Truveta · 2 days ago
Senior Endpoint Security Engineer
Truveta is the world’s first health provider led data platform with a vision of Saving Lives with Data. The Senior Endpoint Security Engineer will design and support solutions for the company’s Digital Workplace strategy, focusing on modernizing endpoint management and ensuring security compliance.
AnalyticsData ManagementHealth Care
Responsibilities
Device Management: Define, implement and maintain endpoint hardening baselines for Windows, macOS, and Linux systems with MDM such as Microsoft Intune, and JAMF
Policy & Hardening: Develop and enforce security policies, standards, and procedures for all endpoint devices. Implement system hardening configurations based on industry best practices
Deploy & Manage Security Tools: Implement, configure, and maintain endpoint security solutions, including Endpoint Detection and Response (EDR), Extended Detection and Response (XDR), antivirus/anti-malware software, and host-based firewalls
Incident Response: Collaborate with IT and Security team to respond to endpoint-related incidents. Triage, remediate, and contain security incidents and threats on endpoints. Perform forensic analysis when necessary
Vulnerability Management: Manage the endpoint vulnerability lifecycle, from discovery and assessment to remediation, using scanning tools and patch management systems
Patch Management: Design and oversee the deployment of updates, security patches for operating system and applications
Automation & Scripting: Develop scripts and automation (e.g., using Python, PowerShell) to streamline security operations, automate repetitive tasks, and improve response times
AI Protection: Secure endpoints used for AI development, including devices accessing model weights, training data, and production inference systems, implementing guardrails on AI tool usage (e.g., prompt injection prevention in local LLM dev tools, restricted plugins/add-ons)
Data Loss Prevention: Enforce data loss prevention (DLP) and encryption policies on devices used to handle sensitive AI training datasets, including PHI/PII and proprietary corporation data
On-call: Ability to participate in On-call rotation
On-site: This position requires daily onsite work at Truveta office in Bellevue WA
Qualification
Required
5+ years of hands-on experience in an endpoint security, cybersecurity engineering, or similar role
Deep understanding of modern operating systems (Windows, macOS) and their architecture, configuration and deployment in a large enterprise environment
Strong hands-on experience on Azure Cloud PC, VM, Azure Firewall and Azure Networking
Strong hands-on experience on Microsoft Intune and JAMF administration, such as device enrollment, OS upgrade/patch, configuration, profile
Define and assign compliance/security policies to ensure corporation devices meet organizational security standards
Strong hands-on experience on applications control, deployment, patch and upgrade
Proven experience with industry-leading EPM platforms such as CyberArk and BeyondTrust to control user privileged access and provide advanced threat protection and vulnerability management
Solid understanding of TCP/IP IPv4/v6, experience of office network (Routing / Switching / WAN, Wi-Fi & Security) management and network security concepts
Strong knowledge of cybersecurity frameworks (e.g., NIST, MITRE), threat intelligence, and incident response methodologies
Experiences with SOC 2 Type 2, HITRUST, and ISO compliance frameworks. Interact with the compliance team to ensure the company compliant and remediate gaps during compliance finding and controls
Excellent verbal and written communication/presentation, ability to explain complex technical concepts to both technical and non-technical audiences
Benefits
Great benefits package
Comprehensive benefits with strong medical, dental and vision insurance plans
401K plan
Professional development & training opportunities for continuous learning
Work/life autonomy via flexible work hours and flexible paid time off
Generous parental leave
Regular team activities (virtual and in-person)
Company
Truveta
Truveta is a healthcare data platform that provides EHR data for scientific research.
Funding
Current Stage
Growth StageTotal Funding
$515MKey Investors
Microsoft
2025-01-13Series C· $320M
2021-11-09Series Unknown· $100M
2021-09-29Corporate Round
Recent News
Company data provided by crunchbase