Lead Engineer – Endpoint Security

Dyson Institute

Kuala Lumpur

On-site

MYR 150,000 - 210,000

Full time

2 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Health insurance
Employee banking benefits

Job summary

Dyson Institute is seeking an Endpoint Security Engineer to define and enforce security baselines across Windows, macOS, and Linux fleets. You will lead Defender for Endpoint configurations, manage device compliance, and support incident response across our global device estates.

You will drive automation, threat detection guidance, and governance of endpoint health telemetry, partnering with cross-functional teams to keep end-user productivity intact while reducing risk.

Qualifications

  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field (or equivalent practical experience).
  • 5-7 years' technical experience in endpoint security engineering, OS hardening, and endpoint management at scale.
  • Deep engineering knowledge of multi-OS security architectures (Windows, macOS, Linux) and cross-platform EDR deployment.
  • Certifications such as SC-200, GCED, or CISSP are highly desirable.

Responsibilities

  • Define endpoint hardening baselines across Windows, macOS, and Linux fleets.
  • Engineer Defender capabilities, telemetry, and rule optimization across OS platforms.
  • Design and enforce device compliance frameworks for access control.
  • Lead vulnerability reduction initiatives and mitigate configuration drift.
  • Conduct security reviews and support incident response during investigations.

Skills

Endpoint security
OS hardening
Cross-platform EDR
Automation/ scripting

Education

Bachelor's degree in CS/IT/Cybersecurity

Tools

Microsoft Defender for Endpoint
Intune
JAMF
Microsoft Security Baselines
CIS Benchmarks

Job description

Role Purpose

As the Endpoint Security Engineer, you are accountable for defining endpoint hardening standards and engineering baseline security controls across all Windows, macOS, and Linux device estates. Operating as a hands-on technical lead, you will drive endpoint risk reduction across the enterprise. By configuring advanced EDR/XDR controls, managing device compliance frameworks, and supporting incident response teams, you will ensure end-user devices are continuously defended against modern compromise techniques. In this role, you will lead and manage the following domains: Endpoint Hardening & Baselines: Defining, implementing, and enforcing security baselines across Windows, macOS, and Linux fleets. EDR/XDR Control Engineering: Managing and tuning Microsoft Defender endpoints and security capabilities. Device Compliance Frameworks: Designing compliance policies that enforce endpoint health prior to granting corporate resource access. Vulnerability & Posture Reduction: Leading targeted initiatives to mitigate system vulnerabilities, OS flaws, and configuration drift. Security Reviews & Incident Support: Conducting technical endpoint security reviews and assisting incident response teams during major investigations.


Key Skills & Qualifications


  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field (or equivalent practical experience).

  • A minimum of 5-7 years' technical experience in endpoint security engineering, OS hardening, and endpoint management at scale.

  • Deep engineering knowledge of multi-OS security architectures (Windows, macOS, Linux) and cross-platform EDR deployment.

  • Relevant certifications such as Microsoft Certified: Security Operations Analyst Associate (SC-200), GIAC Endpoint Asset Protection (GCED), or CISSP are highly desirable.


Security Expertise & Architecture

Deep understanding of OS internal security structures (Windows Defender, macOS Security Frameworks, Linux PAM/AppArmor/SELinux) and local attack mitigation controls.


Tooling & Technical Proficiency

Proficiency in Microsoft Defender for Endpoint, Intune, JAMF, Microsoft Security Baselines, CIS Benchmarks, and endpoint management systems.


Risk Management & Prioritisation

Ability to prioritize OS-level misconfigurations and endpoint vulnerabilities based on active exploit availability and local device access rights.


Governance, Process & Control Design

Experience designing automated device compliance policies, device health attestation checks, and local privilege management controls.


Service Delivery & Operational Management

Proven ability to manage endpoint security agent coverage, maintain health telemetry across global device estates, and minimize agent conflicts.


Data Analysis, Reporting & Insight

Skilled in analyzing endpoint telemetry, KQL querying, and generating clear health dashboards for device compliance and security posture.


Stakeholder Management & Influence

Ability to partner with workplace platform engineering teams to push security updates and baseline policy changes without disrupting end-user productivity.


Threat Intelligence Integration

Ability to translate threat intelligence indicators (IoCs) and adversary techniques (MITRE ATT&CK) into tailored endpoint detection and block rules.


