Endpoint & Security Platforms Engineer

Greenhouse Software, Inc.

United States

Remote

USD 120,000 - 160,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

20 vacation days
10 sick leave days
Company holidays
Medical budget
Education budget
Wellness budget

Job summary

JustMarkets seeks an hands-on Endpoint & Security Platforms Engineer to build and operate controls protecting employee devices and server workloads. You will work across deployment, hardening, troubleshooting, automation, and containment across Windows, Linux and macOS environments.

You will deploy EDR/XDR agents, resolve failures, implement OS hardening, and automate tasks with scripts. Collaboration with IT, Cyber Defense, and data security teams is essential, with focus on reliable

Qualifications

  • 4+ years of hands-on experience in endpoint security or related security engineering role.
  • Experience deploying and operating an enterprise EDR/XDR across mixed workstation/server environment.
  • Strong Linux administration skills with Windows troubleshooting.
  • Experience implementing OS hardening and production deployments.
  • Automation with scripting in Python, Bash, or PowerShell.
  • Clear communication and documentation practices.

Responsibilities

  • Deploy and maintain EDR/XDR across Windows, Linux, and macOS workstations and production servers.
  • Resolve agent failures and coordination with IT for deployments.
  • Implement risk-based OS hardening baselines.
  • Operate endpoint DLP controls and maintain protection posture.
  • Maintain SIEM and other security platforms, including health and backups.
  • Monitor telemetry and drive fixes via automation and runbooks.
  • Support Cyber Defense investigations with endpoint expertise.
  • Automate recurring admin tasks using scripts and APIs and document configurations.

Skills

Endpoint security
Linux administration
Scripting (Python/Bash/PowerShell)
OS hardening
Automation
Documentation
Communication
Troubleshooting

Education

Technical education in InfoSec/CS

Tools

Elastic SIEM
Microsoft Defender
Mosyle
ManageEngine
Ansible
Puppet

Job description

We are looking for a hands-on Endpoint & Security Platforms Engineer to build and operate the controls that protect our employee devices and server workloads, working across the full lifecycle from deployment and hardening to troubleshooting, automation, and authorized containment.

This is a chance to influence technical decisions that improve protection without disrupting critical services, and to broaden your engineering skills through hands-on work with security platforms and automation. You will work closely with IT, Infrastructure, Cyber Defense, and data security colleagues to make protection reliable and effective without creating unnecessary friction for users or critical systems.

Responsibilities
  • Deploy and maintain EDR/XDR agents and endpoint protection policies across Windows, Linux, and macOS workstations and production servers, managing the full agent lifecycle: upgrades, policy tuning, exclusions, and controlled rollback
  • Resolve agent failures, telemetry gaps, policy conflicts, and performance issues. Coordinate deployments with IT, which provides first-line support, and take ownership of complex security cases
  • Implement risk-based OS hardening baselines together with application and infrastructure owners: test compatibility, prepare rollback steps, and deploy changes safely across production systems
  • Operate endpoint DLP controls: maintain agents, implement policies agreed with data security colleagues, and reduce unnecessary blocking without weakening protection
  • Maintain assigned security platforms (e.g. SIEM), including service health, access configuration, updates, storage, backups, and recovery
  • Monitor telemetry and control health, investigating stale agents, coverage gaps, and unmanaged systems, and drive fixes through automation and improved runbooks
  • Support Cyber Defense investigations with endpoint expertise and execute approved containment actions, escalating anything that could disrupt production
  • Automate recurring administration, validation, and reporting tasks using scripts and APIs, and maintain clear documentation for configurations and procedures
Requirements
  • 4+ years of hands-on experience in endpoint security, infrastructure security, system security, or a related security engineering role
  • Practical experience deploying and operating an enterprise EDR/XDR or endpoint protection platform across a mixed workstation and server environment
  • Strong Linux administration skills, plus the ability to support and troubleshoot protection on Windows workstations and servers using logs, services, permissions, network connections, and resource usage
  • Experience introducing security controls into production, including testing, controlled deployment, and rollback
  • Experience implementing OS hardening and working with native security controls
  • Understanding of access-control models, least privilege, endpoint telemetry, file-integrity monitoring, and host-isolation techniques
  • Ability to automate operational work using at least one scripting language such as Python, Bash, or PowerShell
  • Clear communication with technical colleagues and system owners, reliable documentation, and the ability to follow issues through to a verified result
Will be a plus
  • Experience administering a self-managed Elastic or another SIEM platform
  • Experience with endpoint DLP solutions or Microsoft Defender
  • macOS security and device-management tools such as Mosyle, ManageEngine, Ansible, or Puppet
  • Experience with CIS Benchmarks, DISA STIG, or native OS security controls (SELinux, AppArmor, FileVault, BitLocker, etc.)
  • Experience supporting a large, distributed fleet of endpoints or servers, ideally in fintech, trading, or another performance-critical environment
  • Technical education in Information Security, Computer Science, or a related field
We offer
  • 20 paid vacation days per year
  • 10 paid sick leave days per year
  • Public holidays according to the company’s approved holiday calendar
  • Medical budget
  • Professional education budget
  • Wellness budget covering gym membership, sports equipment, and related expenses
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Endpoint Engineer III
Endpoint Engineer III

ecsfederal • Virginia (MN)

Hybrid
USD 130,000 - 160,000
Endpoint Engineer
Endpoint Engineer

Wildfire Talent Solutions • Tulsa (OK)

On-site
USD 80,000 - 120,000
Opportunities for professional growth
Certification support
Competitive compensation
+1
Cyber Security Engineer
Cyber Security Engineer

Beta Eight • Hicksville (NY)

On-site
USD 120,000 - 180,000
Endpoint Security Engineer
Endpoint Security Engineer

PlanIT Group, LLC • Reston (VA)

On-site
USD 150,000 - 200,000
Endpoint Security Engineer (MacOS)
Endpoint Security Engineer (MacOS)

Brooksource • Charlotte (NC)

On-site
USD 80,000 - 110,000
Principal Support Engineer - Endpoint
Principal Support Engineer - Endpoint

reach management consultant pvt ltd • United States

Remote
USD 150,000 - 210,000
Competitive salary and equity
Medical, dental, and vision insurance
401(k) plan
+3
Endpoint Engineer
Endpoint Engineer

Cylake • Sunnyvale (CA)

On-site
USD 150,000 - 250,000
Endpoint Security Engineer
Endpoint Security Engineer

PlanIT Group • Reston (VA), Northern (KY)

On-site
USD 120,000 - 160,000
Endpoint Engineer
Endpoint Engineer

Cylake Inc. • Sunnyvale (CA)

On-site
USD 150,000 - 250,000
Endpoint Security Specialist
Endpoint Security Specialist

Placements24 • United States

Remote
USD 90,000 - 130,000
Home office stipend
Remote team environment
Professional development