Cyber SDC- Endpoint Security Lead Engineer - Senior - Consulting - Location OPEN
Dallas, TX, US, 75219
EY
Mit unseren vier integrierten Geschäftsbereichen — Wirtschaftsprüfung und prüfungsnahe Dienstleistungen, Steuerberatung, Unternehmensberatung und Strategy and Transactions — sowie unserem Branchenwissen unterstützen wir unsere Mandanten dabei,...We are looking for a dedicated and skilled Endpoint Security Operations Engineer to join our cybersecurity team. The ideal candidate will be responsible for the management, monitoring, and optimization of endpoint security solutions, including CrowdStrike, Microsoft Defender for Endpoint, Microsoft Defender for Mobile, and CyberArk Endpoint Privilege Manager (EPM). This role requires a strong understanding of endpoint security principles, threat detection, and incident response, as well as the ability to work collaboratively with cross-functional teams to enhance our security posture.
Key Responsibilities:
- Endpoint Security Management:
- Administer and support endpoint security solutions, including CrowdStrike, Microsoft Defender for Endpoint, Microsoft Defender for Mobile, and CyberArk EPM.
- Monitor endpoint security alerts and incidents, responding promptly to potential threats and vulnerabilities.
- Threat Detection and Response:
- Analyze security events and alerts to identify potential threats and respond to incidents in a timely manner.
- Conduct forensic investigations on security incidents to determine the root cause and implement corrective actions.
- Policy Configuration and Enforcement:
- Develop, implement, and enforce endpoint security policies and procedures to protect organizational assets.
- Configure and optimize security settings within endpoint security tools to enhance protection against threats.
- User Support:
- Provide technical support to end-users regarding endpoint security tools and best practices.
- Collaboration and Communication:
- Work closely with IT and security teams to integrate endpoint security solutions with existing security frameworks and incident response processes.
- Communicate effectively with stakeholders to report on security incidents, trends, and recommendations for improvement.
- Documentation and Reporting:
- Maintain accurate documentation of endpoint security configurations, processes, and incident response actions.
- Generate reports on endpoint security metrics, incidents, and compliance for management review.
- Continuous Improvement:
- Stay updated on the latest trends, threats, and technologies in endpoint security.
- Identify opportunities for process improvements and automation within endpoint security operations.
- Automate activities through scripting (PowerShell, Python) and automation (Tines, PowerAutomate, etc.)
Qualifications:
- Bachelor’s degree in computer science, Information Technology, Cybersecurity, or a related field.
- Proven experience in managing and supporting endpoint security solutions, including CrowdStrike, Microsoft Defender for Endpoint, Microsoft Defender for Mobile, and CyberArk EPM.
- Strong understanding of endpoint security principles, threat detection, and incident response methodologies.
- Proficiency in security monitoring tools and SIEM solutions.
- Excellent problem-solving skills and attention to detail.
- Strong communication and interpersonal skills.
- Scripting experience, including PowerShell, Python, etc.
- Ticket and change management experience in ServiceNow
- Relevant cybersecurity certifications (e.g., CompTIA Security+, Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH)) are a plus.
Preferred Skills:
- Experience with scripting languages (e.g., PowerShell, Python) for automation and reporting.
- Familiarity with compliance frameworks (e.g., NIST, ISO 27001) and risk management practices.
- Knowledge of network security concepts and technologies.
- Continuous learning: You’ll develop the mindset and skills to navigate whatever comes next.
- Success as defined by you: We’ll provide the tools and flexibility, so you can make a meaningful impact, your way.
- Transformative leadership: We’ll give you the insights, coaching and confidence to be the leader the world needs.
- Diverse and inclusive culture: You’ll be embraced for who you are and empowered to use your voice to help others find theirs.
Tags: Automation CEH CISSP Compliance CompTIA Computer Science CrowdStrike Cyberark Endpoint security Incident response ISO 27001 Monitoring Network security NIST PowerShell Python Risk management Scripting SIEM Strategy Threat detection Vulnerabilities
Perks/benefits: Career development Flex hours Flex vacation Health care Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.