Apply Edge Start your job search

Security Engineer (Endpoint)

REDLEO SOFTWARE INC. · New York City Metropolitan Area

Apply & track with Apply Edge
Immediate role!Endpoint Security Engineer / Endpoint & Identity Security EngineerLocation: NYCType: Onsite role at NYC client siteVisa: Any visa OKLOCAL to Tristate prefer...Must have: Hardening, AD security, endpoint protection, vulnerability remediation, and automationWe need someone who can strengthen enterprise security by implementing hardening standards, securing Active Directory, and managing endpoint protection across Windows and Linux environments. Maintain CIS‑aligned baselines, enforce GPO‑driven security controls, and support vulnerability remediation using industry‑leading tools. Ensure endpoints, servers, and identities remain compliant, resilient, and securely configured. Key Focus Areas:CIS Benchmark hardening (Windows/Linux)Active Directory & GPO security governanceEndpoint protection (Defender, CrowdStrike, SentinelOne, Trellix)Vulnerability management (Tenable/Qualys/Rapid7)PAM, MFA, encryption, whitelisting & device controlPowerShell automation for security configuration Required Skills:Windows Server & Active Directory AdministrationCIS Benchmark Hardening (Windows, Linux, endpoints)Group Policy (GPO) Security & GovernanceEndpoint Security Platforms: Microsoft Defender, CrowdStrike, SentinelOne, Trellix, SymantecCore Security Controls: PAM, MFA, Encryption, Application Whitelisting, Device ControlVulnerability Management Tools: Tenable, Qualys, or Rapid7Security Frameworks: CIS, NIST, ISO 27001PowerShell AutomationCertifications related to work: (any or as many is okay—as these are plus)CIS Secure Suite Certified Practitioner (CIS‑CP)SC‑300 (Identity & Access Administrator)AZ‑500 (Azure Security Engineer)SC‑200 (Security Operations Analyst)CrowdStrike CCFA or Sentinel One SIRENQualys / Tenable / Rapid7 VM CertificationAPPLY NOW!