Endpoint Security & Exposure Engineer (Cyber Security)
Jacobs
The Endpoint Security & Exposure Management Engineer is responsible for the design, implementation, administration, and continuous improvement of endpoint security controls and enterprise exposure management capabilities. This role focuses on reducing organizational cyber risk through effective application control, privilege management, vulnerability management, and remediation governance. The successful candidate will serve as a technical subject matter expert for endpoint security technologies and exposure management platforms, within the Cybersecurity Engineering team, working closely with infrastructure, desktop engineering, application support, cloud, and wider IT teams to strengthen the organization's security posture and ensure timely remediation of identified risks. Key Responsibilities Endpoint Security Design, implement, and maintain endpoint security controls across Windows, Linux, and macOS environments. Administer and optimize application control and application allowlisting solutions. Develop and maintain privilege management policies based on Zero Trust and least-privilege principles. Investigate and resolve endpoint security issues related to application execution, privilege elevation, and policy enforcement. Collaborate with desktop engineering teams to develop secure endpoint standards and configurations. Support endpoint hardening initiatives aligned with industry best practices and security frameworks. Develop reporting and metrics to demonstrate endpoint security effectiveness and risk reduction. Exposure Management & Vulnerability Management Manage the enterprise vulnerability management lifecycle, including identification, assessment, prioritization, remediation, and validation. Administer vulnerability scanning and assessment platforms across on-premises, cloud, and hybrid environments. Analyze vulnerability findings and prioritize remediation activities based on risk, exploitability, asset criticality, and business impact. Drive remediation efforts with infrastructure, application, cloud, and operations teams. Monitor remediation performance against defined service level objectives and security policies. Perform vulnerability trend analysis and identify recurring risk patterns. Support attack surface reduction initiatives through proactive exposure identification and mitigation. Administer and maintain ServiceNow Vulnerability Response. Configure integrations between ServiceNow and vulnerability assessment platforms. Develop and optimize vulnerability workflows, assignment rules, remediation tasks, and reporting. Monitor remediation progress and ensure effective stakeholder engagement. Create dashboards and executive-level reporting to communicate exposure trends and remediation performance. Security Operations & Risk Management Support security incident investigations involving vulnerable systems, unauthorized privilege use, or endpoint compromise. Assess emerging vulnerabilities, threats, and security advisories to determine organizational impact. Provide risk-based recommendations for remediation and compensating controls. Participate in security assessments, audits, and compliance activities. Contribute to cybersecurity standards, policies, and technical security roadmaps. Act as a technical advisor for endpoint security and vulnerability management initiatives. Key Technical Skills Endpoint Security Application control and allowlisting technologies Privilege management solutions Endpoint hardening methodologies Zero Trust security principles Least-privilege administration Endpoint security architecture Vulnerability & Exposure Management Vulnerability assessment and management Exposure management practices Risk prioritization frameworks Attack surface management Patch and remediation management Security risk analysis Platforms & Technologies Microsoft Windows Server and Windows 11 Linux operating systems Active Directory and Entra ID Microsoft Intune Microsoft Defender for Endpoint Cloud platforms (Azure, AWS, or Google Cloud) ServiceNow Vulnerability Response Scripting & Automation PowerShell Python API integrations and workflow automation Security reporting and dashboard development Minimum 5 years of experience in cybersecurity, endpoint security, vulnerability management, or security engineering. Hands-on experience administering application control and privilege management solutions. Extensive experience managing enterprise vulnerability management programs. Experience working with ServiceNow Vulnerability Response. Experience using leading vulnerability management platforms such as: Rapid7 Tenable Qualys Experience working within large enterprise environments. Strong understanding of risk-based vulnerability management and remediation prioritization. Preferred Qualifications Experience implementing Zero Trust security controls. Experience with endpoint detection and response (EDR) platforms. Familiarity with security frameworks including: NIST Cybersecurity Framework CIS Controls
ISO 27001
