1

Endpoint Security Manager Jobs in Colorado (NOW HIRING)

Administer endpoint management for Windows, macOS, iOS/iPadOS, and Android devices through ... Partner with IT Operations, Identity, and Security teams on endpoint standards, device trust ...

Information Security Manager

Denver, CO · On-site

$107K - $137K/yr

Oversees Endpoint Protection and User Monitoring Tools. * Monitors day-to-day analysis for ... Manages, installs, and updates information security products. * Develops security standards and ...

Information Security Manager

Rifle, CO · On-site

$107 - $137/hr

Oversees Endpoint Protection and User Monitoring Tools. * Monitors day-to-day analysis for ... Manages, installs, and updates information security products. * Develops security standards and ...

Oversees Endpoint Protection and User Monitoring Tools. * Monitors day-to-day analysis for ... Manages, installs, and updates information security products. * Develops security standards and ...

Coordinate with network and application teams to validate that endpoint configurations support connectivity, security, and application performance requirements. * Execute asset management tasks such ...

Senior Manager, Data Security

Denver, CO · On-site +1

$117K - $161K/yr

The Senior Manager will partner closely with peer leaders across IAM, Network, SaaS, and Endpoint Security Engineering to ensure data-centric security controls are integrated across Autodesk's full ...

Network Security Engineer

Aurora, CO · On-site

$106K - $145K/yr

Responsibilities : • Implement and manage network security tools • Monitor and analyze security ... endpoint security tools • Understanding of SIEM platforms • Ability to perform penetration ...

Senior Security Engineer

Lafayette, CO · On-site

$110 - $130/hr

Lead vulnerability management and remediation, endpoint security, identity security, privileged access, penetration testing, and security hardening initiatives. * Lead security incident response ...

Senior Information Security Engineer

Lafayette, CO · On-site +1

$110K - $150K/yr

Lead vulnerability management and remediation, endpoint security, identity security, privileged access, penetration testing, and security hardening initiatives. * Lead security incident response ...

Lead vulnerability management and remediation, endpoint security, identity security, privileged access, penetration testing, and security hardening initiatives. * Lead security incident response ...

Showing results 21-40

Endpoint Security Manager information

What does an endpoint security manager do?

An Endpoint Security Manager is responsible for overseeing the protection of an organization's devices such as laptops, desktops, mobile phones, and servers against cyber threats. They develop and implement security policies, manage security solutions like antivirus and endpoint detection systems, and monitor for vulnerabilities and incidents. Their role also involves coordinating responses to security breaches, ensuring compliance with industry regulations, and staying updated on emerging threats to maintain robust endpoint security.

What are the key skills and qualifications needed to thrive as an endpoint security manager, and why are they important?

To thrive as an Endpoint Security Manager, you need a solid background in cybersecurity, risk management, and IT infrastructure, often supported by a bachelor’s degree in computer science or a related field. Familiarity with endpoint protection platforms, SIEM systems, and certifications such as CISSP or CompTIA Security+ are typically required. Strong analytical thinking, leadership, and clear communication are standout soft skills for this role. These abilities are crucial to effectively protect organizational assets, coordinate security teams, and respond to evolving cyber threats.

What are some common challenges faced by endpoint security managers when securing devices in a hybrid or remote work environment?

Endpoint Security Managers often encounter challenges in maintaining consistent security policies across diverse devices, especially when employees work remotely or use personal hardware. Ensuring all endpoints receive timely security updates and patches can be more complex outside of a centralized network. Additionally, monitoring for threats becomes more difficult as traffic may bypass traditional perimeter defenses, requiring robust endpoint detection and response solutions. Collaboration with IT teams and user training is essential to address these risks and adapt to evolving threats.

What is the difference between Endpoint Security Manager vs Network Security Analyst?

