Talent.com
Staff Endpoint Security Engineer
Staff Endpoint Security EngineerGrand Rounds • Fresno, CA, United States
Staff Endpoint Security Engineer

Staff Endpoint Security Engineer

Grand Rounds • Fresno, CA, United States
[job_card.variable_days_ago]
[job_preview.job_type]
  • [job_card.full_time]
[job_card.job_description]

Staff Endpoint Security Engineer

The Staff Endpoint Security Engineer is a critical, hands-on technical role responsible for designing, implementing, and maintaining robust security controls and detection mechanisms across all company and Bring-Your-Own-Device (BYOD) endpoints, including laptops, desktops, mobile phones, and other devices used by staff and contractors. This role is pivotal in protecting Included Health's sensitive data, particularly Protected Health Information (PHI), by preventing unauthorized exfiltration from endpoints and ensuring the security of devices accessing company resources. You will be instrumental in architecting and deploying advanced endpoint defenses, managing security tools, and contributing to threat response to reduce the number and criticality of HIPAA-related incidents. We are looking for deep technical expertise in endpoint security across diverse operating systems (Windows, macOS, ChromeOS, iOS, Android), strong automation skills for building and maintaining defenses, and a proactive approach to identifying and remediating vulnerabilities. This is a remote role reporting to the Chief Information Security Officer.

Responsibilities :

  • Develop, implement, and maintain a comprehensive endpoint security strategy, architecture, and roadmap covering all corporate and BYOD endpoints, with a focus on proactive defense and detection engineering.
  • Design and enforce security configurations, hardening standards, and baselines for diverse operating systems (Windows, macOS, ChromeOS, iOS, Android, and potentially others) to minimize attack surfaces.
  • Lead the selection, deployment, administration, and optimization of endpoint security solutions, including Endpoint Detection and Response (EDR / XDR) for threat detection, Mobile Device Management (MDM / UEM) for policy enforcement, Data Loss Prevention (DLP) for data protection, anti-malware, and endpoint encryption.
  • Develop and implement robust DLP policies and controls to prevent PHI and other sensitive data from leaving authorized systems via endpoints.
  • Manage endpoint encryption technologies (e.g., BitLocker, FileVault, mobile encryption) to ensure data at rest is protected.
  • Proactively look for threats on endpoints to identify gaps in defenses and inform the development of new detection capabilities.
  • Support and provide expertise during incident response activities for endpoint-related security events, with a focus on root cause analysis to enhance preventative and detective controls.
  • Conduct vulnerability assessments, manage endpoint patching and remediation efforts to address identified weaknesses in a timely manner, strengthening overall endpoint resilience.
  • Develop, document, and enforce endpoint security policies, standards, and procedures, particularly for BYOD environments, ensuring compliance with HIPAA and other relevant regulations.
  • Automate endpoint security tasks, compliance checks, defensive measure deployments, and reporting using scripting languages (e.g., Python, PowerShell, Bash) and security orchestration tools.
  • Collaborate closely with IT operations, network security, application development, and legal / compliance teams to ensure a cohesive security posture and integrate endpoint defenses.
  • Provide expert consultation and support to end-users and IT staff on endpoint security matters and best practices.
  • Stay current with the latest endpoint threats, vulnerabilities, and security technologies to continuously improve our defenses.

Qualifications :

  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
  • 5+ years of experience in endpoint security, with a strong emphasis on designing, building, implementing, and managing security controls, detection mechanisms, and defensive capabilities across a diverse range of endpoint operating systems (Windows, macOS, iOS, Android).
  • Proven hands-on experience with leading Endpoint Detection and Response (EDR / XDR) solutions (e.g., CrowdStrike, SentinelOne, Microsoft Defender for Endpoint, Carbon Black) for threat detection engineering and security policy enforcement.
  • Demonstrable experience with Mobile Device Management (MDM) / Unified Endpoint Management (UEM) platforms (e.g., Microsoft Intune, Jamf Pro, VMware Workspace ONE, Kandji, MobileIron) for enforcing security configurations and policies.
  • Strong knowledge of endpoint hardening techniques, security configuration management, and policy enforcement across multiple OS platforms, with a focus on building resilient systems.
  • Experience designing and implementing endpoint Data Loss Prevention (DLP) strategies and tools.
  • Proficiency in scripting languages (e.g., Python, PowerShell, Bash) for automating endpoint security tasks, tool integrations, and deployment of defensive measures.
  • Experience with endpoint attack vectors, malware, persistence mechanisms, and designing effective mitigation and detection techniques.
  • Experience with endpoint vulnerability management, patch management processes, and tools, focused on proactive remediation.
  • Experience with network security principles (TCP / IP, DNS, DHCP, VPNs, firewalls) as they relate to designing and implementing endpoint security controls.
  • Experience working in regulated environments and a strong understanding of HIPAA compliance requirements as they apply to endpoint protection and data handling.
  • Pay : The United States new hire base salary target ranges for this full-time position are :

