EUC Security Operations Engineer

WTW

Taguig

On-site

PHP 700,000 - 1,100,000

Full time

4 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

WTW in the Philippines is seeking an experienced Security Operations Engineer for End User Computing. You will manage and secure endpoints across Windows, macOS, iOS, and Azure Virtual devices, focusing on patching cycles, vulnerability management, and automation through PowerShell.

You will work with EUC Operations and Info Sec to maintain security controls, investigate vulnerabilities, generate reports, and create documentation.

Qualifications

  • 3+ years with SCCM, Intune, AD, GPO, Windows 10/11, and Microsoft 365.
  • 3+ years patch management experience including Windows Update for Business.
  • Experience in security roles related to workstations configuration.
  • Familiarity with PowerShell scripting and endpoint security tooling.

Responsibilities

  • Provide Operational Engineering and support for global End User Computing platforms with a focus on security solutions (e.g., Intune, Defender for Endpoint, Windows Update for Business).
  • Maintain and administer endpoint security controls and policies, with day-to-day operations, troubleshooting and reporting.
  • Identify engineering operational improvements and deliver improvement programmes.
  • Maintain Information Security focus through risk mitigation and data loss prevention practices.
  • Assist in vulnerability investigations and deployment of fixes for end-user platforms.
  • Ensure robust security of endpoints (Windows, macOS, iOS, Azure Virtual devices, 365 machines).
  • Produce quality reporting on workstation estate against security SLAs and KPIs.

Skills

SCCM
Intune
Active Directory
Group Policy
Windows 10/11
Microsoft 365
PowerShell
Power BI
Power Automate
Log Analytics
Azure
Defender for Endpoint
PatchMyPC

Tools

SCCM
Intune
Active Directory
Group Policy
PowerShell

Job description

Description

End User Computing Security Operations engineers are responsible for operational management of the WTW endpoint security layer ensuring the stability of the service and service innovation., Achieving this through analysis and solutioning. An engineer is expected to be strategically focused at all times, also looking at automation opportunities with the current services to simplify the operational model.

The Security Operations Engineer will assist the Security operations manager and Security Engineering Specialists to provide operational support and management of the relevant End Point security platforms. A successful candidate should expect to spend much of their time managing, supporting and maintaining the day-to-day aspects of the End User Computing security platforms, analyzing current services, identifying/communicating operational improvements, assisting in the delivery of new solutions, administering patching cycles and addressing identified vulnerabilities with end user platforms.

The Role
  • Provide Operational Engineering and support against the global End User Computing platforms with a specific slant towards security solutions (e.g Intune, Microsoft Defender for Endpoint, Windows Update for Business etc).
  • Work with EUC Operations and Info Sec Operations to maintain and administer endpoint security controls and policies, with a focus on day-to-day operations, troubleshooting and reporting.
  • Identify engineering operational improvements, articulate to platform owners and deliver improvement programmes.
  • Maintain Information Security focus through risk mitigation and data loss prevention practices.
  • Engage in investigations to address identified Vulnerabilities in end user platforms and mange the deployment of the appropriate fix.
  • Make use of existing tools, skills and experience to provide fixes at scale to ensure robust security of endpoints ( Windows PCs, Mac OS, IOS, Azure Virtual devices and 365 machines)
  • Work closely with Information Security teams to ensure speedy responses to latest threats
  • Participate in the production of quality reporting showing status of global workstations estate against required security SLAs and KPIs
  • Creation of high-quality technical documentation and training material
  • Ensure the smooth operation of monthly patching cycles both on MS platforms and third parties.
  • Assist in the development and maturity of associated patch and vulnerability processes
  • Provide relevant data and evidence to internal and external audit team as and where required.
  • Ensure compliance of workstations against other types of security controls (such as configuration). Investigate and provide remediation steps to ensure compliance.
  • Assist with the management and regular review of WTW compliance against Industry benchmarks
  • Assist with the running of regular pen tests against owned systems and process.
Qualifications
The Requirement
  • An ITIL qualification is desirable but not essential
  • A basic understanding of how applications interact with the Windows Operating System is critical as is experience in Enterprise Microsoft products and expertise in Active Directory
  • 3+ Years’ experience with core technologies such as SCCM, Intune, Active Directory, Group Policy, Windows 10/11, Microsoft 365 Suite
  • 3+ years experience with patch management technologies (including Windows Update for Business), methodologies and processes including deep technical investigative skills
  • Demonstrable experience in other related security roles is desirable, particularly those relating to workstations configuration
  • Experience with PowerBi, Power Automate and Log Analytics desirable
  • Can demonstrate fundamental Microsoft Azure competency/awareness
  • Has experience developing scripted solutions with Microsoft PowerShell
  • Will be a self-motivated achiever, quickly grasp and interpret salient information with the ability to take a can-do approach without the need for supervision
  • Experience with MS Defender for Endpoint (MDE) is desirable
  • Experience with PatchMyPC (or similar 3rd party patching tool) desirable
  • Experience with EPM desirable.

WTW is an Equal Opportunity Employer

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

EUC Security Operations Engineer
EUC Security Operations Engineer

Willis Towers Watson • Taguig

On-site
PHP 600,000 - 1,000,000
EUC Security Operations Engineer
EUC Security Operations Engineer

Willis Towers Watson • Pateros

On-site
PHP 600,000 - 900,000
EUC Security Ops Engineer: Automate & Protect Endpoints
EUC Security Ops Engineer: Automate & Protect Endpoints

Willis Towers Watson • Taguig

On-site
PHP 600,000 - 1,000,000
EUC Endpoint Security Ops Engineer
EUC Endpoint Security Ops Engineer

WTW • Taguig

On-site
PHP 700,000 - 1,100,000
End User Computer Operations Engineer
End User Computer Operations Engineer

UpSkill MNL • Metro Manila

Remote
EUC Security Ops Engineer: Endpoint Security
EUC Security Ops Engineer: Endpoint Security

Willis Towers Watson • Pateros

On-site
PHP 600,000 - 900,000
EUC Ops Engineer - Hybrid BGC - 100K
EUC Ops Engineer - Hybrid BGC - 100K

weSource Management Consultancy Firm • Taguig

Hybrid
End User Operations Engineer - Hybrid (BGC) - Up to 100K
End User Operations Engineer - Hybrid (BGC) - Up to 100K

weSource Management Consultancy Firm • Taguig

Hybrid
Endpoint Security Engineer
Endpoint Security Engineer

INNOVATIQ TECHNOLOGIES PTE. LTD. • Santo Niño 1st

On-site
PHP 893,000 - 1,339,000
Technical Services Analyst
Technical Services Analyst

RR Donnelley Philippines Inc. • Mandaluyong

On-site
PHP 1,000,000 - 1,600,000