Auris | formerly Heartland · 7 hours ago
Senior Endpoint Security Engineer
Auris, formerly Heartland, is focused on building a community where individuals can thrive and make an impact. They are seeking a Senior Endpoint Security Engineer to secure and manage endpoints across a modern, hybrid enterprise, ensuring a resilient endpoint ecosystem through the design and enforcement of security baselines and automation of compliance.
Financial Services
Responsibilities
Lead the design, implementation, and tuning of Microsoft Intune (Endpoint Manager) for Windows, macOS, iOS, and Android endpoints
Create paved road device baselines with pre-configured encryption, firewall, endpoint detection, patching, and configuration standards
Administer and integrate Microsoft Defender for Endpoint (MDE) for advanced threat protection, behavioral detection, and automated remediation
Ensure policy consistency across cloud-managed and hybrid-joined devices (Intune, Group Policy, Azure AD)
Define and enforce endpoint security configurations in line with enterprise standards/policies
Implement Conditional Access policies and device compliance posture checks in Microsoft Entra (Azure AD)
Collaborate with Cloud, IAM, and GRC teams to align device security controls to frameworks such as CIS Benchmarks, NIST CSF, and Zero Trust
Integrate endpoint telemetry into SIEM/SOAR systems for threat correlation and automated response
Develop automation workflows using PowerShell, Graph API, or Azure Automation to streamline policy deployment, patching, and reporting
Integrate Intune and MDE with broader security orchestration and compliance tools (e.g., Wiz, ServiceNow, Sentinel)
Implement policy-as-code concepts for device configurations and compliance validation
Work with IT Operations to continuously improve speed, reliability, and security of patch management cycles
Partner with Desktop Engineering, IT, and Cloud Security teams to ensure cohesive endpoint and identity integration
Provide guidance and documentation for secure endpoint configuration and troubleshooting
Develop and deliver training or quick-start guides for IT support staff on endpoint compliance and security posture management
Qualification
Required
5+ years of experience in Endpoint Security Engineering, IT Security, or related infrastructure roles
Hands-on expertise with Microsoft Intune / Endpoint Manager, Defender for Endpoint (MDE), and Azure AD Conditional Access
Strong knowledge of Windows 10/11 and macOS management and hardening best practices
Experience with PowerShell scripting, Microsoft Graph API, or similar automation frameworks
Familiarity with MDM and MAM policies, compliance baselines, and zero-touch deployment processes
Understanding of Zero Trust, least privilege, and device compliance principles
Strong troubleshooting and analytical skills across OS, network, and endpoint layers
Preferred
Experience integrating endpoint telemetry with SIEM/SOAR systems (e.g., Sentinel, Splunk)
Familiarity with Defender for Identity, Defender for Cloud Apps, or other Microsoft 365 Defender suite components
Exposure to vulnerability management and patch automation tools (e.g., TVM, Tanium, or Qualys)
Relevant certifications such as Microsoft Certified: Endpoint Administrator Associate, MD-102, SC-200, or CompTIA Security+
Benefits
Comprehensive medical insurance
Dental insurance
Vision insurance
Life and disability insurance
Fertility benefits
Wellness resources
Paid sick time
Generous paid time off and holidays
Employee Assistance Program (EAP)
A complimentary Calm app subscription
Immediate vesting in a 401(k) plan
Health Savings Account (HSA) and Flexible Spending Account (FSA) options
Commuter benefits
Employee discount programs
Paid maternity leave
Paid paternity leave (including for adoptive parents)
Legal plan options
Pet insurance coverage
Company
Auris | formerly Heartland
Auris™ is the payroll and HR partner built for small and medium-sized businesses who can’t afford to get it wrong.
Funding
Current Stage
Late StageCompany data provided by crunchbase