Apex Systems · 1 day ago
Endpoint Security Engineer III
Apex Systems is a world-class IT services company that serves thousands of clients across the globe. They are seeking a skilled Senior Endpoint Security Engineer to enhance endpoint cyber hygiene and strengthen the vulnerability management program across various environments. The role involves identifying, prioritizing, and remediating endpoint vulnerabilities while contributing to secure baseline configurations and automation initiatives across the enterprise.
Human ResourcesInformation TechnologyRecruiting
Responsibilities
Identify, analyze, and prioritize endpoint vulnerabilities using tools such as Tenable, Axonius, Jamf Pro, SCCM, Intune, Active Directory, and Entra
Evaluate environmental and operational factors affecting remediation feasibility and timelines
Provide risk‑based recommendations to advance client’s vulnerability management program
Develop, test, and deploy remediation scripts and configurations for Windows and macOS using Jamf, ConfigMgr/SCCM, Intune, and Group Policy
Write secure, modular, and maintainable automation (PowerShell, Bash, Python), including basic error handling and logging
Create clear documentation for scripts, configurations, purpose, usage, and security considerations
Maintain a structured remediation library and support use of version control systems such as Git
Contribute to secure baseline configurations aligned with: CSPP, NIST 800‑53 Rev 5, CIS Benchmarks, Microsoft Security Baselines, DISA STIGs, macOS Security Compliance Project
Assist in developing, testing, implementing, and documenting baseline configurations
Monitor baseline adoption, identify deviations, and recommend improvements
Participate in team meetings, providing status updates, proposing improvements, and discussing implementation approaches
Monitor endpoint compliance and deliver reporting to leadership on baseline effectiveness and remediation progress
Qualification
Required
3–5 years' experience in large, complex enterprise environments
Hands‑on expertise with SCCM, Jamf Pro, and/or Microsoft Intune for managing Windows and macOS endpoints
Experience packaging and deploying applications, updates, and scripts at scale
Familiarity with Group Policy and Intune configuration profiles
Strong scripting experience in PowerShell, Bash, Python, focusing on modular, reusable, and secure coding practices
Understanding of SDLC principles: requirements, design, implementation, testing, deployment, and maintenance
Experience with Git and collaborative workflows (branching, pull requests, peer review)
Ability to write clear technical documentation for cross-team adoption
Knowledge of vulnerability management processes and key industry resources, including: CVE Program, NIST NVD, CISA KEV Catalog
Experience applying frameworks such as NIST 800‑53 Rev 5, CIS Benchmarks, DISA STIGs, Microsoft Security Baselines, and macOS Security Compliance Project
Familiarity with Tenable.SC or Tenable.VM for vulnerability scanning and analysis
Ability to translate technical remediation into measurable improvements in endpoint security posture
Strong analytical and problem‑solving abilities focused on reducing organizational risk
Clear communication skills for both technical and non‑technical audiences
Collaborative, team‑oriented mindset for working within a mixed Windows/macOS engineering environment
Benefits
Medical
Dental
Vision
Life
Disability
Employee stock purchase program
401K program
Health Savings Account on the HDHP plan
SupportLinc Employee Assistance Program (EAP) with up to 8 free counseling sessions
Corporate discount savings program
On-demand training program
Access to certification prep
Library of technical and leadership courses/books/seminars
Certification discounts
Career Coach
Company
Apex Systems
Apex Systems, a division of On Assignment, provides organizations with IT staffing solutions to address gaps in their current workforce.
H1B Sponsorship
Apex Systems has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (28)
2024 (21)
2023 (35)
2022 (26)
2021 (29)
2020 (38)
Funding
Current Stage
Late StageLeadership Team
Recent News
Company data provided by crunchbase