In this role, you'll work directly with client infrastructure, endpoint, server, and application ... Work you'll do As a Security Engineer II on the Cyber Defense & Resilience Continuous Threat ...
In this role, you'll work directly with client infrastructure, endpoint, server, and application ... Work you'll do As a Security Engineer II on the Cyber Defense & Resilience Continuous Threat ...
In this role, you'll work directly with client infrastructure, endpoint, server, and application ... Work you'll do As a Security Engineer II on the Cyber Defense & Resilience Continuous Threat ...
In this role, you'll work directly with client infrastructure, endpoint, server, and application ... Work you'll do As a Security Engineer II on the Cyber Defense & Resilience Continuous Threat ...
Strong understanding of endpoint security, identity/access management, device compliance, software ... Bachelor's degree in Computer Science, Engineering, Information Systems, or equivalent practical ...
Strong understanding of endpoint security, identity/access management, device compliance, software ... Bachelor's degree in Computer Science, Engineering, Information Systems, or equivalent practical ...
Strong understanding of zero-trust architecture, endpoint security, and enterprise identity management 1+ year leading platform engineering teams and managing technical roadmaps * Proven ability to ...
Strong understanding of zero-trust architecture, endpoint security, and enterprise identity management 1+ year leading platform engineering teams and managing technical roadmaps * Proven ability to ...
Strong understanding of zero-trust architecture, endpoint security, and enterprise identity management 1+ year leading platform engineering teams and managing technical roadmaps * Proven ability to ...
Strong understanding of zero-trust architecture, endpoint security, and enterprise identity management 1+ year leading platform engineering teams and managing technical roadmaps * Proven ability to ...
Strong understanding of zero-trust architecture, endpoint security, and enterprise identity management 1+ year leading platform engineering teams and managing technical roadmaps * Proven ability to ...
Strong understanding of zero-trust architecture, endpoint security, and enterprise identity management 1+ year leading platform engineering teams and managing technical roadmaps * Proven ability to ...
... security goals. Core Responsibilities Strategic Leadership & Team Management * Serve as the ... engineers and administrators, in imaging, virtualization, and endpoint management. * Supervise ...
... security goals. Core Responsibilities Strategic Leadership & Team Management * Serve as the ... engineers and administrators, in imaging, virtualization, and endpoint management. * Supervise ...
Conduct cloud security analysis, recommendations and configurations of prospective clients ... and endpoint engineering (MEM) and mobile device management (MAM & MDM)) implementation or ...
Conduct cloud security analysis, recommendations and configurations of prospective clients ... and endpoint engineering (MEM) and mobile device management (MAM & MDM)) implementation or ...
Conduct cloud security analysis, recommendations and configurations of prospective clients ... and endpoint engineering (MEM) and mobile device management (MAM & MDM)) implementation or ...
Conduct cloud security analysis, recommendations and configurations of prospective clients ... and endpoint engineering (MEM) and mobile device management (MAM & MDM)) implementation or ...
Conduct cloud security analysis, recommendations and configurations of prospective clients ... and endpoint engineering (MEM) and mobile device management (MAM & MDM)) implementation or ...
Conduct cloud security analysis, recommendations and configurations of prospective clients ... and endpoint engineering (MEM) and mobile device management (MAM & MDM)) implementation or ...
Collaborate with infrastructure and engineering teams to resolve complex technical issues ... Familiarity with enterprise endpoint security and device management best practices. How to Apply If ...
Quick apply
Collaborate with infrastructure and engineering teams to resolve complex technical issues ... Familiarity with enterprise endpoint security and device management best practices. How to Apply If ...
... and security analytics & engineering resources. Key project interactions will include SOC ... Endpoint Security Toolsets UTM products Demonstrated experience in an incident detection and ...
... and security analytics & engineering resources. Key project interactions will include SOC ... Endpoint Security Toolsets UTM products Demonstrated experience in an incident detection and ...
Cloud Security Senior Consultant - M365
$56.50 - $77/hr
Conduct cloud security analysis, recommendations and configurations of prospective clients ... and endpoint engineering (MEM) and mobile device management (MAM & MDM)) implementation or ...
Cloud Security Senior Consultant - M365
$56.50 - $77/hr
Conduct cloud security analysis, recommendations and configurations of prospective clients ... and endpoint engineering (MEM) and mobile device management (MAM & MDM)) implementation or ...
