Track Lead - JAMF

Technology, Data & Digital · IT Infrastructure & Security · Cybersecurity · Software Engineering · Systems Engineering

In short

The L3 Endpoint Security Engineer is a technical SME for Antivirus, NGAV, and EDR platforms, responsible for solution architecture, advanced threat investigations, and platform optimization. This role provides technical leadership to L1/L2 teams and handles complex security incidents.

Responsibilities

  • Serve as the technical Subject Matter Expert (SME) for Antivirus (AV), Next-Generation Antivirus (NGAV), and Endpoint Detection & Response (EDR) platforms.
  • Design, implement, administer, and optimize endpoint security solutions across enterprise environments.
  • Lead investigation and resolution of critical security incidents, malware outbreaks, ransomware attacks, and advanced threats.
  • Perform advanced threat hunting, malware analysis, forensic investigations, and root cause analysis.
  • Define and maintain endpoint security baselines, standards, policies, and governance controls.
  • Design and support integrations with Microsoft Intune, Active Directory, Entra ID, SIEM platforms, Microsoft Sentinel, Splunk, and SOC monitoring solutions.
  • Drive continuous service improvement through platform tuning, automation, orchestration, and operational process optimization.
  • Provide technical leadership, mentoring, training, and knowledge transfer to L1 and L2 engineers.
  • Collaborate with SOC, Infrastructure, Cloud, and Endpoint Management teams.
  • Develop and maintain technical documentation, architecture diagrams, SOPs, runbooks, standards, and knowledge base articles.

Requirements

  • 8+ years of experience in Endpoint Security and Implementation (MS Defender, SentinelOne, CrowdStrike, JAMF Protect, Zimperium).
  • Expertise in enterprise Antivirus (AV), Next-Generation Antivirus (NGAV), and Endpoint Detection & Response (EDR) platforms.
  • Experience in designing, implementing, administering, and optimizing endpoint security solutions.
  • Experience leading deployment, migration, upgrade, and integration projects for endpoint security technologies.
  • Experience defining and maintaining endpoint security baselines, standards, policies, and governance controls for AV, EDR, Firewall, ASR, Device Control, and Web Protection.
  • Experience investigating and resolving critical security incidents, malware outbreaks, ransomware attacks, and advanced threats.
  • Experience performing advanced threat hunting, malware analysis, forensic investigations, and root cause analysis.
  • Experience developing and implementing containment, remediation, recovery, and detection enhancement strategies.
  • Experience reviewing and optimizing security policies, exclusions, detections, alerts, and response workflows.
  • Experience as a technical escalation point for complex endpoint security, agent health, onboarding, telemetry, policy, and integration-related issues.
  • Experience designing and supporting integrations with Microsoft Intune, Active Directory, Entra ID, SIEM platforms, Microsoft Sentinel, Splunk, and SOC monitoring solutions.
  • Experience driving continuous service improvement initiatives through platform tuning, automation, orchestration, and operational process optimization.
  • Experience conducting Proof of Concepts (POCs), evaluating emerging endpoint security technologies, and providing strategic recommendations.
  • Experience collaborating with SOC, Infrastructure, Cloud, and Endpoint Management teams.
  • Experience developing and maintaining technical documentation, architecture diagrams, SOPs, runbooks, standards, and knowledge base articles.
  • Experience providing technical leadership, mentoring, training, and knowledge transfer to L1 and L2 engineers.
  • Experience preparing executive reports, security posture assessments, compliance reports, risk analyses, and strategic recommendations.
  • Experience supporting audit, compliance, and governance activities.

Desired Qualifications

  • Technical leadership, mentoring, training, and knowledge transfer to L1 and L2 engineers.

Benefits

  • Supercharge your potential.
  • Find your career.
  • Find your spark.
#Endpoint Security#Antivirus#NGAV#EDR#JAMF Protect#MS Defender#SentinelOne#CrowdStrike#Zimperium#Threat Hunting#Malware Analysis#Forensics#Microsoft Intune#Active Directory#Entra ID#SIEM#Splunk#SOC
HCLTech Logo

Company

HCLTech

Job Posted

1 month ago

Employment Type

Full Time

WorkMode

On Site

Experience Level

Senior

Locations

Gautam Buddha Nagar, India

Applicants

Be an early applicant