Sr. Endpoint Vulnerability Remediation Engineer - Contract
Early Warning · Chicago, IL · 1 wk ago
Engineering$106k–$130k/yrFull-time
About the role
This position leads the identification, prioritization, and remediation of endpoint vulnerabilities across the enterprise. Designs and executes processes for securing endpoint systems, including patch management, configuration hardening, and vulnerability mitigation. Provides strategic and tactical guidance to technical teams and business units to reduce risk exposure. Works with security, infrastructure, and endpoint management teams, as well as vendors, to remediate the platforms.
Responsibilities
- Drive endpoint vulnerability remediation efforts, including identification, prioritization, and resolution of vulnerabilities across Windows and Mac.
- Design and implement patch management and vulnerability remediation strategies, ensuring timely deployment and compliance with organizational SLAs.
- Partner with Security, Infrastructure, and Application teams to assess risk, validate remediation actions, and reduce overall attack surface.
- Create and maintain policies, standards, and technical documentation related to endpoint security, patching, and vulnerability management.
- Create and maintain dashboards and reporting to track vulnerability posture, remediation progress, and risk reduction metrics.
- Represent Workplace Technology in Technology Review Boards, ensuring security best practices and consistent methodologies are applied.
- Work closely with internal teams and external vendors to resolve vulnerabilities in a timely manner, including driving escalations and ensuring SLA adherence.
- Act as an escalation point for critical vulnerabilities, security incidents, and remediation blockers.
- Participate in incident, problem, and change management processes as they relate to endpoint vulnerabilities and security risks.
- Support automation of vulnerability detection and remediation using scripting and DevOps practices.
- Aid in supporting the company's commitment to protecting the integrity and confidentiality of systems and data.
Requirements
- Education or experience equivalent to a Bachelor’s degree in computer science, cybersecurity, or engineering.
- Minimum of 5+ years of experience in endpoint management, vulnerability management, or infrastructure/security engineering.
- Demonstrated experience in a medium-to-large-scale enterprise environment.
- Proven experience with Endpoint vulnerability management tools (e.g., Rapid7), Endpoint detection and response (EDR) platforms (e.g., CrowdStrike, Defender for Endpoint), Patch management solutions (e.g., SCCM/MECM, Intune, WSUS), Operating systems: Windows and Mac endpoint administration and hardening, Security configuration standards (e.g., CIS benchmarks), Network fundamentals (TCP/IP, DNS, ports, firewalls) as they relate to vulnerability remediation, Scripting/automation (e.g., PowerShell, Python, Bash), Risk-based vulnerability prioritization and remediation strategies.
- Strong understanding of security principles, including encryption protocols and endpoint protection.
- Ability to work in a fast-paced environment and manage competing priorities.
- Excellent interpersonal and communication skills.
Qualifications
- Experience with vulnerability reporting and analytics tools such as Splunk, Power BI, or similar platforms.
- Experience integrating vulnerability management with ticketing/workflow systems (e.g., ServiceNow).
- Certifications such as CISSP, CEH, Security+, or relevant endpoint/security certifications.
Skills
- Experience with automation/orchestration tools for remediation workflows.
Benefits
Not specified.
Pay
Base Pay Scale For This Position In Phoenix, AZ/ Chicago, IL in USD per year is: $106,000 - $130,000. San Francisco, CA in USD per year is: $128,000 - $156,000.
Schedule
Hybrid work model.