Cloud Security Senior Consultant - M365
$56.75 - $77.50/hr
Conduct cloud security analysis, recommendations and configurations of prospective clients ... and endpoint engineering (MEM) and mobile device management (MAM & MDM)) implementation or ...
Cloud Security Senior Consultant - M365
$56.75 - $77.50/hr
Conduct cloud security analysis, recommendations and configurations of prospective clients ... and endpoint engineering (MEM) and mobile device management (MAM & MDM)) implementation or ...
... and security analytics & engineering resources. Key project interactions will include SOC ... Endpoint Security Toolsets UTM products Demonstrated experience in an incident detection and ...
... and security analytics & engineering resources. Key project interactions will include SOC ... Endpoint Security Toolsets UTM products Demonstrated experience in an incident detection and ...
Cloud Security Senior Consultant - M365
Hermitage, TN · On-site
$51.25 - $70/hr
Conduct cloud security analysis, recommendations and configurations of prospective clients ... and endpoint engineering (MEM) and mobile device management (MAM & MDM)) implementation or ...
Cloud Security Senior Consultant - M365
Hermitage, TN · On-site
$51.25 - $70/hr
Conduct cloud security analysis, recommendations and configurations of prospective clients ... and endpoint engineering (MEM) and mobile device management (MAM & MDM)) implementation or ...
Tier II End User & Systems Support Specialist
Oak Ridge, TN · On-site
$75K - $100K/yr
BGS is an engineering, technology, and security firm helping to advance missions of national ... Support Microsoft Intune and endpoint management systems. * Perform workstation deployment, imaging ...
Tier II End User & Systems Support Specialist
Oak Ridge, TN · On-site
$75K - $100K/yr
BGS is an engineering, technology, and security firm helping to advance missions of national ... Support Microsoft Intune and endpoint management systems. * Perform workstation deployment, imaging ...
Technical Support Specialist
Memphis, TN · On-site
Collaborate with infrastructure and engineering teams to resolve complex technical issues. Maintain ... Familiarity with enterprise endpoint security and device management best practices. How to Apply If ...
New
Technical Support Specialist
Memphis, TN · On-site
Collaborate with infrastructure and engineering teams to resolve complex technical issues. Maintain ... Familiarity with enterprise endpoint security and device management best practices. How to Apply If ...
New
Cloud Security Senior Manager - Azure Infrastructure & AI
Nashville, TN · On-site
$63.25 - $84/hr
Azure certifications, including Azure Security Engineer Associate or Azure Solutions Architect ... Endpoint, Microsoft Purview, Microsoft Sentinel, Microsoft Defender XDR, and Microsoft Security ...
Cloud Security Senior Manager - Azure Infrastructure & AI
Nashville, TN · On-site
$63.25 - $84/hr
Azure certifications, including Azure Security Engineer Associate or Azure Solutions Architect ... Endpoint, Microsoft Purview, Microsoft Sentinel, Microsoft Defender XDR, and Microsoft Security ...
Cloud Security Senior Manager - Azure Infrastructure & AI
Hermitage, TN · On-site
$57.50 - $76.25/hr
Azure certifications, including Azure Security Engineer Associate or Azure Solutions Architect ... Endpoint, Microsoft Purview, Microsoft Sentinel, Microsoft Defender XDR, and Microsoft Security ...
Cloud Security Senior Manager - Azure Infrastructure & AI
Hermitage, TN · On-site
$57.50 - $76.25/hr
Azure certifications, including Azure Security Engineer Associate or Azure Solutions Architect ... Endpoint, Microsoft Purview, Microsoft Sentinel, Microsoft Defender XDR, and Microsoft Security ...
Endpoint Security Engineer information
See Tennessee salary details
$55.8K - $67.7K
0% of jobs
$67.7K - $79.6K
2% of jobs
$79.6K - $91.5K
3% of jobs
$91.5K - $103.3K
6% of jobs
$103.3K - $115.2K
5% of jobs
$115.2K - $127.1K
4% of jobs
$128.3K is the 25th percentile. Wages below this are outliers.
$127.1K - $139K
39% of jobs
$146.4K is the 75th percentile. Wages above this are outliers.
$139K - $150.9K
24% of jobs
$150.9K - $162.8K
2% of jobs
$162.8K - $174.6K
0% of jobs
$174.6K - $186.5K
14% of jobs
$55.8K
$138.7K
$186.5K
How much do endpoint security engineer jobs pay per year?
What are some common challenges faced by endpoint security engineers in their day-to-day work?