NCSC Cyber Assessment Framework Cyber Essentials Plus Defence Cyber Certification, Levels 0-3 ACSC Essential Eight Experience with cloud security and hybrid infrastructure environments. Experience leading vulnerability remediation programs across multiple technology domains. Preferred CertificationsCISSP
GIAC Security Certifications CompTIA Security* Certified Information Security Manager (CISM) ServiceNow Certified Implementation Specialist Tenable Certified Professional Qualys Certified Specialist Microsoft Security Certifications#LI-MB5
Jacobs is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, religion, creed, color, national origin, ancestry, sex (including pregnancy, childbirth, breastfeeding, or medical conditions related to pregnancy, childbirth, or breastfeeding), age, medical condition, marital or domestic partner status, sexual orientation, gender, gender identity, gender expression and transgender status, mental disability or physical disability, genetic information, military or veteran status, citizenship, low-income status or any other status or characteristic protected by applicable law. Learn more about your rights under Federal EEO laws and supplemental language. Jacobs- ...Title: Associate Security Engineer, Identity Security KBR is seeking an Associate Security Engineer to join our Identity Security Services... ..., SIEM technologies, or security monitoring tools. Exposure to SAML, OAuth, OpenID Connect, SCIM, LDAP, Kerberos, PKI, or...SuggestedPermanent employmentFull timeLocal area
$226k - $339.7k
...Vice President to lead our global Cyber Exposure Management / Cyber Engineering & Architecture organization within... ...defense capabilities, shape long-term security architecture strategy, and lead... ...roadmaps for cloud, IAM, endpoint, network, AI, DevSecOps, and OT security...SuggestedFull timeWork at office- ...Cybersecurity Analyst / Engineer to build, operate, and... ...'s information security program. The complexity... ...Manage Defender for Endpoint, Defender for Cloud, and... ...impersonation schemes Cyber Fraud Monitoring &... ...phishing and impersonation exposure Investigate...SuggestedContract workFor contractors
- ...quality standards, and exceptional customer service. Security Engineer – Network & Identity: The Security Engineer (Network & Identity... ...maintain Zero Trust architectures across network, identity, endpoint, application, and cloud environments. Design and...SuggestedFull timeFor contractorsWork at officeRemote workVisa sponsorship
$100k - $110k
...We are seeking a Cybersecurity Analyst to join a growing IT security team and help protect the organization’s systems, data, and technology... ...: Monitor and investigate security alerts across endpoints, identity, email, cloud, and network environments Identify,...Suggested- ...Senior Network Security Engineer Client is an innovative, dynamic company with a rich past and a promising future. Originally... ...and Event Management (SIEM) systems. • Collaborate with Cyber Security, infrastructure, and application teams toward...
$110k - $135k
...GetixHealth is seeking an experienced Security Engineer II, SecOps to join our Information Technology team. This mid-level role is responsible... ..., and improving technical security controls across cloud, endpoint, network, identity, and application environments....Full timeTemporary workRemote workFlexible hours- ...monitoring, risk management, incident response, security governance, and continuous improvement... ...compliance, vendor risk management, and cyber resilience initiatives aligned with NIST... ...validation processes. Assist in managing endpoint security technologies including EDR, NGAV...
- ...provide services to us. Who we are looking for: The Senior Security Engineer serves as a senior cybersecurity resource responsible for supporting... .... Evaluate AI-related risks including unauthorized data exposure, excessive permissions, third-party AI integrations,...Casual workAfternoon shift
$173.9k - $290.1k
...an entirely new frontier of security, governance, and risk management... .... As a Manager within EY's Cyber practice focused on AI Security... ...concepts clearly to both engineering teams and executive audiences... ...supply chain risk management. Exposure to AI‑related regulatory...Immediate start- ...infrastructure and application scanning, phishing campaigns, cloud access security broker, and other cross functional security tools. Engage... ...’s degree in Information Technology (IT), Computer Science, Engineering or equivalent experience. Strong desire to grow capability to...Remote work
- ...Senior Cloud Security Engineer Are you passionate about securing modern cloud environments... ...tools such as Terraform, ARM, or Bicep Exposure to container security and CI/CD... ...passion for staying ahead of evolving cyber threats Why Join Us? Collaborative...Night shiftWeekend workAfternoon shift
- ...Cloud Security Engineer Greenberg Traurig (GT), a global law firm with locations across the world in 15 countries, has an exciting employment... ...security, or infrastructure roles, with significant exposure to Azure security Certifications such as AI-900, AZ 500,...
