1

Endpoint Jobs in Oregon (NOW HIRING)

This role develops threat hypotheses, analyzes endpoint, network, cloud, identity, and security event data, and conducts structured hunts to uncover suspicious behaviors, attacker techniques, and ...

Support Microsoft Intune, Group Policy, endpoint management, Windows imaging, workstation deployment, and device lifecycle management. * Assist with server migrations, identity modernization, domain ...

Senior Security Engineer

Clackamas, OR

$120K - $165K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Support endpoint detection and response, antivirus tools, server/endpoint security controls 4: Network, Analysis & Security: * New Network Device Detection and Threat Determination * Device Anomalous ...

Senior Security Engineer

Clackamas, OR

$120K - $165K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Support endpoint detection and response, antivirus tools, server/endpoint security controls 4: Network, Analysis & Security: * New Network Device Detection and Threat Determination * Device Anomalous ...

Maintain endpoint compliance, patching, and device management through Microsoft Intune and related tools. * Work closely with vendors and internal stakeholders to resolve technical issues and support ...

Senior Security Engineer

Clackamas, OR · On-site

$120K - $165K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Support endpoint detection and response, antivirus tools, server/endpoint security controls 4: Network, Analysis & Security: * New Network Device Detection and Threat Determination * Device Anomalous ...

Senior Security Engineer

Portland, OR · On-site

$125 - $180/hr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Support endpoint detection and response, antivirus tools, server/endpoint security controls 4: Network, Analysis & Security: * New Network Device Detection and Threat Determination * Device Anomalous ...

We own the full detection lifecycle, from telemetry collection and signal design to automated response, across a complex, cloud-native environment spanning endpoint, cloud, container, and SaaS. As a ...

Staff IT Security

OR · On-site +1

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

You will own Terzo's internal IT and security infrastructure including endpoint management, identity and access, network security, and the security tooling stack that protects our people, devices ...

Windows Admin

Salem, OR · On-site

$44 - $55/hr

Support Microsoft Intune, Group Policy, endpoint management, Windows imaging, workstation deployment, and device lifecycle management. Assist with server migrations, identity modernization, domain ...

Senior System Administrator

Salem, OR · On-site

$86K - $117K/yr

Support Microsoft Intune, Group Policy, endpoint management, Windows imaging, workstation deployment, and device lifecycle management. Assist with server migrations, identity modernization, domain ...

Showing results 41-60

Endpoint information

What is the difference between Endpoint vs Network Technician?

AspectEndpointNetwork Technician
Required CredentialsCertifications like CompTIA Security+, Microsoft Certified: Modern Desktop AdministratorCertifications like Cisco CCNA, CompTIA Network+
Work EnvironmentWork on individual devices, user endpoints, and security solutionsWork on network infrastructure, routers, switches, and network troubleshooting
Industry UsageIT support, cybersecurity, device managementNetworking, telecommunications, IT infrastructure

Endpoint and Network Technician roles often overlap in IT support but differ mainly in focus. Endpoints deal with individual devices and security, while Network Technicians focus on network infrastructure. Both roles require relevant certifications and are vital in maintaining organizational IT systems.

What are some typical challenges faced by endpoint security specialists and how can they be addressed?

Endpoint Security Specialists often encounter challenges such as managing a wide variety of devices, ensuring consistent security policies across endpoints, and responding to rapidly evolving threats like malware and ransomware. Staying up-to-date with the latest security tools and best practices is essential, as is collaborating closely with IT and help desk teams to ensure timely patching and incident response. Building automated processes and maintaining clear communication channels within the organization can help address these challenges effectively.

What does an endpoint engineer do?

An endpoint engineer is responsible for managing and securing endpoint devices such as computers, mobile devices, and servers within an organization. They configure, monitor, and troubleshoot endpoint security tools, deploy updates, and ensure compliance with security policies, often using tools like endpoint detection and response (EDR) software. This role requires knowledge of network security, operating systems, and sometimes scripting or automation skills.

What are the key skills and qualifications needed to thrive as an endpoint security specialist?

To thrive as an Endpoint Security Specialist, you need strong knowledge of cybersecurity principles, endpoint protection strategies, and relevant operating systems, often supported by a degree in computer science or related certifications like CompTIA Security+ or CEH. Familiarity with endpoint detection and response (EDR) platforms, antivirus solutions, and security information and event management (SIEM) systems is typically required. Analytical thinking, problem-solving, and effective communication help specialists quickly identify threats and collaborate with IT teams. These skills and qualities are crucial to effectively safeguard organizational assets against evolving cyber threats.

What does an endpoint analyst do?

An endpoint analyst monitors, manages, and secures endpoint devices such as computers, laptops, and mobile devices within an organization. They analyze security threats, ensure compliance with policies, and often use tools like endpoint detection and response (EDR) software to protect against cyber threats. This role requires technical skills in cybersecurity, troubleshooting, and familiarity with network environments.

