Engineer Endpoint Security

Grant Thornton International

Poznań

Hybrid

PLN 70,000 - 110,000

Full time

2 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Hybrid work model
Private medical care
MultiSport benefits
International environment
Onboarding program
Career development
Training platforms
Inclusive workplace
Poznań office

Job summary

Grant Thornton International in Poznań is seeking an Endpoint Security Engineer to maintain the endpoint protection estate. You will deploy and troubleshoot agents across workstations and servers, implement policy changes, and triage alerts, while collaborating with LATAM/EMEA/NA teams to meet service levels.

The role emphasizes Windows administration with cross-platform familiarity (macOS/Linux), scripting in PowerShell, Bash, or Python, and fluency in English and Polish.

Qualifications

  • Three or more years in information technology, including at least one year working directly with endpoint security or systems management tooling.
  • Practical administration experience with an endpoint detection and response or anti-malware console, and with an enterprise software deployment tool such as Intune or SCCM.
  • Sound knowledge of Windows administration, with working familiarity with macOS or Linux endpoints.
  • Scripting ability in PowerShell, Bash, or Python sufficient to automate routine tasks and parse platform output.
  • Fluency in English and Polish.

Responsibilities

  • Deploy, upgrade, and troubleshoot endpoint security agents across workstations and servers, and drive agent coverage and health metrics to target.
  • Implement approved policy, exclusion, and device control changes through the standard change process, with testing evidence and rollback plans.
  • Triage endpoint alerts and platform tickets, resolving routine issues directly and escalating complex detections with a clear technical summary.
  • Reconcile endpoint coverage against the asset inventory, investigate unprotected and stale hosts, and report gaps to the platform owner.
  • Maintain runbooks and knowledge base articles for recurring endpoint issues, and contribute scripts that reduce manual handling.
  • Operate assigned security platforms as a service, including capacity planning, patching, upgrades, health monitoring, and vendor case management.
  • Automate repetitive configuration and operational tasks, and treat platform configuration as code wherever the tooling supports it.
  • Support incident response and forensic investigations with platform expertise , evidence, and rapid containment actions.
  • Maintain runbooks, architecture diagrams, and control documentation to a standard that satisfies internal audit and external assessment.
  • Participate in an on-call rotation and in scheduled change windows, including occasional work outside standard business hours.

Skills

English
Polish
Scripting

Tools

PowerShell
Bash
Python

Job description

The Engineer for Endpoint Security keeps the endpoint protection estate healthy and current. The role handles agent deployment and remediation, executes policy changes designed with the senior engineers, and resolves the day-to-day exceptions raised by service desk and operations teams. It suits an engineer who has a solid grounding in endpoint administration and wants to develop into a specialist security engineering career.

Key Responsibilities

Deploy, upgrade, and troubleshoot endpoint security agents across workstations and servers, and drive agent coverage and health metrics to target.

Implement approved policy, exclusion, and device control changes through the standard change process, with testing evidence and rollback plans.

Triage endpoint alerts and platform tickets, resolving routine issues directly and escalating complex detections with a clear technical summary.

Reconcile endpoint coverage against the asset inventory, investigate unprotected and stale hosts, and report gaps to the platform owner.

Maintain runbooks and knowledge base articles for recurring endpoint issues, and contribute scripts that reduce manual handling.

Required Qualifications

Three or more years in information technology, including at least one year working directly with endpoint security or systems management tooling .

Practical administration experience with an endpoint detection and response or anti-malware console, and with an enterprise software deployment tool such as Intune or SCCM.

Sound knowledge of Windows administration, with working familiarity with macOS or Linux endpoints.

Scripting ability in PowerShell, Bash, or Python sufficient to automate routine tasks and parse platform output.

  • Fluency in English and Polish.
Preferred Qualifications

Security certification such as CompTIA Security+, Microsoft SC-200, or a vendor endpoint certification.