Endpoint Security Engineers often encounter challenges such as staying updated with rapidly evolving threat landscapes, ensuring consistent security policy enforcement across various device types, and balancing robust protection with user productivity. They may need to troubleshoot endpoint agents, respond to incident alerts, and work closely with IT and helpdesk teams to remediate vulnerabilities or outbreaks. Additionally, they often manage deployment of security patches and educate users on best practices. Addressing these challenges requires a combination of technical expertise, adaptability, and strong communication to keep endpoints and sensitive data secure.
What does an endpoint security engineer do?
An Endpoint Security Engineer is responsible for securing an organization's endpoints, including desktops, laptops, mobile devices, and servers. They implement, monitor, and manage security solutions such as antivirus software, endpoint detection and response (EDR) tools, and access controls. Their primary goal is to protect endpoints from cyber threats, malware, and unauthorized access. They also collaborate with IT and security teams to develop policies, respond to incidents, and ensure compliance with security frameworks.
What are the key skills and qualifications needed to thrive as an endpoint security engineer?
Success as an Endpoint Security Engineer requires a solid understanding of cybersecurity principles, endpoint protection, and threat detection, often backed by a degree in computer science, cybersecurity, or a related field. Familiarity with industry-standard tools such as antivirus/EDR solutions (e.g., CrowdStrike, Carbon Black), SIEM platforms, scripting languages, and certifications like CompTIA Security+ or CISSP are frequently expected. Strong analytical thinking, communication skills, and a proactive attitude help engineers collaborate across IT teams and respond swiftly to security incidents. These competencies are vital for staying ahead of evolving threats and ensuring robust protection of organizational endpoints.

Full-time
Re-posted 13 days ago
Deloitte rating
8.2
Based on 92 frontline employees who took The Breakroom Quiz
45th of 150 rated financial services
Job description
Join Deloitte's Cyber Defense & Resilience team as a forward deployed engineer supporting client patching and remediation programs. In this role, you'll work directly with client infrastructure, endpoint, server, and application teams to reduce exposure and improve cyber resilience. You'll help translate vulnerability findings into actionable remediation plans, support patch execution across environments, and track progress against risk-reduction goals.
Recruiting for this role ends on 12/31/2026.
Work you'll do
As a Security Engineer II on the Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team, you will be responsible for...
- Working directly with client teams to plan, track, and execute patching and remediation activities across endpoint, server, middleware, and application environments
- Translating vulnerability findings, asset context, and threat data into prioritized remediation actions
- Supporting patch deployment, validation, and reporting using enterprise tools and client processes
- Maintaining remediation records, exception tracking, and status reporting to measure exposure reduction
- Supporting automation and process improvement activities that increase patching speed, consistency, and coverage
A successful candidate would possess these skills:
- Ability to work independently and collaborate as part of a team
- Effective written and verbal communication skills
- Meticulous attention to detail and quality of work product
- Ability to build and sustain professional relationships
- Ability to lead projects or workstreams
- Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
- Strong interpersonal skills and professional demeanor
- Ability to meet deadlines
- Ability to provide clear guidance to others
The team
Deloitte's Cyber Specialists help organizations manage cyber risk through stronger security, greater visibility, and embedded privacy practices. The Cyber Defense & Resilience team works with clients to design, implement, and operate programs that help protect critical assets, support digital transformation, and respond to evolving threats. Within this practice, forward deployed engineers work alongside client teams to operationalize vulnerability remediation, patching, and exposure reduction across complex technology environments.
Qualifications
Required:
- 3+ years of experience in information technology, information security, vulnerability management, patch management, or a combination of these
- 2+ years of experience supporting forward deployed engineering, remediation delivery, or client-facing technology operations in enterprise environments
- 2+ years of experience executing patching or vulnerability remediation across Windows, Linux, middleware, endpoints, or applications using tools such as BigFix, Microsoft Endpoint Configuration Manager, Red Hat Satellite, Windows Server Update Services, Tenable, Rapid7, or Qualys
- 1+ year of experience using PowerShell, Bash, Python, Ansible, Terraform, or JavaScript Object Notation for scripting, automation, or configuration activities
- 1+ year of experience using ServiceNow or another Information Technology Service Management platform to track remediation activities, exceptions, and status
- Ability to travel 50%, on average, based on the work you do and the clients and industries/sectors you serve.
- Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.
