Endpoint Security Engineer III jobs in United States
cer-icon
Apply on Employer Site
company-logo

Apex Systems · 1 day ago

Endpoint Security Engineer III

Apex Systems is a world-class IT services company that serves thousands of clients across the globe. They are seeking a skilled Senior Endpoint Security Engineer to enhance endpoint cyber hygiene and strengthen the vulnerability management program across various environments. The role involves identifying, prioritizing, and remediating endpoint vulnerabilities while contributing to secure baseline configurations and automation initiatives across the enterprise.

Human ResourcesInformation TechnologyRecruiting
check
H1B Sponsor Likelynote

Responsibilities

Identify, analyze, and prioritize endpoint vulnerabilities using tools such as Tenable, Axonius, Jamf Pro, SCCM, Intune, Active Directory, and Entra
Evaluate environmental and operational factors affecting remediation feasibility and timelines
Provide risk‑based recommendations to advance client’s vulnerability management program
Develop, test, and deploy remediation scripts and configurations for Windows and macOS using Jamf, ConfigMgr/SCCM, Intune, and Group Policy
Write secure, modular, and maintainable automation (PowerShell, Bash, Python), including basic error handling and logging
Create clear documentation for scripts, configurations, purpose, usage, and security considerations
Maintain a structured remediation library and support use of version control systems such as Git
Contribute to secure baseline configurations aligned with: CSPP, NIST 800‑53 Rev 5, CIS Benchmarks, Microsoft Security Baselines, DISA STIGs, macOS Security Compliance Project
Assist in developing, testing, implementing, and documenting baseline configurations
Monitor baseline adoption, identify deviations, and recommend improvements
Participate in team meetings, providing status updates, proposing improvements, and discussing implementation approaches
Monitor endpoint compliance and deliver reporting to leadership on baseline effectiveness and remediation progress

Qualification

Endpoint Security EngineeringVulnerability ManagementSCCMJamf ProMicrosoft IntunePowerShellBashPythonGitNIST 800-53CIS BenchmarksDISA STIGsAnalytical SkillsProblem-SolvingClear CommunicationTeam Collaboration

Required

3–5 years' experience in large, complex enterprise environments
Hands‑on expertise with SCCM, Jamf Pro, and/or Microsoft Intune for managing Windows and macOS endpoints
Experience packaging and deploying applications, updates, and scripts at scale
Familiarity with Group Policy and Intune configuration profiles
Strong scripting experience in PowerShell, Bash, Python, focusing on modular, reusable, and secure coding practices
Understanding of SDLC principles: requirements, design, implementation, testing, deployment, and maintenance
Experience with Git and collaborative workflows (branching, pull requests, peer review)
Ability to write clear technical documentation for cross-team adoption
Knowledge of vulnerability management processes and key industry resources, including: CVE Program, NIST NVD, CISA KEV Catalog
Experience applying frameworks such as NIST 800‑53 Rev 5, CIS Benchmarks, DISA STIGs, Microsoft Security Baselines, and macOS Security Compliance Project
Familiarity with Tenable.SC or Tenable.VM for vulnerability scanning and analysis
Ability to translate technical remediation into measurable improvements in endpoint security posture
Strong analytical and problem‑solving abilities focused on reducing organizational risk
Clear communication skills for both technical and non‑technical audiences
Collaborative, team‑oriented mindset for working within a mixed Windows/macOS engineering environment

Benefits

Medical
Dental
Vision
Life
Disability
Employee stock purchase program
401K program
Health Savings Account on the HDHP plan
SupportLinc Employee Assistance Program (EAP) with up to 8 free counseling sessions
Corporate discount savings program
On-demand training program
Access to certification prep
Library of technical and leadership courses/books/seminars
Certification discounts
Career Coach

Company

Apex Systems

company-logo
Apex Systems, a division of On Assignment, provides organizations with IT staffing solutions to address gaps in their current workforce.

H1B Sponsorship

Apex Systems has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (28)
2024 (21)
2023 (35)
2022 (26)
2021 (29)
2020 (38)

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
Roger Wahman
Chief Technology Officer - SVP
linkedin
leader-logo
Andrea Schiola
Global Head of Technology Partnerships, SVP, Principal
linkedin
Company data provided by crunchbase