Leadership & Collaboration

Proven ability to lead technical endpoint security workstreams, provide clear remediation directions, and mentor junior operational staff.


Continuous Improvement & Automation

Experience driving security automation through script-based remediation (PowerShell, Bash, Python) and unified endpoint management integrations.


Key Accountabilities & Success Measures


  • Endpoint Hardening & Security Baselines Accountability: Architect, deploy, and maintain standardized security baselines for all Windows, macOS, and Linux endpoints. Success Measures: Greater than 98% compliance rate with established OS security baselines across the entire enterprise estate; 100% of managed devices bound by strict compliance and attestation requirements.

  • Defender Suite Engineering & Telemetry Accountability: Engineer Microsoft Defender capabilities, optimize detection engine rules, and ensure full agent health across all OS platforms. Success Measures: >99% agent deployment health and active reporting across all connected devices; Dynamic detection policy coverage mapped directly against top MITRE ATT&CK techniques.

  • Vulnerability & Risk Reduction Initiatives Accountability: Drive endpoint risk reduction programs aimed at mitigating configuration flaws, unpatched software, and high-risk local permissions. Success Measures: Measurable structural reduction in high and critical endpoint security posture gaps; MTTR for critical endpoint configuration drift kept within defined SLA targets.


Dyson is an equal opportunity employer. We know that great minds don't think alike, and it takes all kinds of minds to make our technology so unique. We welcome applications from all backgrounds and employment decisions are made without regard to race, colour, religion, national or ethnic origin, sex, sexual orientation, gender identity or expression, age, disability, protected veteran status or other any other dimension of diversity. At Dyson we are focused on solving the problems that others have ignored; solving them first using our technology and ingenuity. In order to achieve this we need to pioneer technologies that are different and authentic. This is the core of what we do and who we are. We must strive to create the future, every single day by developing new things, different things, things that go against the grain with a diverse and global team of ingenious minds. Dyson employs 14,000 people and is present in more than 80 countries. And while we are growing fast we want Dyson to remain a start-up in spirit with the freedom of experimentation and learning, constantly reinventing our products as well as reinventing how we work, how we sell and how we support our owners. At the same time we are working through the James Dyson Foundation, James Dyson Award and Dyson Institute to inspire future engineers and pioneering a new approach to engineering education. Underlining everything we do in this diverse environment is the need to always show respect, supporting each other as one team to overcome whatever challenges we encounter. We drive empowerment, development and equality in an inclusive environment for our people around the world. The future doesn't just happen, we look to make it happen, to achieve leaps through pioneering new ideas.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Lead Engineer – Cloud & Endpoint
Lead Engineer – Cloud & Endpoint

Dyson Institute • Kuala Lumpur

On-site
MYR 180,000 - 360,000
Lead Engineer – Multi-Platform Endpoint
Lead Engineer – Multi-Platform Endpoint

Dyson Institute • Kuala Lumpur

On-site
MYR 120,000 - 180,000
Lead Engineer – Identity & Access Security
Lead Engineer – Identity & Access Security

Dyson Institute • Kuala Lumpur

On-site
MYR 120,000 - 180,000
Lead Engineer – M365 & Exchange Platform
Lead Engineer – M365 & Exchange Platform

Dyson Institute • Kuala Lumpur

On-site
MYR 240,000 - 380,000
IT Service Operations Management Process Owner
IT Service Operations Management Process Owner

Dyson Institute • Kuala Lumpur

On-site
MYR 180,000 - 240,000
Service Engineering Change Specialist
Service Engineering Change Specialist

Dyson Institute • Johor Bahru

Hybrid
MYR 120,000 - 180,000
Transport allowance
Medical care & insurance
Professional growth
+5
Project Engineer
Project Engineer

Dyson Institute • Johor Bahru

On-site
MYR 60,000 - 120,000
Senior Test Engineer
Senior Test Engineer

Dyson Institute • Johor Bahru

On-site
MYR 180,000 - 300,000
Operational Engineering, Senior Technician
Operational Engineering, Senior Technician

Dyson Institute • Johor Bahru

Hybrid
MYR 60,000 - 120,000
Associate Principal BMS Hardware Engineer
Associate Principal BMS Hardware Engineer

Dyson Institute • Johor Bahru

On-site
MYR 300,000 - 460,000