Exposure to security operations center workflows, ticketing platforms, and change management in a regulated environment.

Working Arrangements and Team Expectations

This role sits within the Information Security Platform Engineering function and shares a common operating model with the wider team. Engineers own the security platforms they build end to end: design, deployment, day-to-day operation, tuning, and lifecycle management. Work is delivered against agreed service levels and measured on control coverage, platform availability, and the quality of detection and prevention outcomes. Because the teams are distributed across LATAM, EMEA, and North America, all roles require reliable overlap with United States business hours and fluent written and spoken English.

Operate assigned security platforms as a service, including capacity planning, patching, upgrades, health monitoring, and vendor case management.

Automate repetitive configuration and operational tasks, and treat platform configuration as code wherever the tooling supports it.

Support incident response and forensic investigations with platform expertise , evidence, and rapid containment actions.

Maintain runbooks, architecture diagrams, and control documentation to a standard that satisfies internal audit and external assessment.

Participate in an on-call rotation and in scheduled change windows, including occasional work outside standard business hours.

What we offer:
  • Hybrid working model (2 days in the office and 3 days working remotely).
  • Stable employment with an employment contract, private medical care, and a benefits package including MultiSport and a benefits platform.
  • Opportunity to work in an international environment and collaborate with experienced Grant Thornton experts and professionals from around the world.
  • A culture based on teamwork, trust, and knowledge sharing.
  • A well-structured onboarding program to support a smooth start and successful integration into your new role.
  • Clear career development paths and access to learning and certification programs.
  • Access to training platforms and tools that support professional growth.
  • An inclusive workplace that welcomes people with disabilities.
  • A modern office in Poznań, located in Malta Office Park.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Endpoint Security Engineer | Hybrid & Growth in Security
Endpoint Security Engineer | Hybrid & Growth in Security

Grant Thornton International • Poznań

Hybrid
PLN 70,000 - 110,000
Hybrid work model
Private medical care
MultiSport benefits
+6
Staff Systems Administrator – Endpoint Engineering
Staff Systems Administrator – Endpoint Engineering

Relativity • Kraków

Hybrid
PLN 250,000 - 374,000
Comprehensive health, dental, and vision plans
Parental leave for caregivers
Flexible work arrangements
+4
Systems Engineer
Systems Engineer

SQUAD Ukraine Limited • Wrocław

On-site
PLN 180,000 - 240,000
Competitive salary
Performance bonus
Loyalty bonus
+4
Engineer - Cybersecurity (Vulnerability & Threat Management)
Engineer - Cybersecurity (Vulnerability & Threat Management)

Sysco Corporation • Poland

Hybrid
PLN 40,000 - 60,000
Professional development opportunities
Collaborative culture
Modern security technologies
IT Engineer Cyber Security (m/k)
IT Engineer Cyber Security (m/k)

SMA Magnetics • Kraków

On-site
PLN 120,000 - 180,000
IT Engineer Cyber Security (m/k)
IT Engineer Cyber Security (m/k)

SMA Solar • Kraków

On-site
PLN 90,000 - 150,000
CyberArk PAM & EPM Lead Engineer
CyberArk PAM & EPM Lead Engineer

Grant Thornton International • Poznań

Hybrid
PLN 170,000 - 260,000
Hybrid work model
Private medical care
MultiSport
+8
Security Engineer – Incident Response Team (f/m/x)
Security Engineer – Incident Response Team (f/m/x)

Sii Sp. z o.o. • Warszawa

Hybrid
PLN 170,000 - 210,000
Great Place to Work
Private healthcare
Remote work / Class A offices
+1
Application Security Engineer
Application Security Engineer

AXA IT Solutions • Poland

On-site
PLN 180,000 - 240,000
Personal development
International environment
English work environment
+9
Senior Application Security Engineer
Senior Application Security Engineer

Adecco • Warszawa

Hybrid
PLN 210,000 - 270,000
Private medical care
Life insurance
Hybrid work model