    Zone A : $174,320 - $246,230 + equity + benefits

    Zone B : $191,752 - $270,853 + equity + benefits

    Zone C : $209,184 - $295,476 + equity + benefits

    Zone D : $226,616 - $320,099 + equity + benefits

    This range reflects the minimum and maximum target for new hire salaries for candidates based on their respective Zone. Below is additional information on Included Health's commitment to maintaining transparent and equitable compensation practices across our distinct geographic zones.

    Starting base salary for you will depend on several job-related factors, unique to each candidate, which may include education; training; skills; years and depth of experience; certifications and licensure; our needs; internal peer equity; organizational considerations; and understanding of geographic and market data. Compensation structures and ranges are tailored to each zone's unique market conditions to ensure that all employees receive fair and great compensation package based on their roles and locations. Your Recruiter can share your geographic zone upon inquiry.

    Benefits & Perks : In addition to receiving a great compensation package, the compensation package may include, depending on the role, the following and more :

    Remote-first culture

    401(k) savings plan through Fidelity

    Comprehensive medical, vision, and dental coverage through multiple medical plan options (including disability insurance)

    Paid Time Off ("PTO") and Discretionary Time Off ("DTO")

    12 weeks of 100% Paid Parental leave

    Family Building & Compassionate Leave : Fertility coverage, $25,000 for surrogacy / adoption, and paid leave for failed treatments, adoption or pregnancies.

    Work-From-Home reimbursement to support team collaboration home office work

    Your recruiter will share more about the salary range and benefits package for your role during the hiring process.

    About Included Health

    Included Health is a new kind of healthcare company, delivering integrated virtual care and navigation. We're on a mission to raise the standard of healthcare for everyone. We break down barriers to provide high-quality care for every person in every community no matter where they are in their health journey or what type of care they need, from acute to chronic, behavioral to physical. We offer our members care guidance, advocacy, and access to personalized virtual and in-person care for everyday and urgent care, primary care, behavioral health, and specialty care. It's all included.

    [job_alerts.create_a_job]

    Staff Security Engineer • Fresno, CA, United States

    [internal_linking.similar_jobs]
    Project Engineer I / II / III

    Project Engineer I / II / III

    Kotman • Clovis, CA, United States
    [job_card.full_time]
    We're looking for passionate Project Engineers who thrive at the intersection of technology and people.At Kotman Technology, we work with clients across multiple industries-from agriculture and non...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Project Engineer / Assistant Project Manager

    Project Engineer / Assistant Project Manager

    Gpac • Fresno, California, United States
    [job_card.full_time]
    [filters_job_card.quick_apply]
    Project Engineer / Assistant Project Manager – Mechanical / HVAC.Fresno, CA | Above-Average Pay | Excellent Benefits | Career Growth. Fresno commercial Mechanical / HVAC subcontractor.Read plans a...[show_more]
    [last_updated.last_updated_30]
    Junior Sotware Engineer

    Junior Sotware Engineer

    Parsec Education, Inc. • Fresno, CA, United States
    [job_card.full_time]
    The Junior Software Developer will play a key role in helping us achieve our mission to improve and transform K-12 education. Your focus will be on supporting and maintaining software systems that e...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Risk Control Consultant (SRT)

    Risk Control Consultant (SRT)

    AmTrust Financial • Fresno, California, United States
    [job_card.full_time]
    Risk Control Consultant on the Strategic Risk Team (SRT) plays a key role in supporting underwriting, sales, claims, clients, agents, and brokers by providing expert guidance to key risk and agents...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    NGTS SME (Systems Engineer)

    NGTS SME (Systems Engineer)

    Aviation Systems Engineering Company • Lemoore, CA, United States
    [job_card.full_time]
    Security Clearance Requirement : .Telework Eligible? No - 100% On-Site.Provide NGTS operational support to design, refine, and execute dynamic, high-fidelity training scenarios that challenge and enh...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Senior Security Architect