AspectEndpoint Security ManagerNetwork Security Analyst
CredentialsCertifications like CISSP, CISA, or vendor-specific security certificationsCertifications such as CompTIA Security+, CISSP, or Cisco CCNA Security
Work EnvironmentManages endpoint security tools, policies, and incident response on devicesMonitors network traffic, analyzes security events, and manages network defenses
Industry UsageUsed across industries to protect endpoints like laptops, servers, and mobile devicesUsed to secure network infrastructure in various sectors

While both roles focus on cybersecurity, the Endpoint Security Manager concentrates on securing individual devices, whereas the Network Security Analyst monitors and protects the entire network infrastructure. Both roles often collaborate to ensure comprehensive security coverage.

How to assign an endpoint security manager role?

To assign an endpoint security manager role, you typically need administrative access to the security management platform or endpoint protection system. Assign the role through the user management interface, granting permissions related to policy configuration, threat response, and system monitoring, often supported by role-based access control (RBAC). Ensure the user has relevant certifications or experience in cybersecurity and endpoint security tools for effective management.

What are the most commonly searched types of Endpoint Security jobs in Colorado?

The most popular types of Endpoint Security jobs in Colorado are:

What cities in Colorado are hiring for Endpoint Security Manager jobs?

Cities in Colorado with the most Endpoint Security Manager job openings:

Systems Administrator - Endpoint & Identity

Advanced Monitored Caregiving Inc.

Denver, CO • Remote

Full-time

Posted 2 days ago

New


Job description

Primary Job Function:

Systems Administrator responsible for the administration, security, and support of the enterprise endpoint fleet and identity platform in a HIPAA-regulated environment. Responsibilities include Microsoft 365 and Microsoft Intune administration; Entra ID identity and access management; Windows and macOS device management and desktop support; endpoint security and compliance controls protecting Protected Health Information (PHI); administrative automation; and creation and maintenance of documentation including SOPs and runbooks. This is a fully remote position, and all provisioning, administration, and support are performed remotely.

Essential Job Functions:

  • Administers Microsoft 365 tenant services, including Exchange Online, SharePoint/OneDrive, and Teams.
  • Owns Microsoft Intune administration across Windows and macOS, including device enrollment, configuration and compliance policies, application deployment, patch rings, and update management.
  • Performs zero-touch provisioning through Windows Autopilot and Apple Business Manager so that endpoints ship directly to remote employees and are production-ready at first login.
  • Maintains standardized, reproducible device builds and reduces configuration drift across the fleet.
  • Coordinates endpoint hardware logistics with vendors and depot partners, including procurement, drop-shipping, RMAs, and the secure return or disposal of devices from departing employees.
  • Administers Entra ID, including users, groups, roles, licensing, SSO integrations, and application registrations.
  • Designs, tests, deploys, and tunes Conditional Access and multi-factor authentication policies.
  • Executes identity lifecycle management, including automated onboarding, role changes, and same-day access revocation at offboarding.
  • Enforces least-privilege and role-based access across Microsoft 365 and integrated SaaS applications, and conducts periodic access reviews and user access recertification.
  • Configures and maintains endpoint controls supporting HIPAA Security Rule safeguards, including access control, automatic logoff, audit logging, and encryption.
  • Enforces full-disk encryption on all endpoints (BitLocker and FileVault) and manages key escrow and recovery.
  • Maintains data loss prevention and device compliance policies that keep Protected Health Information (PHI) on managed, compliant devices.
  • Executes remote lock and wipe for lost, stolen, or compromised devices, and supports incident response and breach investigation with device and access log evidence.
  • Applies and maintains endpoint security baselines, and tracks and remediates vulnerability findings across the fleet.
  • Maintains documentation and produces evidence for HIPAA audits, risk assessments, SOC 2 reviews, and customer security questionnaires.
  • Ensures the rigorous application of Information Security/Information Assurance policies, principles, and practices in the delivery of systems, applications, and services.
  • Serves as the escalation point for advanced desktop support across Windows and macOS, including operating system, application, authentication, VPN, network connectivity, printing, and hardware issues, all diagnosed remotely.
  • Manages the support ticket queue against defined service level agreements and communicates clearly with non-technical staff, primarily in writing.
  • Develops and maintains standard operating procedures, runbooks, internal documentation, and end-user knowledge base articles.
  • Reads and writes PowerShell scripts to automate repetitive administrative work. Python is nice to have but not required.
  • Tracks hardware, software, and license inventory across the full asset lifecycle.
  • Interfaces with internal and external Network Engineers, Security, and Application teams to optimize systems use and configuration.
  • Provides technical knowledge and recommendations to staff members as required.
  • Some after-hours work will be required for maintenance, patching, and incident response.
  • Performs other related duties as assigned.
  • Ensures the rigorous application of Information Security/Information Assurance policies, principles, and practices in the delivery of systems, applications, and services.
  • Serves as the escalation point for advanced desktop support across Windows and macOS, including operating system, application, authentication, VPN, network connectivity, printing, and hardware issues, all diagnosed remotely.
  • Manages the support ticket queue against defined service level agreements and communicates clearly with non-technical staff, primarily in writing.
  • Develops and maintains standard operating procedures, runbooks, internal documentation, and end-user knowledge base articles.
  • Reads and writes PowerShell scripts to automate repetitive administrative work. Python is nice to have but not required.
  • Tracks hardware, software, and license inventory across the full asset lifecycle.
  • Interfaces with internal and external Network Engineers, Security, and Application teams to optimize systems use and configuration.
  • Provides technical knowledge and recommendations to staff members as required.
  • Some after-hours work will be required for maintenance, patching, and incident response.
  • Performs other related duties as assigned.

