Endpoint, Network & IPS Security Subject Matter Expert
Core
Design and implement security controls for large-scale enterprise environments, focusing on endpoint protection, network defense, and intrusion prevention.
Role type
Senior IC Endpoint, Network & IPS Security Subject Matter Expert
Builds
Enterprise security architecture and controls using Microsoft Defender, Intune, IPS, NAC, and SASE platforms
Domain
Cybersecurity, Enterprise IT, Cloud Security
Deliverable
production ML models | product features | dashboards & analysis | infrastructure
Required skills
Endpoint security architecture, Network security architecture, IPS/IDS concepts, Zero Trust principles, Data protection, PowerShell scripting, KQL for threat hunting, Vulnerability management
Preferred skills
Microsoft Purview (Information Protection, DLP, Insider Risk), Microsoft Secure Score, Microsoft 365 Defender Portal
Technologies
Microsoft Defender for Endpoint, Microsoft Intune, Palo Alto, Cisco Firepower, Fortinet, Zscaler, Prisma Access, Netskope, Forcepoint, Blue Coat/Symantec, Tenable
Responsibilities
Validate and support deployment of Microsoft Defender for Endpoint (MDE) and hardening requirements; Plan, deploy, and maintain Microsoft Intune policies for device management and compliance; Support integration and improvement of Intrusion Prevention Systems (IPS) and Network Access Control (NAC); Review and refine firewall rules, segmentation policies, and IPS signatures; Monitor and respond to alerts in Microsoft 365 Defender for incident investigation; Build and maintain PowerShell scripts and KQL queries for automation and threat hunting; Support vulnerability management using Tenable or similar tools.
Seniority
Senior, hands-on IC
