM workflows in a fast-paced environment.

Qualifications

  • Minimum 5 years in endpoint security operations or similar cybersecurity role.
  • Bachelor's degree in a relevant field.

Responsibilities

  • Monitor and investigate alerts across security tools for malware and endpoint compromise.
  • Correlate events from multiple sources to determine severity and scope.
  • Administer and support endpoint security agents and policies.
  • Coordinate remediation and containment actions with SOC and IT teams.

Skills

EDR/XDR monitoring
Incident investigation
Containment procedures
Policy administration
Endpoint hardening
CyberArk
Trend Micro AV
Trend Micro XDR
Vulnerability remediation

Education

Bachelor's degree in Cybersecurity / Information Security / CS / IT

Tools

Trend Micro AV
Trend Micro XDR
DDI
TippingPoint IPS
Forcepoint
Netskope
CyberArk
SIEM
ServiceNow
ITIL tools

Job description

Job Purpose :-

To protect the organization's endpoint estate by operating endpoint security controls, monitoring and investigating EDR/XDR detections, and supporting the containment and remediation of cyber threats. The role maintains secure configurations across Windows, macOS, and Linux endpoints, strengthens endpoint hardening and compliance, supports vulnerability and attack-surface reduction activities, and correlates endpoint, network, web, cloud, and privileged-access telemetry through established SOC, incident response, and ITSM processes.

Primary Responsibilities: -
Endpoint Threat Monitoring & Investigation
  • Monitor and investigate alerts across Trend Micro AV, Trend Micro XDR, Deep Discovery Inspector (DDI), TippingPoint IPS, Forcepoint, and Netskope for malware, suspicious behavior, exploit activity, credential threats, malicious network activity, and potential endpoint compromise.
  • Correlate endpoint, network, web, cloud, and identity-security events using telemetry from Trend Micro AV/XDR, DDI, TippingPoint IPS, Forcepoint, Netskope, CyberArk, SIEM, and threat intelligence to determine severity, scope, affected assets, and required escalation
  • Perform initial investigations by reviewing process trees, file and hash details, network connections, user activity, device history, privileged-account activity, and related indicators of compromise.
  • Administer and support endpoint security agents and policies, with primary hands-on experience in Trend Micro AV and Trend Micro XDR, including deployment, health monitoring, policy assignment, signature and engine updates, tamper protection, exclusions, and agent upgrades.
  • Maintain security coverage across Windows, macOS, Linux, VDI, and approved server endpoints; identify unmanaged, disconnected, unhealthy, or non-reporting assets and coordinate remediation.
  • Review endpoint security configurations and exceptions to ensure they are authorized, risk-assessed, time-bound, documented, and aligned with security standards.
  • Tune prevention and detection policies to strengthen security effectiveness while minimizing false positives and operational disruption.
Incident Response & Containment : -
  • Execute approved containment actions under SOC/IR guidance, including host isolation, malicious process termination, file quarantine, indicator blocking, privileged-account suspension through CyberArk processes, account disablement, forced sign-outs, and session or token revocation.
  • Support evidence preservation, malware eradication, recovery validation, and post-incident monitoring while maintaining a clear chain of actions and incident timeline.
  • Assess endpoint compliance against approved security baselines, encryption requirements, host firewall policies, application control, device control, and attack-surface reduction rules.
  • Coordinate remediation of endpoint vulnerabilities and security misconfigurations, validate corrective actions, and track exceptions or overdue items to closure.
  • Collaborate with SOC, incident response, PAM/IAM, network security, vulnerability management, infrastructure, workplace technology, and application teams. Support investigations and control validation involving CyberArk, DDI, TippingPoint IPS, Forcepoint, and Netskope.
Minimum Work Experience & Education : -
  • Minimum 5 years of experience in endpoint security operations, endpoint protection engineering, SOC operations, or a similar cybersecurity role, including hands‑on exposure to EDR/XDR monitoring, incident investigation, and containment.
  • Bachelor's degree in Cybersecurity, Information Security, Computer Science, Information Technology, or a related discipline.
Skills / Certifications : -
  • Hands-on experience with endpoint and enterprise security technologies, including CyberArk; Trend Micro AV; Trend Micro XDR; Deep Discovery Inspector (DDI); TippingPoint IPS; Forcepoint; and Netskope. Strong knowledge of EDR/XDR alert triage, malware analysis, endpoint containment and remediation, policy administration, endpoint hardening, vulnerability remediation, attack‑surface reduction, encryption, host firewall, application and device control, and ITSM/security case‑management workflows such as ServiceNow.
  • Relevant certifications include CompTIA Security+, SC-200, MD-102, Trend Micro or CyberArk product certification, or equivalent security‑operations credentials; ITIL Foundation is advantageous.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Specialist – Endpoint Security
Specialist – Endpoint Security

CPX • Abu Dhabi

On-site
AED 240,000 - 360,000
Senior Endpoint Security Engineer
Senior Endpoint Security Engineer

CPX Piceance • Abu Dhabi

On-site
AED 239,000 - 312,000
Senior Endpoint Security Engineer: EDR/XDR & SOC
Senior Endpoint Security Engineer: EDR/XDR & SOC

CPX • Abu Dhabi

On-site
AED 240,000 - 360,000
Security Specialist
Security Specialist

iConnect IT Business Solutions DMCC • Abu Dhabi

On-site
AED 180,000 - 280,000
Specialist - NetSecOps - MDE Operations And Support
Specialist - NetSecOps - MDE Operations And Support

iConnect IT Business Solutions DMCC • Abu Dhabi

On-site
AED 180,000 - 300,000
Senior Specialist – InfoSec Ops Management
Senior Specialist – InfoSec Ops Management

CPX • Abu Dhabi

On-site
AED 350,000 - 600,000
Senior Specialist – InfoSec Ops Management
Senior Specialist – InfoSec Ops Management

Tanqeeb • Abu Dhabi

On-site
AED 250,000 - 420,000
Expert Engineer/Security Operation Centre
Expert Engineer/Security Operation Centre

e& UAE • Abu Dhabi

On-site
AED 400,000 - 660,000
Specialist Cybersecurity Analyst (Emirati Talent)
Specialist Cybersecurity Analyst (Emirati Talent)

EDGE • Abu Dhabi

On-site
AED 180,000 - 260,000
Senior Cybersecurity Specialist
Senior Cybersecurity Specialist

Tanqeeb • Dubai

On-site
AED 300,000 - 420,000