Truveta · 1 month ago
Senior Endpoint Security Engineer
Truveta is the world’s first health provider led data platform with a vision of Saving Lives with Data. The Senior Endpoint Security Engineer will design and support solutions that modernize endpoint management and ensure security compliance across the organization.
AnalyticsData ManagementHealth Care
Responsibilities
Define, implement and maintain endpoint hardening baselines for Windows, macOS, and Linux systems with MDM such as Microsoft Intune, and JAMF
Develop and enforce security policies, standards, and procedures for all endpoint devices. Implement system hardening configurations based on industry best practices
Implement, configure, and maintain endpoint security solutions, including Endpoint Detection and Response (EDR), Extended Detection and Response (XDR), antivirus/anti-malware software, and host-based firewalls
Collaborate with IT and Security team to respond to endpoint-related incidents. Triage, remediate, and contain security incidents and threats on endpoints. Perform forensic analysis when necessary
Manage the endpoint vulnerability lifecycle, from discovery and assessment to remediation, using scanning tools and patch management systems
Design and oversee the deployment of updates, security patches for operating system and applications
Develop scripts and automation (e.g., using Python, PowerShell) to streamline security operations, automate repetitive tasks, and improve response times
Secure endpoints used for AI development, including devices accessing model weights, training data, and production inference systems, implementing guardrails on AI tool usage (e.g., prompt injection prevention in local LLM dev tools, restricted plugins/add-ons)
Enforce data loss prevention (DLP) and encryption policies on devices used to handle sensitive AI training datasets, including PHI/PII and proprietary corporation data
Ability to participate in On-call rotation
This position requires daily onsite work at Truveta office in Bellevue WA
Qualification
Required
5+ years of hands-on experience in an endpoint security, cybersecurity engineering, or similar role
Deep understanding of modern operating systems (Windows, macOS) and their architecture, configuration and deployment in a large enterprise environment
Strong hands-on experience on Azure Cloud PC, VM, Azure Firewall and Azure Networking
Strong hands-on experience on Microsoft Intune and JAMF administration, such as device enrollment, OS upgrade/patch, configuration, profile
Define and assign compliance/security policies to ensure corporation devices meet organizational security standards
Strong hands-on experience on applications control, deployment, patch and upgrade
Proven experience with industry-leading EPM platforms such as CyberArk and BeyondTrust to control user privileged access and provide advanced threat protection and vulnerability management
Solid understanding of TCP/IP IPv4/v6, experience of office network (Routing / Switching / WAN, Wi-Fi & Security) management and network security concepts
Strong knowledge of cybersecurity frameworks (e.g., NIST, MITRE), threat intelligence, and incident response methodologies
Experiences with SOC 2 Type 2, HITRUST, and ISO compliance frameworks. Interact with the compliance team to ensure the company compliant and remediate gaps during compliance finding and controls
Excellent verbal and written communication/presentation, ability to explain complex technical concepts to both technical and non-technical audiences
Benefits
Great benefits package
Comprehensive benefits with strong medical, dental and vision insurance plans
401K plan
Professional development & training opportunities for continuous learning
Work/life autonomy via flexible work hours and flexible paid time off
Generous parental leave
Regular team activities (virtual and in-person as soon as we are able)
Company
Truveta
Truveta is a healthcare data platform that provides EHR data for scientific research.
Funding
Current Stage
Growth StageTotal Funding
$515MKey Investors
Microsoft
2025-01-13Series C· $320M
2021-11-09Series Unknown· $100M
2021-09-29Corporate Round
Recent News
Company data provided by crunchbase