Preferred:
- Bachelor's degree in Computer Science, Cybersecurity, Information Systems, Engineering, Information Technology, Mathematics, or Physics
- Experience in a consulting environment
- Experience preparing remediation metrics, dashboards, or status reporting
- Experience supporting patch validation, exception management, or change coordination
- Experience with the National Institute of Standards and Technology Cybersecurity Framework, Center for Internet Security, International Organization for Standardization 27001, or Cloud Security Alliance Cloud Controls Matrix
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $110,700 to 218,300.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
This position is aligned with the Core Talent Model. To view the associated benefit package, please reference this document https://resources.deloitte.com/:b:/r/sites/dnet-tod-us/Shared Documents/Benefits/USBenefitsJourneyCDandETAM.pdf?csf=1&web=1&e=pKjS1C
Deloitte is committed to providing reasonable accommodations for people with disabilities. If you require a reasonable accommodation to participate in the recruiting process, please direct your inquiries to the Global Call Center (GCC) at USTalentCICInbox@deloitte.com.
#CyberCDR27
Join Deloitte's Cyber Defense & Resilience team as a forward deployed engineer supporting client patching and remediation programs. In this role, you'll work directly with client infrastructure, endpoint, server, and application teams to reduce exposure and improve cyber resilience. You'll help translate vulnerability findings into actionable remediation plans, support patch execution across environments, and track progress against risk-reduction goals.
Recruiting for this role ends on 12/31/2026.
Work you'll do
As a Security Engineer II on the Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team, you will be responsible for...
- Working directly with client teams to plan, track, and execute patching and remediation activities across endpoint, server, middleware, and application environments
- Translating vulnerability findings, asset context, and threat data into prioritized remediation actions
- Supporting patch deployment, validation, and reporting using enterprise tools and client processes
- Maintaining remediation records, exception tracking, and status reporting to measure exposure reduction
- Supporting automation and process improvement activities that increase patching speed, consistency, and coverage
A successful candidate would possess these skills:
- Ability to work independently and collaborate as part of a team
- Effective written and verbal communication skills
- Meticulous attention to detail and quality of work product
- Ability to build and sustain professional relationships
- Ability to lead projects or workstreams
- Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
- Strong interpersonal skills and professional demeanor
- Ability to meet deadlines
- Ability to provide clear guidance to others
The team
Deloitte's Cyber Specialists help organizations manage cyber risk through stronger security, greater visibility, and embedded privacy practices. The Cyber Defense & Resilience team works with clients to design, implement, and operate programs that help protect critical assets, support digital transformation, and respond to evolving threats. Within this practice, forward deployed engineers work alongside client teams to operationalize vulnerability remediation, patching, and exposure reduction across complex technology environments.
Qualifications
Required:
- 3+ years of experience in information technology, information security, vulnerability management, patch management, or a combination of these
- 2+ years of experience supporting forward deployed engineering, remediation delivery, or client-facing technology operations in enterprise environments
- 2+ years of experience executing patching or vulnerability remediation across Windows, Linux, middleware, endpoints, or applications using tools such as BigFix, Microsoft Endpoint Configuration Manager, Red Hat Satellite, Windows Server Update Services, Tenable, Rapid7, or Qualys
- 1+ year of experience using PowerShell, Bash, Python, Ansible, Terraform, or JavaScript Object Notation for scripting, automation, or configuration activities
- 1+ year of experience using ServiceNow or another Information Technology Service Management platform to track remediation activities, exceptions, and status
- Ability to travel 50%, on average, based on the work you do and the clients and industries/sectors you serve.
- Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.
Preferred:
- Bachelor's degree in Computer Science, Cybersecurity, Information Systems, Engineering, Information Technology, Mathematics, or Physics
- Experience in a consulting environment
- Experience preparing remediation metrics, dashboards, or status reporting
- Experience supporting patch validation, exception management, or change coordination
- Experience with the National Institute of Standards and Technology Cybersecurity Framework, Center for Internet Security, International Organization for Standardization 27001, or Cloud Security Alliance Cloud Controls Matrix
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $110,700 to 218,300.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
This position is aligned with the Core Talent Model. To view the associated benefit package, please reference this document https://resources.deloitte.com/:b:/r/sites/dnet-tod-us/Shared Documents/Benefits/USBenefitsJourneyCDandETAM.pdf?csf=1&web=1&e=pKjS1C
Deloitte is committed to providing reasonable accommodations for people with disabilities. If you require a reasonable accommodation to participate in the recruiting process, please direct your inquiries to the Global Call Center (GCC) at USTalentCICInbox@deloitte.com.
#CyberCDR27