    Senior Security Architect

    TradeJobsWorkForce • 93720 Fresno, CA, US
    [job_card.full_time]
    Senior Security Architect Job Duties : Enhances security team accomplishments and competence by planning deliv...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Security Installer III

    Security Installer III

    Johnson Controls • Fresno, CA, US
    [job_card.full_time]
    Unleash your potential with the Johnson Controls team! As a global leader in smart, healthy and sustainable buildings, our mission is to reimagine the performance of buildings to serve people, plac...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Nuclear Engineer

    Nuclear Engineer

    US Navy • Fresno, CA, US
    [job_card.part_time]
    It takes hard work and smarts to get you into the reactor room.But if you have a strong interest in math, chemistry, physics and engineering, you might just have what it takes to be a Machinist's M...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Software Development Engineer

    Software Development Engineer

    Amazon • Hanford, CA, USA
    [job_card.full_time]
    Join Amazon's engineering team and help us build innovative solutions to complex problems.As a Software Development Engineer, you will design, develop, and test software applications and services.W...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Structural Project Engineer—Engineering Excellence Starts Here

    Structural Project Engineer—Engineering Excellence Starts Here

    TETER, Inc • Fresno, CA, USA
    [job_card.full_time]
    [filters_job_card.quick_apply]
    Fresno, Visalia, Bakersfield, or Modesto, California.TETER is seeking a highly skilled and motivated.Structural Project Engineer I–II. This role is ideal for a licensed Structural Engineer wit...[show_more]
    [last_updated.last_updated_30]
    Design or Project Engineers

    Design or Project Engineers

    Info Way Solutions • Fresno, CA, United States
    [job_card.full_time]
    Location - Fresno, CA (Onsite).Design or Project Engineers with Electrical Engineering degree.Substation Engineering experience must. The Role requires hand on Project Engineering designing or scopi...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    DSP Software Engineer (CA)

    DSP Software Engineer (CA)

    Cooperidge Consulting Firm • Fresno, CA, United States
    [job_card.full_time]
    Cooperidge Consulting Firm is seeking.This role offers the opportunity to contribute to.Design, develop, and maintain complex software systems. Apply advanced data structures and algorithms to solve...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Project Engineer

    Project Engineer

    Tutor Perini Corporation • Fresno, CA, United States
    [job_card.full_time]
    Expected salary range for this position is $120,000 - $140,000 depending on experience.Fisk Electric, a Tutor Perini Company, is seeking a. If it's electric, Fisk Electric Company has it covered.Sin...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Aerospace Engineer

    Aerospace Engineer

    TradeJobsWorkforce • 93720 Fresno, CA, US
    [job_card.full_time]
    Aerospace Engineer Job Duties : Contributes to the design, manufacturing, and testing of aircraft and a...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Mid to Sr. Product Engineer

    Mid to Sr. Product Engineer

    Jobot • Fresno, CA, United States
    [job_card.full_time]
    Job Description Job Description Growing Global Manufacturing Organization - Seeking Mid to Sr.Level Product Engineer This Jobot Job is hosted by : Sunshine Pennington Are you a fit? Easy Apply now b...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Project Engineer

    Project Engineer

    PrideStaff • Fresno, CALIFORNIA, US
    [job_card.full_time] +2
    [filters_job_card.quick_apply]
    This is a temp to hire position.We are open to direct hire for an exceptional candidate.Monday – Friday, 7 : 00 AM – 4 : 00 PM (Overtime as needed). This is a temp to hire position.We are open to direct...[show_more]
    [last_updated.last_updated_1_day] • [promoted]
    Engineering Manager, Software Supply Chain Security : Auth Infrastructure

    Engineering Manager, Software Supply Chain Security : Auth Infrastructure

    GitLab • Fresno, CA, US
    [job_card.full_time]
    Engineering Manager, Software Supply Chain Security : Auth Infrastructure.GitLab is an open-core software company that develops the most comprehensive AI-powered DevSecOps Platform, used by more tha...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Junior Sotware Engineer

    Junior Sotware Engineer

    Parsec Education Inc • Fresno, CA, United States
    [job_card.full_time]
    Parsec Education is an innovative Educational Technology and Consulting company that aims to improve and transform K-12 education and student outcomes. Our mission is to modernize, evaluate, improve...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]