$90 per hour
...might typically: Analyze and investigate simulated security alerts and incidents across endpoints, identities, and cloud environments Conduct... ...Cybersecurity, Digital Forensics, Network or Computer Engineering or other related fields. Recognized industry certification...Part timeFreelanceWork at officeRemote work- ...Analyst to support and strengthen enterprise security operations in Houston, Texas. This Long-... ...reliable business operations.• Support endpoint security for Windows 10 devices by... ...implement corrective actions to reduce exposure and improve stability.• Document configurations...Long term contract
- ...Position Summary The BISO (Business Information Security Officer) Engineer serves as an embedded cybersecurity practitioner within a assigned... ...configurations, identity & access management reviews, endpoint protection, and cloud security posture Represent the...Work at office
$68k - $133.9k
Position Summary Cyber Oracle Cloud Security - Analyst / Security Engineer I Deloitte’s Cyber team helps organizations address complex cybersecurity challenges while supporting resilient, secure growth. In this role, you will support Oracle Cloud security engagements...Local areaVisa sponsorship- ...Deputy Chief Information Security Officer (CISO) About the Company Industry-leading cybersecurity... ...Security Cloud Security Cyber Security Information Technology Specialties... ...security operations center endpoint detection & response edr vulnerability...
- ...decisions, and move work forward securely, efficiently and confidently.... ...(e.g., vulnerabilities, OT exposures) into business‑relevant... ...architectures Partner with engineering and operations teams to understand... ...in collaboration with Cyber teams Gather, document, and...
- At Houston Methodist, the Cyber Security Enterprise Architect position is responsible for designing, implementing, and maintaining enterprise... ...Science, Information Technology, Cybersecurity, Computer Engineering or related field Master's degree preferred...Full time
- Senior Information Security Engineer The Senior Information Security Engineer supports the organization's cybersecurity efforts by assisting... ...365 workloads (Exchange, SharePoint, OneDrive, Teams), endpoint devices, and cloud apps. You will collaborate with cross-functional...Work experience placementWork at office
- ...passionate about protecting organizations from cyber threats and helping shape the future of... ..., you’ll monitor, detect, and respond to security incidents, while working alongside... ...software reviews based on data protection and endpoint risks Responsible for implementing and...Work at officeRemote workMonday to FridayAfternoon shift
- ...Vice President, Endpoint Platform Engineering About the Company Pioneering cybersecurity solutions... ...platform Industry Computer & Network Security Type Privately Held, VC-backed... ..., with a clear mission to end cyber risk. Strategic responsibilities include...
- ...Cyber Security Analyst *** Houston, Texas onsite work required. Candidates available to move immediately will be considered. This is an expected 6-month client contract-to-hire position.*** Candidate must be local on reporting date and willing to work at 1100 Louisiana...Contract workLocal areaImmediate startMonday to Friday
$155.6k - $306.8k
Position Summary As an Engineering Manager in Deloitte Cyber’s Digital Trust & Privacy practice, you will help clients solve complex identity... ...(financial services, healthcare, public sector) and exposure to associated compliance regimes (SOX, PCI DSS, FFIEC,...Local areaVisa sponsorship$105.4k - $207.8k
Position Summary Cyber Senior Consultant - DevSecOps Position... ...place for you. Traditional security programs have often been... ...Cybersecurity, Information Technology, Engineering, Information Systems, or a... ...of experience or project exposure to AI-enabled cybersecurity,...Local areaWorldwideVisa sponsorship$105.4k - $207.8k
Position Summary Cyber Palo Alto Networks Security Engineer/ Senior Consultant, Strategy, Growth, and TransformationDeloitte’s Cyber business is passionate about making an impact with lasting change. Delivering our industry leading services requires fresh thinking...Work experience placementLocal areaRemote work$155.6k - $306.8k
Position Summary Deloitte Cyber understands the unique... ...and proactively manage their security posture.Recruiting for this role... ...:As a Cyber Forward Deployed Engineer (FDE) Manager, you will lead... ...software development lifecycle.Exposure to search/analytics platforms...Local areaVisa sponsorship$134.5k - $265.1k
Position Summary Join Deloitte’s Cloud Cyber Risk practice as a Forward Deployed Security Engineer and help organizations secure their Amazon Web Services (AWS) cloud and AI workloads at scale while working directly with client engineering teams. This is not an assessment...Visa sponsorship$82.6k - $162.8k
Position Summary Our Deloitte Cyber team understands the unique challenges and opportunities... ...confidence, and proactively manage to secure success.Recruiting for this role ends on 12/31/2026.Work you'll doAs a Security Engineer on the Deloitte Cyber team, you will be...Local areaVisa sponsorship
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Endpoint Security & Exposure Engineer (Cyber Security). Be the first to apply!
- senior security operations engineer Houston, TX
- security software engineer Houston, TX
- entry level security engineer Houston, TX
- network security engineer Houston, TX
- sr information security engineer Houston, TX
- IT security engineer Houston, TX
- aws cloud security engineer Houston, TX
- security engineer Houston, TX
- application security engineer Houston, TX
- senior cloud security engineer Houston, TX



