EndPoint Analyst
Core
Capture restrictive configurations for web browsers, office suites, and PDF software; implement Microsoft Recommended Blocklist (MRB) and LOLBAS blocking; analyze event logs to detect cybersecurity events.
Role type
Security compliance and hardening analyst
Builds
Hardened configurations for browsers, office suites, and PDF software; MRB and LOLBAS blocking rules; centralized event logging
Domain
Cybersecurity / Compliance / Windows Environment
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
System hardening, security auditing, compliance, ASD Essential Eight, Microsoft security baselines, Windows event logging, PowerShell security, configuration management (Intune/Group Policy), risk assessment, gap analysis
Preferred skills
ITIL framework, change and incident management, business impact assessment, role-based access control (RBAC)
Technologies
Microsoft Defender, Microsoft Recommended Blocklist (MRB), LOLBAS, PowerShell, Intune, Group Policy
Responsibilities
Capture restrictive configurations for browsers, office suites, and PDF software; implement and monitor MRB compliance; analyze event logs for cybersecurity events; identify control gaps and prioritize remediation; assess operational impact of blocking applications; implement compensating controls for exceptions; document changes for audit purposes
Seniority
Mid-level, hands-on IC