Experience/Education

  • Working understanding of HIPAA and the handling of Protected Health Information (PHI) in an end-user computing environment.

General Experience:

  • 3-6 years' experience in IT systems administration, including hands-on administration of Microsoft 365 and Microsoft Intune in a production environment.
  • 3 years' experience serving as a direct technical interface to internal and external customers.
  • Demonstrated desktop support experience on both Windows and macOS.
  • Working knowledge of networking fundamentals, including DNS, DHCP, TCP/IP, VPN, and the remote diagnosis of home network and connectivity issues.
  • Ability to read and write PowerShell scripts for administrative automation.
  • Excellent written communication and self-directed work habits, with sound judgment about when to escalate.

SPECIALIZED EXPERIENCE:

  • Demonstrated experience in a majority of the following:

  • Day-to-day administration of both Windows and macOS endpoints, rather than depth in one platform with limited exposure to the other.
  • Entra ID or Active Directory administration, including SSO, MFA, and Conditional Access.
  • Work in a HIPAA compliant environment, including endpoint controls supporting the HIPAA Security Rule.
  • Endpoint encryption and key escrow (BitLocker and FileVault).
  • Zero-touch provisioning with Windows Autopilot and Apple Business Manager.
  • macOS management at scale with Jamf, Kandji, or a comparable platform.
  • SaaS identity governance or SCIM-based user provisioning.
  • Endpoint detection and response (EDR), SIEM, or vulnerability management tooling.
  • Supporting a fully distributed, remote workforce.
  • Supporting HIPAA, HITRUST, or SOC 2 audits.

Licensure and/or Certification Requirements:

  • Microsoft MD-102 (Endpoint Administrator Associate), or 3+ years hands-on endpoint administration experience.
  • Microsoft SC-300, Microsoft AZ-104, or Apple Certified Support Professional preferred.

Must be a U.S. citizen residing in the continental United States and maintain a suitable home work environment with reliable high-speed internet.

Primarily a stationary role performed at a computer workstation, with extended periods of computer use.

Occasional lifting and handling of computer equipment up to 25 pounds.

Some after-hours availability required for maintenance, patching, and incident response.

Minimal travel required.