What are endpoints in the context of IT and cybersecurity?

In IT and cybersecurity, endpoints refer to any device that connects to a network and communicates with other devices or systems. Common examples include computers, laptops, smartphones, tablets, and servers. These devices can be entry points for security threats, so organizations use endpoint security solutions to monitor, protect, and manage them. Protecting endpoints is crucial to preventing data breaches and maintaining overall network security.

What are popular job titles related to Endpoint jobs in Oregon?

For Endpoint jobs in Oregon, the most frequently searched job titles are:

Infographic showing various Endpoint job openings in Oregon as of August 2026, with employment types broken down into 84% Full Time, 8% Part Time, 7% Contract, and 1% Nights. Highlights an 76% Physical, 8% Hybrid, and 16% Remote job distribution.

SOC Threat Hunter

ECS

Portland, OR • On-site

Full-time

Re-posted 27 days ago


Job description

Everforth ECS is seeking a SOC Threat Hunter to work in our Portland, OR office. Note: This position is contingent upon contract award.
The Threat Hunter proactively identifies, investigates, and helps mitigate advanced cyber threats that may evade automated detection and traditional monitoring. This role develops threat hypotheses, analyzes endpoint, network, cloud, identity, and security event data, and conducts structured hunts to uncover suspicious behaviors, attacker techniques, and control gaps.
The ideal candidate has strong analytical skills, hands-on experience with security monitoring and investigation tools, and the ability to translate threat research into repeatable hunt procedures, detection improvements, and actionable findings for SOC, incident response, engineering, and threat intelligence stakeholders.
This role involves shift work schedule to support our 24/7 operation, including weekends and holidays. Candidates must be flexible in their availability. While we make every effort to accommodate individual preferences, it's essential to understand that specific shift requests are not guaranteed and are assigned based on operational needs.
Key Responsibilities
Threat Hunting & Analysis
  • Develop and execute hypothesis-driven hunts across enterprise, cloud, endpoint, identity, and network data sources
  • Analyze anomalous behavior, suspicious activity, and attacker tactics, techniques, and procedures (TTPs)
  • Use SIEM, EDR, network, log analytics, and threat intelligence tools to identify potential compromise or unauthorized activity
  • Validate hunt findings, assess potential impact, and determine whether escalation to incident response or SOC operations is required

Detection Development & Improvement
  • Translate hunt findings into detection logic, analytic requirements, alert tuning recommendations, and monitoring use cases
  • Identify gaps in logging, visibility, correlation logic, and alert coverage
  • Partner with SOC analysts, Splunk engineers, security engineers, and threat intelligence analysts to improve detection fidelity and coverage
  • Support development of repeatable hunt playbooks, queries, dashboards, and analytic procedures

Threat Research & Intelligence Application
  • Research emerging threats, adversary behaviors, malware trends, vulnerabilities, and exploitation techniques relevant to the environment
  • Map threat activity and hunt hypotheses to recognized frameworks such as MITRE ATT&CK
  • Incorporate threat intelligence into hunt planning, detection enhancement, and investigative workflows
  • Provide feedback to threat intelligence teams on observed activity, intelligence gaps, and collection priorities

Investigation Support & Escalation
  • Support advanced investigations by correlating security events, system activity, user behavior, and contextual data
  • Document investigative steps, evidence, conclusions, and recommended follow-up actions
  • Coordinate with SOC Tier 2 and Tier 3 analysts, forensics personnel, and incident response teams during escalations
  • Assist with post-incident hunt activity to identify related indicators, lateral movement, persistence, or additional affected assets

Reporting & Continuous Improvement
  • Produce clear hunt reports, summaries, findings, and recommendations for technical and leadership audiences
  • Track hunt outcomes, recurring patterns, detection gaps, and operational metrics
  • Contribute to continuous improvement of SOC processes, analytic standards, and knowledge management resources
  • Stay current with adversary tradecraft, detection engineering practices, and security analytics techniques

  • U.S. Citizenship with ability to obtain and maintain a DOE "L" clearance after start.
  • 5+ years of experience in cybersecurity operations, threat hunting, incident response, detection engineering, security monitoring, or related roles
  • Hands-on experience using SIEM, EDR, network security, endpoint telemetry, cloud logging, and/or log analytics platforms
  • Strong understanding of adversary tactics, techniques, and procedures; common attack paths; and enterprise security controls
  • Experience developing or using hunt hypotheses, detection logic, investigative queries, and analytic playbooks
  • Ability to analyze large volumes of security data and distinguish suspicious activity from benign behavior
  • Strong written communication skills, including the ability to document findings, evidence, and recommendations clearly