Spencer Rose Ltd
Washington, Washington DC
20/02/2025
Full time
Endpoint Security Engineer Washington DC - hybrid (2 days a week in office) Up to $120,000 per annum + benefits On behalf of an industry Leading organisation, I am seeking an experienced Endpoint Security Engineer who will be responsible for securing and managing endpoints across Windows, macOS, and mobile devices using Microsoft Intune, JAMF Pro, and Microsoft Defender. The role requires a strong understanding of endpoint security, compliance policies, and device management best practices. This business has recently secured $62M in funding to divest from its former parent company and run as its own entity. The Security team benefits from the arrival of a new changemaker CISO who has a history of running greenfield programmes and creating high performing teams. With their recent investment, this is a business who are taking security seriously and investing in appropriate tooling for their teams. They are a Microsoft house, and part of this program will include migrating from a variety of platforms to Defender for Endpoint. Responsibilities: Deploy, configure, and manage Microsoft Intune for endpoint management and security. Administer JAMF Pro to manage macOS endpoints, ensuring compliance with security policies. Monitor, configure, and optimize Microsoft Defender security policies across endpoints. Implement and manage Zero Trust security principles for endpoint protection. Develop and enforce security baselines, compliance policies, and configuration profiles. Investigate and respond to security threats, vulnerabilities, and incidents on endpoints. Work closely with IT, Security, and Compliance teams to ensure endpoint security aligns with company policies. Automate security tasks using Scripting where necessary (eg Perl, Bash, Python or Powershell) Provide technical support and guidance for endpoint security solutions. Required Skills & Experience: Proven experience managing endpoint security with Microsoft Intune, JAMF Pro, and Microsoft Defender. Strong knowledge of Windows, macOS, and mobile device management. Experience with compliance policies, conditional access, and security baselines. Understanding of EDR, XDR, and threat detection methodologies. Scripting skills in either PowerShell, Perl, or Python for automation. Familiarity with Zero Trust security models. Strong troubleshooting and incident response skills. Excellent communication and documentation skills.